<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:wayf="http://sdss.ac.uk/2006/06/WAYF" xmlns:elab="http://eduserv.org.uk/labels" xmlns:ukfedlabel="http://ukfederation.org.uk/2006/11/label" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://umbrellaid.org/idp/shibboleth">
 <md:Extensions>
  <mdattr:EntityAttributes>
   <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
    <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
   </saml:Attribute>
  </mdattr:EntityAttributes>
 </md:Extensions>
 <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
  <md:Extensions>
<shibmd:Scope regexp="false">umbrellaid.org</shibmd:Scope>
<mdui:DiscoHints>
 <mdui:GeolocationHint>geo:47.538108,8.223256</mdui:GeolocationHint>
 <mdui:GeolocationHint>geo:45.204130,5.695907</mdui:GeolocationHint>
</mdui:DiscoHints>
</md:Extensions>
  <md:KeyDescriptor>
   <ds:KeyInfo>
    <ds:X509Data>
     <ds:X509Certificate>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</ds:X509Certificate>
    </ds:X509Data>
   </ds:KeyInfo>
  </md:KeyDescriptor>
  <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://umbrellaid.org:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
  <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umbrellaid.org:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
  <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umbrellaid.org/idp/profile/SAML2/Redirect/SLO"/>
  <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umbrellaid.org/idp/profile/SAML2/POST/SLO"/>
  <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umbrellaid.org/idp/profile/SAML2/SOAP/SLO"/>
  <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
  <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
  <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
  <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://umbrellaid.org/idp/profile/Shibboleth/SSO"/>
  <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umbrellaid.org/idp/profile/SAML2/POST/SSO"/>
  <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umbrellaid.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
  <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umbrellaid.org/idp/profile/SAML2/Redirect/SSO"/>
  <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umbrellaid.org/idp/profile/SAML2/SOAP/ECP"/>
 </md:IDPSSODescriptor>
 <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
  <md:Extensions>
   <shibmd:Scope regexp="false">umbrellaid.org</shibmd:Scope>
  </md:Extensions>
  <md:KeyDescriptor>
   <ds:KeyInfo>
    <ds:X509Data>
     <ds:X509Certificate>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</ds:X509Certificate>
    </ds:X509Data>
   </ds:KeyInfo>
  </md:KeyDescriptor>
  <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://umbrellaid.org:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
  <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umbrellaid.org:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
  <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
  <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
  <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
 </md:AttributeAuthorityDescriptor>
 <md:Organization>
  <md:OrganizationName xml:lang="en">Umbrella ID</md:OrganizationName>
  <md:OrganizationDisplayName xml:lang="de">Umbrella ID</md:OrganizationDisplayName>
  <md:OrganizationDisplayName xml:lang="fr">Umbrella ID</md:OrganizationDisplayName>
  <md:OrganizationDisplayName xml:lang="en">Umbrella ID</md:OrganizationDisplayName>
  <md:OrganizationURL xml:lang="en">https://umbrellaid.org/</md:OrganizationURL>
 </md:Organization>
 <md:ContactPerson contactType="support">
  <md:GivenName>Umbrella</md:GivenName>
  <md:SurName>Support</md:SurName>
  <md:EmailAddress>mailto:bjoern.abt@psi.ch</md:EmailAddress>
 </md:ContactPerson>
</md:EntityDescriptor>

