<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2021-06-28T10:57:41.074Z" entityID="https://idp.thea.ie/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">thea.ie</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.thea.ie</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.thea.ie</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.thea.ie/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.thea.ie:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.thea.ie:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.thea.ie/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.thea.ie/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.thea.ie:8443/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.thea.ie/idp/profile/SAML2/Redirect/SLO"/>
        -->

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.thea.ie/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.thea.ie/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.thea.ie/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.thea.ie/idp/profile/SAML2/POST/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">thea.ie</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.thea.ie:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.thea.ie:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>
    <!-- Enabling SAML Proxy -->
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                        <ds:X509Certificate>
MIIEGDCCAoCgAwIBAgIVAN8tlOOEma9PKpSORICmjiZBalvfMA0GCSqGSIb3DQEB
CwUAMBYxFDASBgNVBAMMC2lkcC50aGVhLmllMB4XDTIwMTAzMDExMTgwOFoXDTQw
MTAzMDExMTgwOFowFjEUMBIGA1UEAwwLaWRwLnRoZWEuaWUwggGiMA0GCSqGSIb3
DQEBAQUAA4IBjwAwggGKAoIBgQCDK+8WHvzU7oYRi67jqWq4YiwNLSQhRbYLRZvN
mYa0GUYFxttlcGNxixsoPH+JvbJkNmvgi/xHG4bdyEgIrB4huv72xGi64xhFmAyo
pS4hGUJCqm9wa6AOCP+qeoo+6rtDtQX8kJcwoJXVzVQCLregrcGW0PlGoIgPyiXx
4I8NDXllhi8XewHAwJKj8drmLB696Pqo4Dx62SBtxW82nd6gxWJmPhZ5Z71dpCBp
M2p07w5hFRWZwVSCAo4iZivwl4MlHvL3xl/WoAQ/ZBoRAMmPkzoyu4ehTbsRavje
kVw4SecB2XNCySVLXK8a3KzaAEBnVunAsMsEUO4AHF2Y9oOfL4vJfjvvIKOmhDmM
eWDR/ZixeCR10XJ7BgJxXOA4x17K8kIRZIx7/9ExV81FR7F20WZ3KzTTg5etPn1b
HHKt1g7sl8hjiYPFykvyszv1JBxH+czTCQtoSDSorpKe/8nG11BQ10UncTkNRv7c
cTwhwjq6g0veT5Ji4CNwEALhxWsCAwEAAaNdMFswHQYDVR0OBBYEFPBUy6yvugv2
uywzwrdUG9nwEnYXMDoGA1UdEQQzMDGCC2lkcC50aGVhLmllhiJodHRwczovL2lk

</EntityDescriptor>
