<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idpshib.ill.fr/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">ill.fr</shibmd:Scope>

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">Institut Laue-Langevin</mdui:DisplayName>
                <mdui:Description xml:lang="en">For ILL Staff</mdui:Description>
                <!--mdui:Logo height="80" width="80">https://idp.ill.fr/Path/To/Logo.png</mdui:Logo-->
            </mdui:UIInfo>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDJDCCAgygAwIBAgIVAN4YZqmAPUUxvxhlWFOcdXt0lkPPMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcHNoaWIuaWxsLmZyMB4XDTE2MDEyMDEyMjMzMVoX
DTM2MDEyMDEyMjMzMVowGTEXMBUGA1UEAwwOaWRwc2hpYi5pbGwuZnIwggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCoEacCLBls2rW1gE7ssqCQZhO4bQOO
J+WMhCBy7lwGeWWkXL3Fprp2hu9t4Ld2M2ruyl2nVOLzoUz/n3hALoNgiGesWd38
x37RdL7eYD+9fczRaAb2jfkQaNZtYBFqFOqLFf4KuofVowKy/AgjQBJdXSZ8D8TH
OmXEe4o/Y2fN+IIjII9gi599jNifzUBUxMgA3O9s9qxG+nvR53jHFkHW9pjMEEJq
L5Dv57RyZoMAeUBkYOAsTGDjS+g63TutpS4Zhmobj/1xsz8dfRtabxMy844vPYaH
KL2Oh45EtwbKvmwiBUaBwKSuTU+wTL4UDz6v5+bvzKSZ9raW+/KeiT9LAgMBAAGj
YzBhMB0GA1UdDgQWBBT4kS3bKXmpyBFT5EgvTTaJGjTKjzBABgNVHREEOTA3gg5p
ZHBzaGliLmlsbC5mcoYlaHR0cHM6Ly9pZHBzaGliLmlsbC5mci9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAONQAvzYN5oC8lO44WpzpLqdQkfyN8riw
N1oS7xq95KBojZlQ5SFE01gKMWYMgY3UdDPlubbx2ISPDW4O5qJqgLeM469rCksS
GM7vgoZ+uGzG6sbp2v74FzRX0gwdDHk1IZpk2v9KCivfkwaXaKD7y8zJUSLrVsvZ
9wHBa5thlWLDbNqAq6yzp5C6mEmeokPJYDTbXR5ux3i+mV9t889CY+2QpgFV2/EL
GBdAWDezjcpzGkCc8M1NM/mWql0btMRDc90Xp39dwAG71Pii7IYnhpRX7CguL+pk
moH17UvbXhmwNBiwKzjT791Gl2ooMO9ny00aYoCpfTDCdJPUK1a0EA==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ill.fr/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ill.fr/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ill.fr/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ill.fr/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ill.fr/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ill.fr/idp/profile/SAML2/SOAP/SLO"/>

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ill.fr/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ill.fr/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ill.fr/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ill.fr/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">ill.fr</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDJDCCAgygAwIBAgIVAN4YZqmAPUUxvxhlWFOcdXt0lkPPMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcHNoaWIuaWxsLmZyMB4XDTE2MDEyMDEyMjMzMVoX
DTM2MDEyMDEyMjMzMVowGTEXMBUGA1UEAwwOaWRwc2hpYi5pbGwuZnIwggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCoEacCLBls2rW1gE7ssqCQZhO4bQOO
J+WMhCBy7lwGeWWkXL3Fprp2hu9t4Ld2M2ruyl2nVOLzoUz/n3hALoNgiGesWd38
x37RdL7eYD+9fczRaAb2jfkQaNZtYBFqFOqLFf4KuofVowKy/AgjQBJdXSZ8D8TH
OmXEe4o/Y2fN+IIjII9gi599jNifzUBUxMgA3O9s9qxG+nvR53jHFkHW9pjMEEJq
L5Dv57RyZoMAeUBkYOAsTGDjS+g63TutpS4Zhmobj/1xsz8dfRtabxMy844vPYaH
KL2Oh45EtwbKvmwiBUaBwKSuTU+wTL4UDz6v5+bvzKSZ9raW+/KeiT9LAgMBAAGj
YzBhMB0GA1UdDgQWBBT4kS3bKXmpyBFT5EgvTTaJGjTKjzBABgNVHREEOTA3gg5p
ZHBzaGliLmlsbC5mcoYlaHR0cHM6Ly9pZHBzaGliLmlsbC5mci9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAONQAvzYN5oC8lO44WpzpLqdQkfyN8riw
N1oS7xq95KBojZlQ5SFE01gKMWYMgY3UdDPlubbx2ISPDW4O5qJqgLeM469rCksS
GM7vgoZ+uGzG6sbp2v74FzRX0gwdDHk1IZpk2v9KCivfkwaXaKD7y8zJUSLrVsvZ
9wHBa5thlWLDbNqAq6yzp5C6mEmeokPJYDTbXR5ux3i+mV9t889CY+2QpgFV2/EL
GBdAWDezjcpzGkCc8M1NM/mWql0btMRDc90Xp39dwAG71Pii7IYnhpRX7CguL+pk
moH17UvbXhmwNBiwKzjT791Gl2ooMO9ny00aYoCpfTDCdJPUK1a0EA==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDIzCCAgugAwIBAgIUVwQREkx0gwVDRRGIF6XjhB3296MwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwc2hpYi5pbGwuZnIwHhcNMTYwMTIwMTIyMzMxWhcN
MzYwMTIwMTIyMzMxWjAZMRcwFQYDVQQDDA5pZHBzaGliLmlsbC5mcjCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAMsgdMQbd1cY3EhdilyCM//VMkUVOBwd
7vf1RcQEQXQKYPMLmm+GA188YPEvhytv6PB/nSRFltpholcHAFk8ozkKsypfBxPS
IxF1E3V+SfxnaNF3wcZqI2XvFz8NYZWRMfdx6mQL1Kyk0/qa0BNZKTZlXSYY7fRd
IfxmsePaNoafj2UbzHBUGQQp9C5o3+VShfnOe8Hf9877RtO12por8SDlu6p2ZTHp
RVnRxlKguai25lCVQdcrHGp6IHIbXRdy5KwRDc+f5GxZyrmb/VBdz/VHkYNiRWeW
6uAP3kiqi7E8BLFECrYRHSXctxjVyKyAMqYrk7TJKWIolpttghBSPJsCAwEAAaNj
MGEwHQYDVR0OBBYEFMDqbIKIDo8lYFxFUYQupFGQGFqHMEAGA1UdEQQ5MDeCDmlk
cHNoaWIuaWxsLmZyhiVodHRwczovL2lkcHNoaWIuaWxsLmZyL2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQAEHYgL+Muwn6LWCTXW1isUJyIkDDpb5EcX
UdFHcBAd+B18tTYJdT8hZmFCaCCkhK/sjCJqQMatFea4dHbtF7HmECPPNSzw+1Ew
VQH6tnCA17OGngPyM2xm5WX5LeQURM2JRtjc24YMd0V48R50WMH59PfvaGmS2U5b
wCPmIUCp3RQT0yIp+dpTbcF2fHLZRZo5Q1iv9nqVwlDcyUkWhaIuYurUC1IZajlR
Gb38vppaTj3I+PyW6hbht6/rAdm93HQGZRWkcLsSoxgHh0Xw4vCHrIZYaCaqLr3H
8FGOA4QXuBKWxq3rhBdmDzSjffPV8U22Nbe2Ljy+mdHJHImuSiAy
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ill.fr/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpshib.ill.fr:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
