<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.     On Demand Metadata Generation available from the metadatagen plugin.
--> 
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2023-01-27T11:23:53.003Z" entityID="https://idp.rcpi.ie/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">rcpi.ie</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.rcpi.ie</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.rcpi.ie</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.rcpi.ie/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
--> 
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel--> 
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.rcpi.ie:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
        <!--<ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.rcpi.ie:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
--> 
<!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.rcpi.ie/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.rcpi.ie:8443/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.rcpi.ie/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.rcpi.ie/idp/profile/SAML2/POST-SimpleSign/SLO"/>
--> 

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.rcpi.ie/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.rcpi.ie/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.rcpi.ie/idp/profile/SAML2/POST/SSO"/>
        <!--<SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.rcpi.ie/idp/profile/Shibboleth/SSO"/>
--> 
    </IDPSSODescriptor>

<!-- Enabling SAML Proxy -->
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                        <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                        <ds:X509Certificate>
MIIDFzCCAf+gAwIBAgIUH9bbvnLR0v9pD3ammqi5YFwsHv0wDQYJKoZIhvcNAQEF
BQAwFjEUMBIGA1UEAxMLaWRwLnJjcGkuaWUwHhcNMTIxMjEwMTUzNTUwWhcNMzIx
MjEwMTUzNTUwWjAWMRQwEgYDVQQDEwtpZHAucmNwaS5pZTCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBAIxoKUdA04fWoW2MLF3uQUqwBGvBj2SSISJiBmNI
eNRRNW8ARx0/HtpvXTHwTJkQ137YVlYXz8cCFuKpgPBXqyxOX+IErBuyWKLezuW9
1jep3R6YVAYg5D8keXAda4iE/cAzBXnujAboBWFrvK0H+UFKNjIrvKB0EgcnXnF2
BNy0bngue3lZiqlR4vZSff1BZ5RgvuvAsGz1PX/3Zmow1HSLUY0i8cVkEabMrirV
f+fPW3GWyV2pHIeTKpkAMehXYvb00W/M+Ct1yN3pSUfr2YlLYDkQIwvHI1VOZmwz
hcUclwWisvLwFLi6jH7X24b0WrWS1JZu4nQsH503Tl2TECUCAwEAAaNdMFswOgYD
VR0RBDMwMYILaWRwLnJjcGkuaWWGImh0dHBzOi8vaWRwLnJjcGkuaWUvaWRwL3No
aWJib2xldGgwHQYDVR0OBBYEFJDWXw5QGD8eaX9YnvK5tXi4pNdbMA0GCSqGSIb3
DQEBBQUAA4IBAQBmv7sihWS+vdXCIz2ISFuElyJmFjdziPHv9K50LlMays+FVSKz
0vtlVdBVPgR2H64z1UocoCiMWiB8CdM2jMFoF1KGFgV2rRl2KiHHPxB4zvW8CnB8
53T5BT8aZWNV8TM3H7UXgfjuVeC2sb+Ka93uzvCyDS0PWPs3TknFRotVyzWPWe86
YINLSp6w3cT9k2al0TQwNlzhwGwK9JvFUuzUU5SK0viHoIxdlFSxzZhJxggzmrW8
8s9Q6HryWs7l9TSCCHb740jYCApjJ1vafAHbgbtBMtHg6mqPLrDDbBTO3Vq0JnmP
28uRVtp9EMa9ZdTxX444lGzBxeNZWeerUjQG
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.rcpi.ie/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
    </SPSSODescriptor>

</EntityDescriptor>
