<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idp.sftwales.com/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">sftwales.com</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.sftwales.com</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.sftwales.com</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.sftwales.com/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sftwales.com:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sftwales.com:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sftwales.com/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sftwales.com/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.sftwales.com/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sftwales.com:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.sftwales.com/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sftwales.com/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.sftwales.com/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sftwales.com/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">sftwales.com</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDKzCCAhOgAwIBAgIUTxvpetU6j4JM0MvmdvMFallJLvcwDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAwwQaWRwLnNmdHdhbGVzLmNvbTAeFw0xNzAxMDUyMTM2MzVa
Fw0zNzAxMDUyMTM2MzVaMBsxGTAXBgNVBAMMEGlkcC5zZnR3YWxlcy5jb20wggEi
MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC2sfQf9wdhFaJr4ORxnnXlvjO/
MvQzWdv8oSHFJu+hLEElNcly/D6huDlxseV+56IRc3JdkMVTz0od67tGxU3qqB+O
7xuhJdNG2HSqK16u8Z+M3ZukjCh3KUZ+PIGZNTG7mpFVmhP/I2LVzfRFCzZeE30B
2bLIJYUKGoAx4/1k28xikeerk9anw1Ydy6F431w3ulg/pEYOBQP+nTU35TLCVIwK
GsHwFFTshvFweu/KaZASPHi6VeGXFUlSEt4dn/coLQBUp51faHJapsp9KDnFdYtq
DpiZ2sMcZ1uxaJtipe5LLYF4FWffrXeT+03gQ6hznVW4GzWcuswAhhbaYaOlAgMB
AAGjZzBlMB0GA1UdDgQWBBRU7gPF0yRjSoACvfUAo/Tb0Y4qXTBEBgNVHREEPTA7
ghBpZHAuc2Z0d2FsZXMuY29thidodHRwczovL2lkcC5zZnR3YWxlcy5jb20vaWRw
L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBACr4eXVkPv/8TB2yuVobRSnv
nJrkqtF56+It6DrQdtQlk2EZZU5vKEZ6wBYUZCTW1frjTKAyiIJSc3rCE/QAlKPF
NDrv6ZaHg01TOzyvQVNl7/hkysYPiEWQJ8ij1lcVMnyis3wdsPVXOk7/Zvfqzmyr
Uq2ruolMBgZqyKP5d/u7w92Aw5QXR7Lh29yL8nQXnFuHfsKXiI1j2a5EP8xNXm9s
5dgAAA4bUlahiCnuuoH1ND2I7qbCiaLKgo9qQK5uMJCW2NThqL8rLJEaZoOEuTEo
IlhCxja12iGz5BXZVA/ZibtcmK13ulmDfDfj2mRrp+d861sSq3DkHB3kzShj6t8=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sftwales.com:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sftwales.com:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
