<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2021-11-15T14:15:15.234Z" entityID="https://idp.riam.ie/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">riam.ie</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.riam.ie</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.riam.ie</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.riam.ie/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.riam.ie:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.riam.ie:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.riam.ie/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.riam.ie/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.riam.ie/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.riam.ie:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.riam.ie/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.riam.ie/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.riam.ie/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.riam.ie/idp/profile/SAML2/POST/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">riam.ie</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEFzCCAn+gAwIBAgIUAxBi0pYDkKqA39cWA/YDjhWcN20wDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLaWRwLnJpYW0uaWUwHhcNMjExMTE1MTQxNDQzWhcNNDEx
MTE1MTQxNDQzWjAWMRQwEgYDVQQDDAtpZHAucmlhbS5pZTCCAaIwDQYJKoZIhvcN
AQEBBQADggGPADCCAYoCggGBAJqOC7ERSaOYwQ3i+S7Z6UZtIgBq1TJ4BIZoWWfP
s52qJb7veE0Pu17INPMa9YtbluyJjB4je3RYX/cUix+YMnVmTDgYzLINZAaz9V2g
jX7VDbONiZjh4+DxiG1nCTxpRgDNfLAUYWxXTKUvc7u6k2cvhhClub5a+oGkD3n4
R5UD17HhKeqKKM62YIfJ/UiLkx1B1rwj/J76U6t5iJ+Ad2mV9pw22A+Jzv/yKXHh
LKn37RgjQjrXDl/0bTUyuHMjBAgBp9GLrhjlRZmqNlkLLphjRK5KiNsTwCf0HCof
srIOzkYgNFsOgGYjljxAlNK3Rg04NNUABDpt2GgyztOQJQp1IXFTCLX9P9bLE9LY
ugL2VJlZFmUV5hpK++EqvNx83bgkYYKohaVjmUhvt8+lB6xLDTrYLkcd3oq1AvkK
9RxDasUX/hglCprIApciTyHxAdgKldNBkZErpxIWpnOcCByJa7i//udqU84j3dB/
MlQmE94aThoKc4IVVa0MUrGZBQIDAQABo10wWzAdBgNVHQ4EFgQUtiSewGEHJQ1z
3+Jw8audIa+PzKMwOgYDVR0RBDMwMYILaWRwLnJpYW0uaWWGImh0dHBzOi8vaWRw
LnJpYW0uaWUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBABJAara5
6uPonaAOBM2GWXNtD9OAiiGhlAyvQpAueaOPw0mCHRTkwoOeKbb/3CZJ3Ut5SSPN
rVxgCVl+KFZwGmyvygM6pq4bLSJ6WfdZbdD0YYx2cBqR48sLF8SGvSczyc9iHDgY
C4XZoNCHpUd34w8eSNFnyYj41di5iJDk8FeKGjLHNW3YGmLv+naiOuZ1eT0AK2YJ
SZizXLDrcNWBQZ4O+FjUlwPH4j9kpzwwCIwCO/IDFkT4Bjh7HJrnF0uliGFHz9hY
+KLdDkYRUqawFMUjPZt/y4ewGqh7tWzyFY05IgtxAdCIYJxRYijKSutmpWnTYTSK
msRzDsapANulwczjQkSrnJDhfls0zHEHXpGoBB9Z0L6Gw5C18kXcybyayg8CSbdh
vYGDsIZHseUiQtQIdjLFKor+8T2M9ewnPvFhdH717Xmyql/KQM4P6vbjOjkWeNwi
svCMRszAMjgP9PlBLJPFMw4uMfOwxytaGGWY8q+9u+XW/EeUV2FlDdvfrQ==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.riam.ie:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.riam.ie:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

    <!-- Enabling SAML Proxy -->
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
 
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
			<ds:X509Certificate>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=
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
			<ds:X509Certificate>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=
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.riam.ie/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
    </SPSSODescriptor>
</EntityDescriptor>
