<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2024-01-23T10:21:23.867Z" entityID="https://idp.dias.ie/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">dias.ie</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.dias.ie</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.dias.ie</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.dias.ie/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.dias.ie:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.dias.ie:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.dias.ie:8443/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.dias.ie/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.dias.ie/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.dias.ie/idp/profile/SAML2/Redirect/SLO"/>
        -->

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.dias.ie/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.dias.ie/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.dias.ie/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.dias.ie/idp/profile/SAML2/POST-SimpleSign/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">dias.ie</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.dias.ie:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->
        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.dias.ie:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
