<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
--> 
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" entityID="https://idp-test.iap-kborn.de/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">iap-kborn.de</shibmd:Scope>
<!--
    Fill in the details for your IdP here 
-->
            <mdui:UIInfo>
		    <mdui:DisplayName xml:lang="en">Leibniz-Institute of Atmospheric Physics IAP</mdui:DisplayName>
		    <mdui:DisplayName xml:lang="de">Leibniz-Institut für Atmosphärenphysik IAP</mdui:DisplayName>
		    <mdui:Description xml:lang="en">Identity Provider of Leibniz-Institute of Atmospheric Physics</mdui:Description>
		    <mdui:Description xml:lang="de">Identity Provider des Leibniz-Institut für Atmosphärenphysik</mdui:Description>
		    <mdui:Logo height="16" width="16">https://idp.iap-kborn.de/favicon.ico</mdui:Logo>
		    <mdui:Logo height="80" width="80">https://idp-test.iap-kborn.de/idp/images/iap-logo-ger.jpg</mdui:Logo>
            </mdui:UIInfo>
--> 
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel--> 
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEPzCCAqegAwIBAgIUJyrUEKtVXbq4Z3OzIBFLHZ+LKngwDQYJKoZIhvcNAQEL
BQAwIDEeMBwGA1UEAwwVaWRwLXRlc3QuaWFwLWtib3JuLmRlMB4XDTIxMDYxMTEx
NDQwNVoXDTQxMDYxMTExNDQwNVowIDEeMBwGA1UEAwwVaWRwLXRlc3QuaWFwLWti
b3JuLmRlMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAlcsn5N/L2X4d
KJ3V9FKqGC4BzDAgclDp/G3M+InmckWALpPPdaaZ49lkOelRJulYW9OaEeeNERAW
pQ6/JsFPtmaUzruJMz0x+Wr/rUzxLlWcLBeAukA7ZxPAOmGRppPXheD3XQpJOI0d
/1g/r0AzCkXyDk4mYLg1sOHwNiw8Pfv1oX6/wcmHB1oHqcIcrxSm6KwScje8EUno
cFSwhL+FTkycSQNEbF7HYclBTAyy1RZczrEhJGzFAl+mziVnekPRPlo0DkkOTOlX
CbpzOhIV57JFvN56AkQlV0JO+Eu6GV3pB5itTCF6+jQvGRHvj0p5Eiaoe8ZC7m0/
YXIi70+valSmnOEW8bss8VFlSQolkQ/6HaiuC6BDOLxe3XdyNGhw/1/K0oANkalF
tn5J63XBAqsptJzQr0JTyc9EC5mqlnHSUmGgCm6f9cyN76dpc99itvIAphb3ab/O
GV9nd8GfWKZwhBUFa4akIHjcHkckOYR7AyB6N89elIAicO9Qbb6nAgMBAAGjcTBv
MB0GA1UdDgQWBBTiy1pWiIDmoLfmRo+PP3SEb3PqDzBOBgNVHREERzBFghVpZHAt
dGVzdC5pYXAta2Jvcm4uZGWGLGh0dHBzOi8vaWRwLXRlc3QuaWFwLWtib3JuLmRl
L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBVG+sinmQjFm4v7qp9
dCXwrkxFmRh+IsrzWNRJ/xZldxw22uXtQzw8S51v9wqNAiWcfdYa7Uyf8Kq6QXUc
NWz5X8qKVl9nzVHjB2I1s3f91CBB9ko7F6KlBBvUbKljhNPzL3mfiusEStC5q6eU
x6/4qTnqH4HbUhlUGwnzZaIRKDWF/EDt+JAtyzGmZxM2zmaxJWBHOtyyAqqZMml1
vzNE40uJKE9fZqKOgbp8chR2uOCMC6NNnQ5blPra+1Z8SIV557iorSLzTVjU6U+/
zyfXiu+jsMiNyEgx9QORzqQ7IvbRxZTVq5vuqkHWBHxlAYFhAMhksbYpeu69tDhz
Kp0FKOuVeUTltwfNCarKCNn/0iDIrW/w41oOJvACLBoJHTeM43QcbRzPuP03oHid
mCfjF3w54sKCCmTrKvD82n4kMnI3DWP/u1ZcB2GnEVEl7GT40b4YpoN+AtaaY6zi
aqTRHSqPKwzVEcwhiWuKITTS2U90T7n+YNEnnJ6rfNmUxZM=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <!--<ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-test.iap-kborn.de:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
-->         <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-test.iap-kborn.de:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-test.iap-kborn.de/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-test.iap-kborn.de/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp-test.iap-kborn.de/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-test.iap-kborn.de:8443/idp/profile/SAML2/SOAP/SLO"/> 

