<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://identity.colgate.edu/idp/shibboleth">

 <Extensions xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
    <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
    <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
      <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
        <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
      </saml:Attribute>
    </mdattr:EntityAttributes>
  </Extensions>


    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://colgate.edu/its">

        <Extensions>
            <shibmd:Scope regexp="false">colgate.edu</shibmd:Scope>

      <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
        <mdui:DisplayName xml:lang="en">Colgate University</mdui:DisplayName>
        <mdui:Description xml:lang="en">Colgate University</mdui:Description>
        <mdui:InformationURL xml:lang="en">https://www.colgate.edu</mdui:InformationURL>
        <mdui:PrivacyStatementURL xml:lang="en">https://www.colgate.edu/home/privacy-policy</mdui:PrivacyStatementURL>
        <mdui:Logo xml:lang="en" width="300" height="47">https://identity.colgate.edu/idp/images/colgate_logo.png</mdui:Logo>
      </mdui:UIInfo>

        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
<!-- Serial No. 329099718775175176234885627430548900365892752552, expires on Fri Jun 27 17:29:59 2036 GMT -->

                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://identity.colgate.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://identity.colgate.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://identity.colgate.edu/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.colgate.edu/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://identity.colgate.edu/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://identity.colgate.edu/idp/profile/SAML2/SOAP/SLO"/>

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://identity.colgate.edu/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.colgate.edu/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://identity.colgate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://identity.colgate.edu/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">colgate.edu</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://identity.colgate.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://identity.colgate.edu/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>


  <Organization>
    <OrganizationName xml:lang="en">Colgate University</OrganizationName>
    <OrganizationDisplayName xml:lang="en">Colgate University</OrganizationDisplayName>
    <OrganizationURL xml:lang="en">http://colgate.edu/</OrganizationURL>
  </Organization>
  <ContactPerson contactType="technical">
    <GivenName>Identity Management</GivenName>
    <EmailAddress>itss-identity-management@colgate.edu</EmailAddress>
  </ContactPerson>
  <ContactPerson contactType="administrative">
    <GivenName>Identity Managament</GivenName>
    <EmailAddress>itss-identity-management@colgate.edu</EmailAddress>
  </ContactPerson>
  <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
    <GivenName>Identity Management</GivenName>
    <EmailAddress>itss-identity-management@colgate.edu</EmailAddress>
  </ContactPerson>

</EntityDescriptor>
