<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" entityID="https://ssoportal.stsci.edu/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">stsci.edu</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ssoportal.stsci.edu/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ssoportal.stsci.edu/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>

    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">stsci.edu</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>
MIIDODCCAiCgAwIBAgIVAJPcUZqBubN7NxPWRlj47u4TpVVBMA0GCSqGSIb3DQEB
CwUAMB4xHDAaBgNVBAMME3Nzb2RldmlkcC5zdHNjaS5lZHUwHhcNMTYwNzE3MTYz
ODMyWhcNMzYwNzE3MTYzODMyWjAeMRwwGgYDVQQDDBNzc29kZXZpZHAuc3RzY2ku
ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmtKJT3IWdLLgKQTs
ol7fG77sfi11nbxDgNgpLm7h9oXnxRDTu1VrQ+pT1g8As8WsBoN32jJW/7IsGcn/
X/unp0As5qKYc4TY4FYbCUUWJ7IIpKoBiKhDQlDAJnU9kQAXev4gfV1ESud3LUXp
khvcOypWfq21BExbzBS5gt3RMMz0VQBImfxg67Q5UtHHnj+f0Ybqe9uTnfBgC1/J
wvXtBH2KDnXFqia6sEwNClElmpd/SB5xfOKHPTkIlwTBj1fJp7moH7JnXYczMe+Y
gZIr9bBnIRcx6oX504kljl0RXST4E/QG/lM3Mr2sSReSCrgYdj1ts9T9Culkp5oq
2+YOSwIDAQABo20wazAdBgNVHQ4EFgQUIRecu1StUtp97ovO39MYYQQ0qvEwSgYD
VR0RBEMwQYITc3NvZGV2aWRwLnN0c2NpLmVkdYYqaHR0cHM6Ly9zc29kZXZpZHAu
c3RzY2kuZWR1L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBqt1qs
IhcXh2qHXb+PcG5oU1T5RdqWK1lIkD8Ji+vukBAVfuvAjJQNB3MOPxANTk4WLdpm
govRx3o0HRhTx2qu/u1L3fahu/npvFJOCQtyhqUPuI0M+GcnDAKxSl6e7g0YaldP
eDkS6h7EKww8W28UrBc2tYkt6/fR0JkNXUNyijmVl8HTzB/uYCezZWVfw8icr9Tq
qtiSHa51shyjRUK+YZ1Mn8OEA+VXoDQoevEhy5aXRgJahHSDzckg3S9tzLmtVBT8
6M8tVNGpA6PWDDm3zBmrm/SEIge4+f07N4Qr7q1uAP2gcCJvLao9tsqPyfGM61/r
0grSLECCBBWJhaeP
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://ssoportal.stsci.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ssoportal.stsci.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
        
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        
    </AttributeAuthorityDescriptor>
    
</EntityDescriptor>