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp-test.iap-kborn.de/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <!--<SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp-test.iap-kborn.de/idp/profile/Shibboleth/SSO"/>
	-->
	<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp-test.iap-kborn.de/idp/profile/SAML2/Redirect/SSO"/>
	<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp-test.iap-kborn.de/idp/profile/SAML2/POST/SSO"/>
	<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-test.iap-kborn.de/idp/profile/SAML2/SOAP/ECP"/>

	<NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
	<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
	<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">iap-kborn.de</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel--> 
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEPzCCAqegAwIBAgIUJyrUEKtVXbq4Z3OzIBFLHZ+LKngwDQYJKoZIhvcNAQEL
BQAwIDEeMBwGA1UEAwwVaWRwLXRlc3QuaWFwLWtib3JuLmRlMB4XDTIxMDYxMTEx
NDQwNVoXDTQxMDYxMTExNDQwNVowIDEeMBwGA1UEAwwVaWRwLXRlc3QuaWFwLWti
b3JuLmRlMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAlcsn5N/L2X4d
KJ3V9FKqGC4BzDAgclDp/G3M+InmckWALpPPdaaZ49lkOelRJulYW9OaEeeNERAW
pQ6/JsFPtmaUzruJMz0x+Wr/rUzxLlWcLBeAukA7ZxPAOmGRppPXheD3XQpJOI0d
/1g/r0AzCkXyDk4mYLg1sOHwNiw8Pfv1oX6/wcmHB1oHqcIcrxSm6KwScje8EUno
cFSwhL+FTkycSQNEbF7HYclBTAyy1RZczrEhJGzFAl+mziVnekPRPlo0DkkOTOlX
CbpzOhIV57JFvN56AkQlV0JO+Eu6GV3pB5itTCF6+jQvGRHvj0p5Eiaoe8ZC7m0/
YXIi70+valSmnOEW8bss8VFlSQolkQ/6HaiuC6BDOLxe3XdyNGhw/1/K0oANkalF
tn5J63XBAqsptJzQr0JTyc9EC5mqlnHSUmGgCm6f9cyN76dpc99itvIAphb3ab/O
GV9nd8GfWKZwhBUFa4akIHjcHkckOYR7AyB6N89elIAicO9Qbb6nAgMBAAGjcTBv
MB0GA1UdDgQWBBTiy1pWiIDmoLfmRo+PP3SEb3PqDzBOBgNVHREERzBFghVpZHAt
dGVzdC5pYXAta2Jvcm4uZGWGLGh0dHBzOi8vaWRwLXRlc3QuaWFwLWtib3JuLmRl
L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBVG+sinmQjFm4v7qp9
dCXwrkxFmRh+IsrzWNRJ/xZldxw22uXtQzw8S51v9wqNAiWcfdYa7Uyf8Kq6QXUc
NWz5X8qKVl9nzVHjB2I1s3f91CBB9ko7F6KlBBvUbKljhNPzL3mfiusEStC5q6eU
x6/4qTnqH4HbUhlUGwnzZaIRKDWF/EDt+JAtyzGmZxM2zmaxJWBHOtyyAqqZMml1
vzNE40uJKE9fZqKOgbp8chR2uOCMC6NNnQ5blPra+1Z8SIV557iorSLzTVjU6U+/
zyfXiu+jsMiNyEgx9QORzqQ7IvbRxZTVq5vuqkHWBHxlAYFhAMhksbYpeu69tDhz
Kp0FKOuVeUTltwfNCarKCNn/0iDIrW/w41oOJvACLBoJHTeM43QcbRzPuP03oHid
mCfjF3w54sKCCmTrKvD82n4kMnI3DWP/u1ZcB2GnEVEl7GT40b4YpoN+AtaaY6zi
aqTRHSqPKwzVEcwhiWuKITTS2U90T7n+YNEnnJ6rfNmUxZM=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

	<AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-test.iap-kborn.de:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>  <!--
        --> <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above-->  <!--
	-->
	<AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-test.iap-kborn.de:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>

	<!-- die fehlenden NameID-Formate hinzufügen -->
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>


    </AttributeAuthorityDescriptor>

</EntityDescriptor>
