<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://cas.example.org/idp">
    <IDPSSODescriptor errorURL="https://ssocas.uwo.ca/cas/idp/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
        <Extensions>
            <shibmd:Scope regexp="false">uwo.ca</shibmd:Scope>

            <!--
            <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
                <mdui:DisplayName xml:lang="en">CAS</mdui:DisplayName>
                <mdui:Description xml:lang="en">Apereo CAS</mdui:Description>
                <mdui:InformationURL xml:lang="en">https://apereo.org/projects/cas</mdui:InformationURL>
                <mdui:PrivacyStatementURL xml:lang="en">https://apereo.org/projects/cas</mdui:PrivacyStatementURL>
                <mdui:Logo height="60" width="1119" xml:lang="en">https://apereo.github.io/cas/images/cas_logo.png</mdui:Logo>
            </mdui:UIInfo>
            -->
            
        </Extensions>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>MIIDFTCCAf2gAwIBAgIUK41wuaRyaRhJxzlff0+HOtuNRrIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>MIIDFjCCAf6gAwIBAgIVANd9vusqhc5esQ2PmykPv2qtfbscMA0GCSqGSIb3DQEB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</ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <!--
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" 
                                   Location="https://ssocas.uwo.ca/cas/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        -->

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
                             Location="https://ssocas.uwo.ca/cas/idp/profile/SAML2/POST/SLO"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
                             Location="https://ssocas.uwo.ca/cas/idp/profile/SAML2/Redirect/SLO" />

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
                             Location="https://ssocas.uwo.ca/cas/idp/profile/SAML2/POST/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign"
                             Location="https://ssocas.uwo.ca/cas/idp/profile/SAML2/POST-SimpleSign/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
                             Location="https://ssocas.uwo.ca/cas/idp/profile/SAML2/Redirect/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP"
                             Location="https://ssocas.uwo.ca/cas/idp/profile/SAML2/SOAP/ECP"/>

    </IDPSSODescriptor>

    <!--
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
        <Extensions>
            <shibmd:Scope regexp="false">uwo.ca</shibmd:Scope>
        </Extensions>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>${context.SigningKey}</ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://ssocas.uwo.ca/cas/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ssocas.uwo.ca/cas/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    -->
    
    <!--
    <Organization>
        <OrganizationName xml:lang="en">Institution Name</OrganizationName>
        <OrganizationDisplayName xml:lang="en">Institution DisplayName</OrganizationDisplayName>
        <OrganizationURL xml:lang="en">URL</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
        <GivenName>John Smith</GivenName>
        <EmailAddress>jsmith@example.org</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
        <GivenName>John Smith</GivenName>
        <EmailAddress>jsmith@example.org</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="support">
        <GivenName>IT Services Support</GivenName>
        <EmailAddress>support@example.org</EmailAddress>
    </ContactPerson>
    -->
</EntityDescriptor>
