<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.     On Demand Metadata Generation available from the metadatagen plugin.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" entityID="https://idp.aip.de/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">aip.de</shibmd:Scope>
<!--
    Fill in the details for your IdP here
-->

            <mdui:UIInfo>
              <mdui:DisplayName xml:lang="en">Leibniz Institute for Astrophysics Potsdam</mdui:DisplayName>
              <mdui:DisplayName xml:lang="de">Leibniz-Institut für Astrophysik Potsdam</mdui:DisplayName>
              <mdui:Description xml:lang="en">Identity Provider of Leibniz Institute for Astrophysics Potsdam</mdui:Description>
              <mdui:Description xml:lang="de">Identity Provider des Leibniz-Institut für Astrophysik Potsdam</mdui:Description>
              <mdui:InformationURL xml:lang="en">https://www.aip.de/en/</mdui:InformationURL>
              <mdui:InformationURL xml:lang="de">https://www.aip.de/de/</mdui:InformationURL>
              <mdui:PrivacyStatementURL xml:lang="en">https://www.aip.de/en/impressum/data-protection/</mdui:PrivacyStatementURL>
              <mdui:PrivacyStatementURL xml:lang="de">https://www.aip.de/de/impressum/data-protection/</mdui:PrivacyStatementURL>
            </mdui:UIInfo>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel-->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIFEzCCA3ugAwIBAgIUDN25xPGquUcRoa/bMMADPOcx1WkwDQYJKoZIhvcNAQEL
BQAwgZQxCzAJBgNVBAYTAkRFMRQwEgYDVQQIDAtCcmFuZGVuYnVyZzEQMA4GA1UE
BwwHUG90c2RhbTEzMDEGA1UECgwqTGVpYm5peiBJbnN0aXR1dGUgZm9yIEFzdHJv
cGh5c2ljcyBQb3RzZGFtMRMwEQYDVQQLDApJVC1TdXBwb3J0MRMwEQYDVQQDDApp
ZHAuYWlwLmRlMB4XDTIzMDcxMjEyNTgzOFoXDTI2MDcxMjEyNTgzOFowgZQxCzAJ
BgNVBAYTAkRFMRQwEgYDVQQIDAtCcmFuZGVuYnVyZzEQMA4GA1UEBwwHUG90c2Rh
bTEzMDEGA1UECgwqTGVpYm5peiBJbnN0aXR1dGUgZm9yIEFzdHJvcGh5c2ljcyBQ
b3RzZGFtMRMwEQYDVQQLDApJVC1TdXBwb3J0MRMwEQYDVQQDDAppZHAuYWlwLmRl
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAvaU9SVaVRfkqMmxb4J4j
AOm0p4JPrC7LaB8M6fftBrsUHLmszQVaBLVJID3jTJJ4QrEWyvjfE60G+PIOd+mO
reo/e3XEQZFkLVd+CN13Mrh2iykh2kZsC0VFVAnqaBdUDZq4MbeHK+1IShtl+HK1
7zSijrp94ORFx5JGotwS2IPN/XkwsBeRXqXiGEoL1652wNvnrz2KvAPfaPv7rETS
XUretUdG+gUXkmJBQUu8KsKNc9qP/aCQ95YBweCr4e7RV4p+AOeab9ZGgbzg1muh
DaArnaf+YYm63xIQzDSoBROb3IU8XakClUkPgHxj8HxtHJeIXCesyqkqD7MNuX+o
adqaM441omulx00BNLhaxf40aJbGMNJF38lXy+xVlmt94ra3kBZDfHNvCv7yaYw7
DT4syj2xVC4ij0h7DcHI8UzGNDibY9WeIGocv71BVv2kSMNbXZZ/Ji9fYdu+lA1l
jpV3D1OyTYgIyV35KuCSgTeMd68BkNezpW9OsFY5AX+tAgMBAAGjWzBZMDgGA1Ud
EQQxMC+CCmlkcC5haXAuZGWGIWh0dHBzOi8vaWRwLmFpcC5kZS9pZHAvc2hpYmJv
bGV0aDAdBgNVHQ4EFgQUu0WNh9o7QYKlC3iQ72E1C0B93dMwDQYJKoZIhvcNAQEL
