<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->

<EntityDescriptor
    xmlns="urn:oasis:names:tc:SAML:2.0:metadata"
    xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
    xmlns:shibmd="urn:mace:shibboleth:metadata:1.0"
    xmlns:xml="http://www.w3.org/XML/1998/namespace"
    xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"
    xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"
    xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
    entityID="https://shibboleth3.envt.fr/idp/shibboleth">

    <!-- Déclaration R&S -->
    <Extensions>
        <mdattr:EntityAttributes>
            <saml:Attribute Name="http://macedir.org/entity-category"
                            NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
                <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
            </saml:Attribute>
        </mdattr:EntityAttributes>
    </Extensions>

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">envt.fr</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at shibboleth3.envt.fr</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at shibboleth3.envt.fr</mdui:Description>
                <mdui:Logo height="80" width="80">https://shibboleth3.envt.fr/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth3.envt.fr:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth3.envt.fr:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth3.envt.fr/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth3.envt.fr/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth3.envt.fr/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth3.envt.fr:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth3.envt.fr/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth3.envt.fr/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth3.envt.fr/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth3.envt.fr/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">envt.fr</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth3.envt.fr:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth3.envt.fr:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
