<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2024-06-25T12:16:18.187Z" entityID="https://idp.ria.ie/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">ria.ie</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.ria.ie</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.ria.ie</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.ria.ie/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ria.ie:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ria.ie:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ria.ie/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ria.ie/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ria.ie/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ria.ie:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ria.ie/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.ria.ie/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.ria.ie/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.ria.ie/idp/profile/SAML2/POST/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">ria.ie</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEDzCCAvegAwIBAgIJAK3RJj4TcwC3MA0GCSqGSIb3DQEBCwUAMIGdMQswCQYD
VQQGEwJJRTERMA8GA1UECAwITGVuaXN0ZXIxDzANBgNVBAcMBkR1YmxpbjEcMBoG
A1UECgwTUm95YWwgSXJpc2ggQWNhZGVteTEZMBcGA1UECwwQSGlnaGVyIEVkdWNh
dGlvbjETMBEGA1UEAwwKaWRwLnJpYS5pZTEcMBoGCSqGSIb3DQEJARYNbm9jQGhl
YW5ldC5pZTAeFw0xODA0MjYwODQ5MjhaFw0yODA0MjMwODQ5MjhaMIGdMQswCQYD
VQQGEwJJRTERMA8GA1UECAwITGVuaXN0ZXIxDzANBgNVBAcMBkR1YmxpbjEcMBoG
A1UECgwTUm95YWwgSXJpc2ggQWNhZGVteTEZMBcGA1UECwwQSGlnaGVyIEVkdWNh
dGlvbjETMBEGA1UEAwwKaWRwLnJpYS5pZTEcMBoGCSqGSIb3DQEJARYNbm9jQGhl
YW5ldC5pZTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANiUChyFzgtH
7eILDMG2qGpQI570/iOrJCcuPXdhgqB3NHXDTRRZLM1cqvzVKwXiG/XWh9TW7Y6P
d/AqUzNX8vOh5gBefLgxxyak37T3w2mPzrwMTdQIOEtHHpmESROl5mp8z21nu8Pw
09im65kJgsAaqXgaUT9BXqnP2CVePubmIIdh/RttnNQXWKcF7Bay2rQM8y9eahoc
oV/3YWm0I8NR/w6nDKerMJ3l9p1GBSIBLuDZNV4NJ0meBYTEy1woOsULQfA1hkq9
osIQCj/F+AtdvIyPaIThMVZfu++bfJV+Y37l5HGjcCPkZ2plD6t6HOUoEOhK7LX4
d4+C/JCqtVUCAwEAAaNQME4wHQYDVR0OBBYEFIf2zpHrZqHJLRcYjofJ2QnDvkSX
MB8GA1UdIwQYMBaAFIf2zpHrZqHJLRcYjofJ2QnDvkSXMAwGA1UdEwQFMAMBAf8w
DQYJKoZIhvcNAQELBQADggEBAJ5TqTo9aTF5kW0t+YxZCAuosK5AET3Yu0nE21eS
8vK2XKeIFZIUyDsh8NyFXwIL2cQUH1b54LQetT7brIHS6+ZzI9c0TC31hH/PnBQ7
XG3pXKkKiPYojldZi8q/jfYh0xcuZwJcDIfhudMY4heW7mDZ+FaSOGANscNLL+xD
/Adj0T2BGTkXIEH5CLdAw5xr44hNLeMqiBUyIKy53QtsiyAzXnZT2VkaRy+vaRPy
kXmAy+oxvBOif5NW+obnidpwscYOc/Dkr34EaX1j0Z7QdiVp5JHyJXQgIR/9FcmT
OMZMcqcKaMm+y+Jr3uvWJyUw2e3rd3pSsv0JPb10ahO+2N4=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ria.ie:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ria.ie:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>
<!-- Enabling SAML Proxy -->
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                        <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                        <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ria.idp/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
    </SPSSODescriptor>

</EntityDescriptor>
