<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" entityID="https://shibboleth.lst.ac.uk/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">lst.ac.uk</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at shibboleth.lst.ac.uk</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at shibboleth.lst.ac.uk</mdui:Description>
                <mdui:Logo height="80" width="80">https://shibboleth.lst.ac.uk/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.lst.ac.uk:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.lst.ac.uk:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.lst.ac.uk/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.lst.ac.uk/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.lst.ac.uk/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.lst.ac.uk:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.lst.ac.uk/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://shibboleth.lst.ac.uk/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://shibboleth.lst.ac.uk/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://shibboleth.lst.ac.uk/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">lst.ac.uk</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEPDCCAqSgAwIBAgIVAPmfADIvRWm9fOOTbkT6EGljQMIwMA0GCSqGSIb3DQEB
CwUAMB8xHTAbBgNVBAMMFHNoaWJib2xldGgubHN0LmFjLnVrMB4XDTE5MDMyMTE1
NTgzN1oXDTM5MDMyMTE1NTgzN1owHzEdMBsGA1UEAwwUc2hpYmJvbGV0aC5sc3Qu
YWMudWswggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCE4gfGrBu7ZWNT
kk8uAzH01SQe/HZb44lu+D5jrKwbvs/e3FF7VfiC+KEOR3BysdGpcYqORHOjfOaI
JLPaqWsP7rHRWM6tYgy6Bs7Ws6RKezgOZVr0CbUD831WRJP5QItnGL1oljRHLwZk
xloo/Xx5Hou4Yb5vPOz7dPfmKNwdpytknivbzj/ME1h8GUOQtNTqe2PAeS4Z6ROO
cZQBAam7AyXmRj6gAUB5/TWI2nypH9kKcX2hSpU2gFks5Fi5bfu4oy3k6s2L08Kg
XAIY7c2YTxo7n4ptpCf5KdEKPeR2Mpb48DYWmLelBxnYglDNL8d6pxO+RcdllAjN
YIYxAo+UfxN9sUQdvUWyFtm54MxAKtlHYvJerXzc/NPOCdAQpJim/eEaM6fsqock
bZgtIvKkTgcp2fu8GOodjcrriRSKIrcoDDtLWtIYNR1RdmKwoPdOrqArR0nEnJ7q
BMPwj7fWVAlp1dWvh2D1Z5A+1Xi7mPCSA5cehAH54U4v0nZmLK8CAwEAAaNvMG0w
HQYDVR0OBBYEFPdzHxC+IHwvC6y/l5OUU9ZCb5j8MEwGA1UdEQRFMEOCFHNoaWJi
b2xldGgubHN0LmFjLnVrhitodHRwczovL3NoaWJib2xldGgubHN0LmFjLnVrL2lk
cC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBk1SxH0cSlf0mlNSgot95m
r/a/8HaFmMPTkkZIWutsYrn46bbdpoBUeVkO9QZ/9slFqcfsE0qOY/eOurrGfrgf
B/5JWSDHoRvQ37/RCB+gDLvqiNNeL2An8AC33TyNQHU2KTtjdnRsSqMUQ2VmBJ6t
h0rqb7kuee8Xa9ZXHG9PZBLT++Os6pB8jav2c4PRI49yj4s16kWbgaLUZ+K1qQkP
qh5o0z4etJiSh6H8xFjLHQzmndvpfJ84HltZSREZGYZkdpFBHHEf/ZHEhOkMlY8g
jxIWaHcHY3G7TWIV7NAT6+ZiddjYUAyD5GEZxZXfMzJJEnWPCiBmtM9IBcF9Vv4s
NusuU+YghWl+CWpv3TfuJG2UMnznXa8ZDDq0VgzT5RzOnYWh30Acp4nYgv8b749u
eiGvIyCsvMr2jX/TxuzmdJWO85g4YUp0gmJCBep6gqkDQG/GSDG1Y2Uv48sRP/9E
N0Iyi1crLDOKvZ+UxGLSakR4UdJzY+eRkiWZMKLutQs=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.lst.ac.uk:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.lst.ac.uk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

    <!-- SP metadata for SAML proxy -->
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
  
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>
MIIEPDCCAqSgAwIBAgIVAPmfADIvRWm9fOOTbkT6EGljQMIwMA0GCSqGSIb3DQEB
CwUAMB8xHTAbBgNVBAMMFHNoaWJib2xldGgubHN0LmFjLnVrMB4XDTE5MDMyMTE1
NTgzN1oXDTM5MDMyMTE1NTgzN1owHzEdMBsGA1UEAwwUc2hpYmJvbGV0aC5sc3Qu
YWMudWswggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCE4gfGrBu7ZWNT
kk8uAzH01SQe/HZb44lu+D5jrKwbvs/e3FF7VfiC+KEOR3BysdGpcYqORHOjfOaI
JLPaqWsP7rHRWM6tYgy6Bs7Ws6RKezgOZVr0CbUD831WRJP5QItnGL1oljRHLwZk
xloo/Xx5Hou4Yb5vPOz7dPfmKNwdpytknivbzj/ME1h8GUOQtNTqe2PAeS4Z6ROO
cZQBAam7AyXmRj6gAUB5/TWI2nypH9kKcX2hSpU2gFks5Fi5bfu4oy3k6s2L08Kg
XAIY7c2YTxo7n4ptpCf5KdEKPeR2Mpb48DYWmLelBxnYglDNL8d6pxO+RcdllAjN
YIYxAo+UfxN9sUQdvUWyFtm54MxAKtlHYvJerXzc/NPOCdAQpJim/eEaM6fsqock
bZgtIvKkTgcp2fu8GOodjcrriRSKIrcoDDtLWtIYNR1RdmKwoPdOrqArR0nEnJ7q
BMPwj7fWVAlp1dWvh2D1Z5A+1Xi7mPCSA5cehAH54U4v0nZmLK8CAwEAAaNvMG0w
HQYDVR0OBBYEFPdzHxC+IHwvC6y/l5OUU9ZCb5j8MEwGA1UdEQRFMEOCFHNoaWJi
b2xldGgubHN0LmFjLnVrhitodHRwczovL3NoaWJib2xldGgubHN0LmFjLnVrL2lk
cC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBk1SxH0cSlf0mlNSgot95m
r/a/8HaFmMPTkkZIWutsYrn46bbdpoBUeVkO9QZ/9slFqcfsE0qOY/eOurrGfrgf
B/5JWSDHoRvQ37/RCB+gDLvqiNNeL2An8AC33TyNQHU2KTtjdnRsSqMUQ2VmBJ6t
h0rqb7kuee8Xa9ZXHG9PZBLT++Os6pB8jav2c4PRI49yj4s16kWbgaLUZ+K1qQkP
qh5o0z4etJiSh6H8xFjLHQzmndvpfJ84HltZSREZGYZkdpFBHHEf/ZHEhOkMlY8g
jxIWaHcHY3G7TWIV7NAT6+ZiddjYUAyD5GEZxZXfMzJJEnWPCiBmtM9IBcF9Vv4s
NusuU+YghWl+CWpv3TfuJG2UMnznXa8ZDDq0VgzT5RzOnYWh30Acp4nYgv8b749u
eiGvIyCsvMr2jX/TxuzmdJWO85g4YUp0gmJCBep6gqkDQG/GSDG1Y2Uv48sRP/9E
N0Iyi1crLDOKvZ+UxGLSakR4UdJzY+eRkiWZMKLutQs=
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
  
        <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.lst.ac.uk/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
    </SPSSODescriptor>

</EntityDescriptor>
