<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://afidp.eduhk.hk/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">eduhk.hk</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at afidp.eduhk.hk</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at afidp.eduhk.hk</mdui:Description>
                <mdui:Logo height="80" width="80">https://afidp.eduhk.hk/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDIzCCAgugAwIBAgIUezoyeivFdafrlUyxp/eqQh6dzw8wDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOYWZpZHAuZWR1aGsuaGswHhcNMTYxMTE4MDY0MzA3WhcN
MzYxMTE4MDY0MzA3WjAZMRcwFQYDVQQDDA5hZmlkcC5lZHVoay5oazCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAI5VJCJ7nJJCx+Yb5Jwa+Y/PbgC8kKq7
h0cxsT4A6Uyaam8/Nk5QXsX62r/FjETDvAQ/GJvHq0a0TvEgFjwQKCCj+NVyjYyB
LnNpSkDJYNsGSFm23grtO/IEZT/I0zvfwlTETbNsU/fxWtx9QDqFneQKOhU7NhsJ
vZzqVXQ7QkSHg30erwz8HlwykXKpNf5NIURSR9jmrNxVPOY8skZwMc7OAvV5fB0i
NpMs/ntmphNa2f0Gg53+NLGAs8oVrJ+Ssj4T99xLsmzg4n1w4ZkWwvQdVo6f2uNP
N+yeCLs16SW+n/E88LM2It1R2LMggBUbx+iU5+fjp8XcAyhR8kB9f0ECAwEAAaNj
MGEwHQYDVR0OBBYEFKKf5TZ5VRUEvJMfsG7aZjYKSeTKMEAGA1UdEQQ5MDeCDmFm
aWRwLmVkdWhrLmhrhiVodHRwczovL2FmaWRwLmVkdWhrLmhrL2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCJHx/kPbUsG+8eqiNDv7nRzIHyW9p4V0fr
4LSK9nFLvN6yQcXlN77weFsKY04dmf7o+nuokUeUbO69YGhYeCw/0wbdP+pYtqPm
WVey2aZff34+Frbu7XRgaWPlJPCWElqDipLlY9B/IFfipgJS8jhv8X7R/3XXc21a
V0h8Xmn3uAPTJlFxvV2qAvOOKes1mmU7c0UxnWqIl4CLDaV0Gve59bNXbnfw0FGq
KUThOfa+qzTbuq1btS+0+2Havjx5Cfn0zo3ZJJJ6k93ZdfqyBCSPwq0ooSnILCL+
51VNo0warirKnvz7wJMZeKITjFZOHjplhDw0valPBq2gXuVoKT3k
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDIzCCAgugAwIBAgIUGLNNoWhVpO3jN4++mVDv4qcXYQ4wDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOYWZpZHAuZWR1aGsuaGswHhcNMTYxMTE4MDY0MzA2WhcN
MzYxMTE4MDY0MzA2WjAZMRcwFQYDVQQDDA5hZmlkcC5lZHVoay5oazCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAJm0ZZAsCFl84BwVno51iOuSqnoqiwn2
PAzJeceWU7kidWfQzjSZZSg2e8TM0BZ6GuB7dAH8qjo5wNWZSGZrb2tnajG4jgJi
s1Rn+0wNdGgqPHYcGkYWJkiggtGq1QDWI+MEuH4USDzLdU6J5YTOSCkdq4+T0xtt
asq8Afhk3Uktvv5Yd4vs83sKbjbi4fUJCd1TmUWlaCsN4GD9h80tPznwn6WIOZZH
nKfs+OsbKTFt9ydjzAQ4vRIb2nPgaqf2jP62XUIKeKNxCWc+DRmPEMtuPwwOfUya
mtUhEujfArqjanhf82MDzZFkoPhPCSpvmcqAI72H6oza1j/lJpzcshsCAwEAAaNj
MGEwHQYDVR0OBBYEFMX7Ntyin2nhs7JRRQFXI4pkyVmBMEAGA1UdEQQ5MDeCDmFm
aWRwLmVkdWhrLmhrhiVodHRwczovL2FmaWRwLmVkdWhrLmhrL2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBvRkHn5cJpEsRtjesgPiuqGwW2xOlkD49V
CRa3y0+1PmEDKCyvwprzklHAkoKFEqJcOWPp7mq9fWToFsU9qyxLfGb6ACzpwGBM
Rl2R8kh1yDpvHkheFVvsqea+xAAQDWcHXVpcwexn6w5TDR8Y13JdFGzjN7AqI9P9
9/F36vhczy0MlGQBb+bcuR0GJ/wMIjSgo4RJBLhPjD9vlsJJW4LGWXYPGChsqlsX
kBiVtqt3e8CoW/N6NZTr7i6pKbV5yTZYMai1hlqWjq2CTPWtGFz+OUOcN98CDmzO
wCk3ndDRhfZRvHIybNM4keSIPAN0bJhGc8NMv9NKu864dYjQxwqR
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDIzCCAgugAwIBAgIUQUO4nxhQglGEiP+rL8ucNTUlg6YwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOYWZpZHAuZWR1aGsuaGswHhcNMTYxMTE4MDY0MzA3WhcN
MzYxMTE4MDY0MzA3WjAZMRcwFQYDVQQDDA5hZmlkcC5lZHVoay5oazCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAL3B1o/NMQGZvXwkViRkgDseXhWf+L8m