BQADggGBALlKPhZaezQva62gyrF0jUT2xdjxgCc8ZM5fQeCnwlIvf00df7gviXze
mpV7MxzkG0KqRm1lW7yF6jVMg9v9NdqW8N/EmyDvemY0ruJlIcGurVoIvOU/SuSC
tP/7vAi7DAjx2e54PaCk/SqKrq24II3ituYhPgg3tq5FzOcu8L62pdQvD80VTCXz
PjZABxcSSrBQ2mtV6f/pRW1T/kdRGNwNUuHv98RX2ZfqRg5WfMWh3VRqReE4jufh
9sjiXNYi1INscyuic+frENsq36/NMo79iGikqXT1YZlJw7RN3a0q0sEhIT9bVcqt
RM7zzOVgXYd6Ws2HIR9Q0krWmr5D9vs8dTL/z7GxafaWFAdMgqX6r/KdtFfcFY12
4ZfTY+QafniqSqsvfxTgXjjQOBMNFFCjSbMvw1bi/nWm/x18NCtb4blsn8bvWroS
7ZL4GtoGHiRNbIFSmqRHMf5Z6I16urNYYIoZmh+QNZ+A7S0vemnht2otucjug7d/
5EtrSU9YJQ==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <!--<ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.aip.de:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
-->         <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.aip.de:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.aip.de/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.aip.de:8443/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.aip.de/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.aip.de/idp/profile/SAML2/Redirect/SLO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.aip.de/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.aip.de/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.aip.de/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.aip.de/idp/profile/SAML2/POST-SimpleSign/SSO"/>

    </IDPSSODescriptor>


<AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol,urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">aip.de</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel-->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIFEzCCA3ugAwIBAgIUDN25xPGquUcRoa/bMMADPOcx1WkwDQYJKoZIhvcNAQEL
BQAwgZQxCzAJBgNVBAYTAkRFMRQwEgYDVQQIDAtCcmFuZGVuYnVyZzEQMA4GA1UE
BwwHUG90c2RhbTEzMDEGA1UECgwqTGVpYm5peiBJbnN0aXR1dGUgZm9yIEFzdHJv
cGh5c2ljcyBQb3RzZGFtMRMwEQYDVQQLDApJVC1TdXBwb3J0MRMwEQYDVQQDDApp
ZHAuYWlwLmRlMB4XDTIzMDcxMjEyNTgzOFoXDTI2MDcxMjEyNTgzOFowgZQxCzAJ
BgNVBAYTAkRFMRQwEgYDVQQIDAtCcmFuZGVuYnVyZzEQMA4GA1UEBwwHUG90c2Rh
bTEzMDEGA1UECgwqTGVpYm5peiBJbnN0aXR1dGUgZm9yIEFzdHJvcGh5c2ljcyBQ
b3RzZGFtMRMwEQYDVQQLDApJVC1TdXBwb3J0MRMwEQYDVQQDDAppZHAuYWlwLmRl
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAvaU9SVaVRfkqMmxb4J4j
AOm0p4JPrC7LaB8M6fftBrsUHLmszQVaBLVJID3jTJJ4QrEWyvjfE60G+PIOd+mO
reo/e3XEQZFkLVd+CN13Mrh2iykh2kZsC0VFVAnqaBdUDZq4MbeHK+1IShtl+HK1
7zSijrp94ORFx5JGotwS2IPN/XkwsBeRXqXiGEoL1652wNvnrz2KvAPfaPv7rETS
XUretUdG+gUXkmJBQUu8KsKNc9qP/aCQ95YBweCr4e7RV4p+AOeab9ZGgbzg1muh
DaArnaf+YYm63xIQzDSoBROb3IU8XakClUkPgHxj8HxtHJeIXCesyqkqD7MNuX+o
adqaM441omulx00BNLhaxf40aJbGMNJF38lXy+xVlmt94ra3kBZDfHNvCv7yaYw7
DT4syj2xVC4ij0h7DcHI8UzGNDibY9WeIGocv71BVv2kSMNbXZZ/Ji9fYdu+lA1l
