<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" entityID="https://idp.istructe.org/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">istructe.org</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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=

                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.istructe.org:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.istructe.org:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
        
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.istructe.org/idp/profile/SAML2/Redirect/SLO" />
        
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.istructe.org/idp/profile/SAML2/POST/SLO" />
        
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.istructe.org:8443/idp/profile/SAML2/SOAP/SLO" />
                                   
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.istructe.org/idp/profile/Shibboleth/SSO"/>
        
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.istructe.org/idp/profile/SAML2/POST/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.istructe.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.istructe.org/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>

    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">istructe.org</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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=

                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.istructe.org:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        
        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.istructe.org:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
        
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        
    </AttributeAuthorityDescriptor>

    <!-- SP metadata for SAML proxy -->
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
  
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>
MIIDKzCCAhOgAwIBAgIUI8V/OTsGBfuY+YJQ6gZ1YyQctn0wDQYJKoZIhvcNAQEF
BQAwGzEZMBcGA1UEAwwQaWRwLmlzdHJ1Y3RlLm9yZzAeFw0xNTA0MDIwOTM0MDla
Fw0zNTA0MDIwOTM0MDlaMBsxGTAXBgNVBAMMEGlkcC5pc3RydWN0ZS5vcmcwggEi
MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCDQkwFBQCDB2B0naV+iBvKmLB2
uYC1Zu8qs9WhNAJFtPvR29ny1pUjrhiOOskXes+lWRoHmQ1wcDqFtLm1g/FgTN/5
+miEGEpwnc8BUrOHFbxXw18TXfXYzG7wZzUGS8YtD9J7F95GanQUHqmDSkXq4fVp
S5ei+Eolj2bRfE8ZT0SvLc03nZz4SrpxSFNitmyU/0gn4HxoI+1AgYaXupa3xtMe
nWLlV+Bu62A/NyZ8xMDuzlfTJII8987TStrnqvsxWW+tqr1oOQmjr1ESIaQasPHW
I1WttJtHef4sidXV7rrzkYu54yZO0InW8wrpnCvyfS0m++Uzh4D8D7xc/a1dAgMB
AAGjZzBlMB0GA1UdDgQWBBTLFk0yMI/Yd5BKz82ZHUwZQ5orQDBEBgNVHREEPTA7
ghBpZHAuaXN0cnVjdGUub3JnhidodHRwczovL2lkcC5pc3RydWN0ZS5vcmcvaWRw
L3NoaWJib2xldGgwDQYJKoZIhvcNAQEFBQADggEBAERDdJ0NShxoOn2wiArDC5fY
ZDejFC16QS7wKoPZxSas1ASZCM9Dqf7f16RMODojZmXsJxS04blL9m8v3eL5X/Nj
lRFdMBr+s3hw49HWjTXgOqzv090GSFMQ/U3A0JrkEKDs1PzhWi+szoYOdvNbGlwr
5zVjQi4+3x2fax3hutAtpdmtJ7Byk3CI9o3W95YOqlzDrWZDEbkNZpj3OY0BVmCQ
ZJT1SQ3WFFL98LSeg3nrdo12C5I7fhskFBsIQsbjxKoftyHHf7NFEgtcEihP21/x
+mn3EVKlLdMxUcghPyFm46KgIBvDcpOqo/k1ZqJ92DT6mIi5EGed8yeRbgGluPo=
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
  
        <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.istructe.org/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
    </SPSSODescriptor>
    
</EntityDescriptor>
