<?xml version="1.0" encoding="UTF-8"?>
<!--
      This metadata is not dynamic - it will not change as your configuration changes.
      On Demand Metadata Generation available from the metadatagen plugin.
--> 
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" entityID="https://idem.uniroma2.eu/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">uniroma2.it</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel--> 
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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			</ds:X509Certificate>
                    </ds:X509Data>
	    </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDLDCCAhSgAwIBAgIVAMT3ZP1vXP9LkRyZyvz9Od+bd1LcMA0GCSqGSIb3DQEB
BQUAMBsxGTAXBgNVBAMTEGlkZW0udW5pcm9tYTIuZXUwHhcNMTQwNTA3MDkyODUz
WhcNMzQwNTA3MDkyODUzWjAbMRkwFwYDVQQDExBpZGVtLnVuaXJvbWEyLmV1MIIB
IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkuGCpVdbNddO1Y1/nfCCitMt
psnFcRP+jnpUp+FH1DpaKlJIPZ8SwJr2n/aq+uHZ5WcIYTUSTdBF64nlTqPnIrd7
kn5CqxPFWDokOpYvzkL4Y2JABNlrr8pGv6luhNHWg619eYl+HAlgedJIOwup6PRm
jf+GDDL1ofbXtFIsS+4ZoaNA7ZB0ulE80Qj3CQk6DAfUUWw3aQutQASQ+IZuHTx0
sBKP/19y72sFpNBC3XehF2EVAluo8OkwcxOfML3O1BDVFnxkaXgo4UC81c6Gb16Y
j8AyaRuC+eWKAMioLYsw128SkO9/p3xjJ+VK7JQjOvAodj2uVoL4dQdvBIJ5gQID
AQABo2cwZTBEBgNVHREEPTA7ghBpZGVtLnVuaXJvbWEyLmV1hidodHRwczovL2lk
ZW0udW5pcm9tYTIuZXUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFFZhPdMjQi84
e8GXhvjdCwBzAghaMA0GCSqGSIb3DQEBBQUAA4IBAQBfg0bUDlyUQlgN6D1vJ8YI
xu8b23e5G3GVdQu9VyRTiF5UcCidP0ZCz8ZcheYszxqZJKFIQx9be3gEL/a/1WB9
NtErtsMMUFgXv1PdlKi1pl/STyDc4Ix7UeOT/X+7zKciNjPOf1fPIfmwQzGdf0SV
aUB5M/tyb+68hQLqJe5PJgKBseaB5uonphJ59lnfJCo9uaVLNo2FMbsHAC+0Ww8u
e7eM2DsQ6gf26KQ9LRoHh/8cnmZQobvhjSgcA01AsrpGFCLBEx2Y5ifLRhDbhhxt
14LaFQskrKfMFDS2at9c7lcwTEcf1sZaBNT6i0LiAFvT+hG0Lug3KGgMbQ24TEp+
			</ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

	<ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idem.uniroma2.eu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>


        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idem.uniroma2.eu/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idem.uniroma2.eu/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idem.uniroma2.eu/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idem.uniroma2.eu/idp/profile/SAML2/Redirect/SLO"/>

	<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
	<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>

	<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idem.uniroma2.eu/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idem.uniroma2.eu/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idem.uniroma2.eu/idp/profile/SAML2/POST-SimpleSign/SSO"/>

    </IDPSSODescriptor>

</EntityDescriptor>
