<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2021-10-05T08:03:07.589Z" entityID="https://idp.heanet.ie/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">heanet.ie</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.heanet.ie</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.heanet.ie</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.heanet.ie/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEIDCCAoigAwIBAgIVAIK+M6oEo26PHXE0x17tmoq3K1u3MA0GCSqGSIb3DQEB
CwUAMBgxFjAUBgNVBAMMDWlkcC5oZWFuZXQuaWUwHhcNMjExMDA1MDgwMjQwWhcN
NDExMDA1MDgwMjQwWjAYMRYwFAYDVQQDDA1pZHAuaGVhbmV0LmllMIIBojANBgkq
hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEApFKElGRMeMFwKftJdOxS/jBwBhx/bLaN
JacwhAJyzws16Ni8xjZvrCMM5iZBGoD6YXzDXgwmiNT65ZkF77Xs7YBAKaVK10EM
jiHR6GxlI5nV3dEQVleIjF1pI5xtBuvDQYFu19b+j3bLEtOXG5JC8q9AkgLDjfhD
GhAS62bdY0SLfFl4mtxxXTHptu/hMz6dAoVL5BznpWYaDMC3Tf5OWHoDnU968y0v
6qYrv3zhSY8e8V3tY6qalNRIN7M+jliCRbkK+xbdTBOWbpXU0OHxCR1Pn/ebMFFu
OX1ylTQygk8wNtcLx/pEZRZ0wPidpTYt8/QolGPqaBmPIJY63rmltTClVLRSgfMM
5mdDg0ckGoFEjElA2TbMeEKcUaBFVXUixFhRvtAHh2K0m23Kz+6jv3PzISL2Fuq8
U5cNV1G+N6CBrzEgVxrZkBB3Y+wppl0ktXwgjBdMY+ZgM1LCBghRwUWjKfGux0ap
XFVYjCJMiEOySKO2zOdHlROTAK0hgzbJAgMBAAGjYTBfMB0GA1UdDgQWBBRSTiFF
LV8eHr2xJbbgbrlsSF8/ajA+BgNVHREENzA1gg1pZHAuaGVhbmV0LmllhiRodHRw
czovL2lkcC5oZWFuZXQuaWUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD
ggGBAJW6I6Acb0UPp/58xuWGZRu0peud2DKkNXUDS941h4RFG04628VS0ATE5RZl
iwSf+AQattfyteKeiUxK5jFo6StnXkwYmrTK9iPpKiBGaupBWRtKA17TpYS9Gb/d
Xrk540+05HUaA+tNMNVHG7tnH715OpENzJ9XSwCy8H/ekAFHfpFDh0xpfG22CZHC
VeViTDd+rwivnuhNJ9rXQHEL4IkM6tImfmWmtd8NYFCf1yIePxExKFhJ1UHDu2cn
A2yQwuI/K+eXZpyqotkUPOJI26wU9qe/e/WE870Y2rGssJXsvf0wED7E7vPnpdf5
UVJv8p08OUgNri4cKRCRMCrhaam0qUkoGt3rurB2vpJo0K0ZdjNGnBVT1pnZveh+
0Ukshvaqn7zUYai2nejGpEQCdk8njkxCxafe8hfGv5LrKF3y8D2a3of9KVXrNps1
DzFULQ77h4kyjYp5Xf97qJq0EKWao1+pAPRXNt80m/NOZkh39xtonQSAD2J4nqwN
QiVMJw==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.heanet.ie:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.heanet.ie:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.heanet.ie:8443/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.heanet.ie/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.heanet.ie/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.heanet.ie/idp/profile/SAML2/POST/SLO"/>
        -->

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.heanet.ie/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.heanet.ie/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.heanet.ie/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.heanet.ie/idp/profile/Shibboleth/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">heanet.ie</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEIDCCAoigAwIBAgIVAIK+M6oEo26PHXE0x17tmoq3K1u3MA0GCSqGSIb3DQEB
CwUAMBgxFjAUBgNVBAMMDWlkcC5oZWFuZXQuaWUwHhcNMjExMDA1MDgwMjQwWhcN
NDExMDA1MDgwMjQwWjAYMRYwFAYDVQQDDA1pZHAuaGVhbmV0LmllMIIBojANBgkq
hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEApFKElGRMeMFwKftJdOxS/jBwBhx/bLaN
JacwhAJyzws16Ni8xjZvrCMM5iZBGoD6YXzDXgwmiNT65ZkF77Xs7YBAKaVK10EM
jiHR6GxlI5nV3dEQVleIjF1pI5xtBuvDQYFu19b+j3bLEtOXG5JC8q9AkgLDjfhD
GhAS62bdY0SLfFl4mtxxXTHptu/hMz6dAoVL5BznpWYaDMC3Tf5OWHoDnU968y0v
6qYrv3zhSY8e8V3tY6qalNRIN7M+jliCRbkK+xbdTBOWbpXU0OHxCR1Pn/ebMFFu
OX1ylTQygk8wNtcLx/pEZRZ0wPidpTYt8/QolGPqaBmPIJY63rmltTClVLRSgfMM
5mdDg0ckGoFEjElA2TbMeEKcUaBFVXUixFhRvtAHh2K0m23Kz+6jv3PzISL2Fuq8
U5cNV1G+N6CBrzEgVxrZkBB3Y+wppl0ktXwgjBdMY+ZgM1LCBghRwUWjKfGux0ap
XFVYjCJMiEOySKO2zOdHlROTAK0hgzbJAgMBAAGjYTBfMB0GA1UdDgQWBBRSTiFF
LV8eHr2xJbbgbrlsSF8/ajA+BgNVHREENzA1gg1pZHAuaGVhbmV0LmllhiRodHRw
czovL2lkcC5oZWFuZXQuaWUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD
ggGBAJW6I6Acb0UPp/58xuWGZRu0peud2DKkNXUDS941h4RFG04628VS0ATE5RZl
iwSf+AQattfyteKeiUxK5jFo6StnXkwYmrTK9iPpKiBGaupBWRtKA17TpYS9Gb/d
Xrk540+05HUaA+tNMNVHG7tnH715OpENzJ9XSwCy8H/ekAFHfpFDh0xpfG22CZHC
VeViTDd+rwivnuhNJ9rXQHEL4IkM6tImfmWmtd8NYFCf1yIePxExKFhJ1UHDu2cn
A2yQwuI/K+eXZpyqotkUPOJI26wU9qe/e/WE870Y2rGssJXsvf0wED7E7vPnpdf5
UVJv8p08OUgNri4cKRCRMCrhaam0qUkoGt3rurB2vpJo0K0ZdjNGnBVT1pnZveh+
0Ukshvaqn7zUYai2nejGpEQCdk8njkxCxafe8hfGv5LrKF3y8D2a3of9KVXrNps1
DzFULQ77h4kyjYp5Xf97qJq0EKWao1+pAPRXNt80m/NOZkh39xtonQSAD2J4nqwN
QiVMJw==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.heanet.ie:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.heanet.ie:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

    <!-- Enabling SAML Proxy -->
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
 
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
			<ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
			<ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
 
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.heanet.ie/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.asiera.ie/idp/profile/Authn/SAML2/POST/SSO" index="1"/>

    </SPSSODescriptor> 


</EntityDescriptor>
