<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idp.windsor-forest.ac.uk/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">windsor-forest.ac.uk</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.windsor-forest.ac.uk</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.windsor-forest.ac.uk</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.windsor-forest.ac.uk/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDTDCCAjSgAwIBAgIVAPOseJKsL54YCPBCF4OXekn7Z5CpMA0GCSqGSIb3DQEB
CwUAMCMxITAfBgNVBAMMGGlkcC53aW5kc29yLWZvcmVzdC5hYy51azAeFw0xODA1
MTUxMjE4NThaFw0zODA1MTUxMjE4NThaMCMxITAfBgNVBAMMGGlkcC53aW5kc29y
LWZvcmVzdC5hYy51azCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAK3C
vK0zUEA9z8OHZc1tYls8gAa/d6umdThxLSF43ICFYgFrSKF5XKeRCs0AAtDXWusr
i311nPkamnF9P0SXk1OoQwuI19OQD/XciyC5HV9BBnieaY4m2oE+RwBHVFzq3REM
l+kTo7f+caITrfHaLqAxbxplsmjUy4tX+qjMC7VCSjfcjKdUNgPW4ExR9gAbN+4H
5zfl1Oi4MkRcwjCsRfV/lScM4oQUpwSUyAkIrFo4FN1Ie1wqK2s5quKYK6hUZoRD
2tDq0k34SKezK3vbD4JFJWESp/J0moxeO6n+J8IljtGz8bz8vMCOkDO0qsGwo25T
jYT/0YGZ36jyIwfCLCkCAwEAAaN3MHUwHQYDVR0OBBYEFDkWAP4bhrPry0hs115Z
JLQGA7sGMFQGA1UdEQRNMEuCGGlkcC53aW5kc29yLWZvcmVzdC5hYy51a4YvaHR0
cHM6Ly9pZHAud2luZHNvci1mb3Jlc3QuYWMudWsvaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQELBQADggEBAGq89m16cILhD4AFU/fc/TYWIxrATQY4iT+VaDpznCgv
Ohayp/ikXEXvFmgrN3w2gH29LDK8PlWhpcvCtZSlAKd4x8TQK2fAmC8qwnJX1XCd
/dUWoCvSd2ZDw0DYutDp2hEIaiUirKJZGIejfIB/2VYJjkDBSR/UjzvGpMhC4UcL
yWIN6Tth6co7qpjZ8k2sypeDXnXhpTRYiLe/QhA5Fg8R2vDBvJPQ7zzMLHPeTts7
SJA7aZ3cFsm+PyS8iz2gdOS/BQuJRP6/VOzjDllUnb5Ivs765OESqQ78vR+LbgdL
eUddDeAw4GSULw/3VfYsAjCekuXJPmA2LO8WJpkz6OY=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.windsor-forest.ac.uk:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.windsor-forest.ac.uk:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.windsor-forest.ac.uk/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.windsor-forest.ac.uk/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.windsor-forest.ac.uk/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.windsor-forest.ac.uk:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.windsor-forest.ac.uk/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.windsor-forest.ac.uk/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.windsor-forest.ac.uk/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.windsor-forest.ac.uk/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">windsor-forest.ac.uk</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDTDCCAjSgAwIBAgIVAPsS2vmBXGqPMt9dKVklse00gSKvMA0GCSqGSIb3DQEB
CwUAMCMxITAfBgNVBAMMGGlkcC53aW5kc29yLWZvcmVzdC5hYy51azAeFw0xODA1
MTUxMjE4NTlaFw0zODA1MTUxMjE4NTlaMCMxITAfBgNVBAMMGGlkcC53aW5kc29y
LWZvcmVzdC5hYy51azCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIYG
2D9PBcNZZYS2b7xNozmVBk5/VILQa9U36kaLLSPBlXvD6M1rIaSS84yHCgM4v4zv
56cAT5YeqFE8bzYmYnqEz9gNFNL2oILFjG/9yEU1hack0FAbsQyQFNVC3GoYug8H
yqwUQy2P4W2uYt6EtCQvyhTaS6lpfO9pVXa2zyqtv/sdq7eNGMWu8jACSpCeqOnn
bFMaPtkhEHeLPMDkvWLNc1/Os9C+SmGgLoyHHNaB9F8bB6XIOOyprmxnbvFn45r+
8Mx/rnwC69deBIpOOajFsKBzTaFqeocSNiFJDmJtOdGSTtSmQsf9kS/+y/2pQxgj
LSjfiycRR1ChjBi4PU0CAwEAAaN3MHUwHQYDVR0OBBYEFOXnf3WxXvAvbCOABHsX
DOzXXKSvMFQGA1UdEQRNMEuCGGlkcC53aW5kc29yLWZvcmVzdC5hYy51a4YvaHR0
cHM6Ly9pZHAud2luZHNvci1mb3Jlc3QuYWMudWsvaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQELBQADggEBAAYm8PSeNGA1qCBIBp8+TU39abQWDiG+uQYHcolTpBOG
w4ML8rln/Bt/muaWKkbG+bq7iJvWuStMC/lstesMEuQUvpUaLXLWqoltN7I6rxZk
4WxJ32e2gdsYeZsbZFdI2ylq8dKnTlZprOZAtwP2Vtje2TUvnq2pfXvX5JUYG0Xo
fRsgi65nRopYZCsSh1OtSYG1zKzYD88pUbOyqleB93oCNApszm51B5B+cegdBmRf
BD5PKfH7Rlh+zP7O1F7tJJMDxk1WbLdv3pkg3Ys0NwYH9BUngcsy+qkG+y5Vtrny
ukWJKYhDWQY/bMcRzNayRTJFw/pa7Lh2KtiaN4tk8u4=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.windsor-forest.ac.uk:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.windsor-forest.ac.uk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