lfwX+cJRYihnqB/34TDTZKCubEnFi9QoVPFY2gKtOUdH4Bfo6Sfx5r7y2EiCachj
702sCjxTggN5b8qSzhdIi/8NtIms6FQ/klVzRjX+ePOkJmZOR+Vm7bayNY4Tti6a
mohZEqtD6AIwedwy2eC/KiZqGcSLHiKYp6yJbqG7Q47QiUGazAD9ylqIyif3ErZW
Q+nuUN5ie3Q+t50vB8neXlTYvcnHsl0upIbHyJWdVrHgGNq1HR83u+5IFnggiYNe
QkVI3+klhAq3GAKQ8W8x+2KhTzdLR/rJX7kwTHqgmglC7f2D7eon5W0CAwEAAaNj
MGEwHQYDVR0OBBYEFIxCWuUl+18yO8OKspYiQ9B5WJQJMEAGA1UdEQQ5MDeCDmFm
aWRwLmVkdWhrLmhrhiVodHRwczovL2FmaWRwLmVkdWhrLmhrL2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCtqoQGZYTaxNozvnCEMe09LXQU+UgLpgCl
aKFl36WR5NK3hjxVxC5CjX2j6YstxbaX0ublxn/upge60UUUq1nJKchMD5ZpAuwB
qKw/9Zeodd05TCaEXH5QOt8FnFLEou/XBbkU2xGlOFahcWIKZZ1cA4kBd0uumz2F
64xkH1VKQWNzxxw/M0R7S3d1s9czajwpt2rLkNSAuPSado8xF9gQDkeE+75AJWT0
jdtONNUrl7lVO6Ub/+tOOZew4PGW5JCkcf5JPZm4q7y4+zInItm5H1VxqJCVVqQ8
PraTc+jTyrkBHabx4u8lgS0EqpMOMjcn9raCBV1+SzwmRGXDgMYp
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://afidp.eduhk.hk:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://afidp.eduhk.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://afidp.eduhk.hk/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://afidp.eduhk.hk/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://afidp.eduhk.hk/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://afidp.eduhk.hk:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://afidp.eduhk.hk/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://afidp.eduhk.hk/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://afidp.eduhk.hk/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://afidp.eduhk.hk/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">eduhk.hk</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDIzCCAgugAwIBAgIUGLNNoWhVpO3jN4++mVDv4qcXYQ4wDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOYWZpZHAuZWR1aGsuaGswHhcNMTYxMTE4MDY0MzA2WhcN
MzYxMTE4MDY0MzA2WjAZMRcwFQYDVQQDDA5hZmlkcC5lZHVoay5oazCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAJm0ZZAsCFl84BwVno51iOuSqnoqiwn2
PAzJeceWU7kidWfQzjSZZSg2e8TM0BZ6GuB7dAH8qjo5wNWZSGZrb2tnajG4jgJi
s1Rn+0wNdGgqPHYcGkYWJkiggtGq1QDWI+MEuH4USDzLdU6J5YTOSCkdq4+T0xtt
asq8Afhk3Uktvv5Yd4vs83sKbjbi4fUJCd1TmUWlaCsN4GD9h80tPznwn6WIOZZH
nKfs+OsbKTFt9ydjzAQ4vRIb2nPgaqf2jP62XUIKeKNxCWc+DRmPEMtuPwwOfUya
mtUhEujfArqjanhf82MDzZFkoPhPCSpvmcqAI72H6oza1j/lJpzcshsCAwEAAaNj
MGEwHQYDVR0OBBYEFMX7Ntyin2nhs7JRRQFXI4pkyVmBMEAGA1UdEQQ5MDeCDmFm
aWRwLmVkdWhrLmhrhiVodHRwczovL2FmaWRwLmVkdWhrLmhrL2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBvRkHn5cJpEsRtjesgPiuqGwW2xOlkD49V
CRa3y0+1PmEDKCyvwprzklHAkoKFEqJcOWPp7mq9fWToFsU9qyxLfGb6ACzpwGBM
Rl2R8kh1yDpvHkheFVvsqea+xAAQDWcHXVpcwexn6w5TDR8Y13JdFGzjN7AqI9P9
9/F36vhczy0MlGQBb+bcuR0GJ/wMIjSgo4RJBLhPjD9vlsJJW4LGWXYPGChsqlsX
kBiVtqt3e8CoW/N6NZTr7i6pKbV5yTZYMai1hlqWjq2CTPWtGFz+OUOcN98CDmzO
wCk3ndDRhfZRvHIybNM4keSIPAN0bJhGc8NMv9NKu864dYjQxwqR
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://afidp.eduhk.hk:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://afidp.eduhk.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