jpV3D1OyTYgIyV35KuCSgTeMd68BkNezpW9OsFY5AX+tAgMBAAGjWzBZMDgGA1Ud
EQQxMC+CCmlkcC5haXAuZGWGIWh0dHBzOi8vaWRwLmFpcC5kZS9pZHAvc2hpYmJv
bGV0aDAdBgNVHQ4EFgQUu0WNh9o7QYKlC3iQ72E1C0B93dMwDQYJKoZIhvcNAQEL
BQADggGBALlKPhZaezQva62gyrF0jUT2xdjxgCc8ZM5fQeCnwlIvf00df7gviXze
mpV7MxzkG0KqRm1lW7yF6jVMg9v9NdqW8N/EmyDvemY0ruJlIcGurVoIvOU/SuSC
tP/7vAi7DAjx2e54PaCk/SqKrq24II3ituYhPgg3tq5FzOcu8L62pdQvD80VTCXz
PjZABxcSSrBQ2mtV6f/pRW1T/kdRGNwNUuHv98RX2ZfqRg5WfMWh3VRqReE4jufh
9sjiXNYi1INscyuic+frENsq36/NMo79iGikqXT1YZlJw7RN3a0q0sEhIT9bVcqt
RM7zzOVgXYd6Ws2HIR9Q0krWmr5D9vs8dTL/z7GxafaWFAdMgqX6r/KdtFfcFY12
4ZfTY+QafniqSqsvfxTgXjjQOBMNFFCjSbMvw1bi/nWm/x18NCtb4blsn8bvWroS
7ZL4GtoGHiRNbIFSmqRHMf5Z6I16urNYYIoZmh+QNZ+A7S0vemnht2otucjug7d/
5EtrSU9YJQ==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEEzCCAnugAwIBAgIUNueN0rFzDPAjAokkkunBFotrj9cwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLmFpcC5kZTAeFw0yMzA3MTAxNDIyNDNaFw0yNjA3
MTAxNDIyNDNaMBUxEzARBgNVBAMMCmlkcC5haXAuZGUwggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQCDbtJ1jVAVEb69Iv32H+NiS60NCwd0iCCmq/FdHC+r
VydnktJzMUW6mkFGYifIv3Fg+pPatnhk1zO9L8SRRlsNSRXBo9YMYuN+q/CGRx+W
x/9jbUXZYBj3bBfuzGGpHHMB0ZzXN0dD77hjzmBglVEzBzLGjOa3phhSe3zX2nHR
blMciXZpjc0yiG1Oq61x6HFfZCmZW97WqP0en6oPT/Ll/K3bBZfeo6aySssN6Xxx
hUaLPW0L8UVTyJKEwdxVppPvz6h9QvzXyCTsyIs0yoiteDYi8sc0CENTR/AxrWe0
8cN3oeeIF0AQekU3wu3hwPjFHWz1z8Alrn4FRpGeaSXORPyhdE+cT7PMqHx+o5Nv
fF2g7zn1woV2kfr1N0T/GzqyDwhR5hDSVWXFw9/jdARApNwHQxuB/jgB3JA/JY0t
2MMZM3Q7kSDqP5cUlEIjzOQtZ13rvx18wlR1xHwN6nZIlxwsXnEY4xPAkM2s7nFk
TjqZ3bSW9nda7LRmsiSwdKcCAwEAAaNbMFkwHQYDVR0OBBYEFDbLLHJU9jcUJiQa
pusC9ZEY7Xc6MDgGA1UdEQQxMC+CCmlkcC5haXAuZGWGIWh0dHBzOi8vaWRwLmFp
cC5kZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAU4jOQVbZlTFM
gufXPCc4/zM/x3klViT+5lSMcocvCrhMCRvXqqgdynECa5sn7oQkt6Tjq4TrTisD
Uq3dIPQEXustsdwUBO0hIe3nlo5d+fuysPc+9aTZ0QwGsY5KYkcw+WHizIOUugVS
aqvHnqVoIpEkqt15kdRDjo5RVuVEp4E2dwBS4Kk2WNTTzhfwKah/adhzNyLi/KuB
DopEnQSOvKWW3zaPbp6rZP/7DJLddhVngfrgeumm4ui06jPmPBEEdrUNToytD+8n
hszcG3FY8SlVTfmqcYiTAmqgGv8umFtjoCO/YhpU0Qfx8bqoPwkbC/VZ+IjbhEHW
4zvK4BMQE9mREO5tLFCS6Y0hTzWi5YwjjU3gO1mWfeGwrYocNaQ4VN1+HTHD/X5Z
+An4t0XHe/L84aBB0vzJc3tK9+iVBjNTvVeORqSokdL1ZfD3OFfLfZFYIOHuVJYK
ueRR3HGogV9/TXmZfT4fEEQklxEBVrFf8iBjZE0lSJetWZwDRsgk
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.aip.de:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>  <!--
        --> <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above-->  <!--
        --> <!--<AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.aip.de:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>-->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
