<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" entityID="https://shibboleth.brandeis.edu/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">brandeis.edu</shibmd:Scope>
	    <mdui:UIInfo>
	      <mdui:Logo height="138" width="700" xml:lang="en">https://shibboleth.brandeis.edu/images/brandeis.png</mdui:Logo>
	      <mdui:PrivacyStatementURL xml:lang="en">http://www.brandeis.edu/about/privacy.html</mdui:PrivacyStatementURL>
	    </mdui:UIInfo>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>
MIIDSDCCAjCgAwIBAgIVAJ07ki+U+Q1jeqL9/EKoyRbWCMAyMA0GCSqGSIb3DQEB
BQUAMCIxIDAeBgNVBAMTF3NoaWJib2xldGguYnJhbmRlaXMuZWR1MB4XDTEzMDMw
ODIwMTczOVoXDTMzMDMwODIwMTczOVowIjEgMB4GA1UEAxMXc2hpYmJvbGV0aC5i
cmFuZGVpcy5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCKZIwW
KwP8VTEQc8aR/fukHycUON1HPpq7LoIjINdzuzMR2C6ZdNRMzbR+4qkQRdeW6Ptp
9L7C0HMEeIPRhEFh6gdAgl3VwyyDgz/fqMHpXNQn/7Tw+vl3I2Joha69iNQK3K6I
gNI2E/x2b8YizudhSSCu3RAm7vPLN3gcyc2sRA3KkXvaEWO0jU7GJVTmaCgRpCH0
Bsv5vZ724UMuuPP1Feu4nhKtqRm0khEA9svRGfDVxhWnPpg8rLT9Yu03IChN8hdq
NspAQCmDI2OFQB5frAuiQ9MQT7Q9jzBSJ3bcWQsYsdbWNG7Hpl2hBSlUtqR5tzat
iU1U1LsZAv/wQbgLAgMBAAGjdTBzMFIGA1UdEQRLMEmCF3NoaWJib2xldGguYnJh
bmRlaXMuZWR1hi5odHRwczovL3NoaWJib2xldGguYnJhbmRlaXMuZWR1L2lkcC9z
aGliYm9sZXRoMB0GA1UdDgQWBBQPTVgZcvtUxjYUCn8mj6n/ldo5zjANBgkqhkiG
9w0BAQUFAAOCAQEAVGtWGwmb6iIG3sbWiBvuayHCmiWCl3rZN/CpFYxU5p9Xcuu6
lcTq6wAY04Cs/v4rjStdsH1REnI6CUyOcLzVCK55bhpyvLCTxQYAaULVg95UmZF2
Kkr0LXmXHkOfG7nTwY8Qm13tfBAPwqNdHmstlMvw3LAgmy96heq+bHryqbTYKC/V
dTdUuhV14vl7PJt9y3EqXISJjwNG7wEF9wM0qUIG51qlp4f4MiNaNxJI/cYUC1cw
7d/XK0tGHAwQxu/IeOIxUYbsUbTSua3u/Xc6WaTwfWxSl96NcOuTnyazB4hkSIYa
C30ze3MSAph0HLqEHTWk8Ldt2Y3QWku9g5WNlA==
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.brandeis.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.brandeis.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>        
	<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.brandeis.edu/idp/profile/Logout"/>
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.brandeis.edu/idp/profile/Shibboleth/SSO"/>
        
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.brandeis.edu/idp/profile/SAML2/POST/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.brandeis.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.brandeis.edu/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>

    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">brandeis.edu</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>
MIIDSDCCAjCgAwIBAgIVAJ07ki+U+Q1jeqL9/EKoyRbWCMAyMA0GCSqGSIb3DQEB
BQUAMCIxIDAeBgNVBAMTF3NoaWJib2xldGguYnJhbmRlaXMuZWR1MB4XDTEzMDMw
ODIwMTczOVoXDTMzMDMwODIwMTczOVowIjEgMB4GA1UEAxMXc2hpYmJvbGV0aC5i
cmFuZGVpcy5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCKZIwW
KwP8VTEQc8aR/fukHycUON1HPpq7LoIjINdzuzMR2C6ZdNRMzbR+4qkQRdeW6Ptp
9L7C0HMEeIPRhEFh6gdAgl3VwyyDgz/fqMHpXNQn/7Tw+vl3I2Joha69iNQK3K6I
gNI2E/x2b8YizudhSSCu3RAm7vPLN3gcyc2sRA3KkXvaEWO0jU7GJVTmaCgRpCH0
Bsv5vZ724UMuuPP1Feu4nhKtqRm0khEA9svRGfDVxhWnPpg8rLT9Yu03IChN8hdq
NspAQCmDI2OFQB5frAuiQ9MQT7Q9jzBSJ3bcWQsYsdbWNG7Hpl2hBSlUtqR5tzat
iU1U1LsZAv/wQbgLAgMBAAGjdTBzMFIGA1UdEQRLMEmCF3NoaWJib2xldGguYnJh
bmRlaXMuZWR1hi5odHRwczovL3NoaWJib2xldGguYnJhbmRlaXMuZWR1L2lkcC9z
aGliYm9sZXRoMB0GA1UdDgQWBBQPTVgZcvtUxjYUCn8mj6n/ldo5zjANBgkqhkiG
9w0BAQUFAAOCAQEAVGtWGwmb6iIG3sbWiBvuayHCmiWCl3rZN/CpFYxU5p9Xcuu6
lcTq6wAY04Cs/v4rjStdsH1REnI6CUyOcLzVCK55bhpyvLCTxQYAaULVg95UmZF2
Kkr0LXmXHkOfG7nTwY8Qm13tfBAPwqNdHmstlMvw3LAgmy96heq+bHryqbTYKC/V
dTdUuhV14vl7PJt9y3EqXISJjwNG7wEF9wM0qUIG51qlp4f4MiNaNxJI/cYUC1cw
7d/XK0tGHAwQxu/IeOIxUYbsUbTSua3u/Xc6WaTwfWxSl96NcOuTnyazB4hkSIYa
C30ze3MSAph0HLqEHTWk8Ldt2Y3QWku9g5WNlA==
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.brandeis.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
        
        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.brandeis.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
        
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        
    </AttributeAuthorityDescriptor>
    <md:ContactPerson contactType="technical"
		      xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
      <md:GivenName>Brandeis Identity and Access Management Team</md:GivenName>
      <md:EmailAddress>mailto:idm@brandeis.edu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="other"
		      xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata"
		      xmlns:remd="http://refeds.org/metadata"
		      remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Brandeis Information Security</md:GivenName>
      <md:EmailAddress>mailto:security-group@brandeis.edu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative"
		      xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
      <md:GivenName>Brandeis Identity and Access Management Team</md:GivenName>
      <md:EmailAddress>mailto:idm@brandeis.edu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support"
		      xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
      <md:GivenName>Brandeis Technology Help Desk</md:GivenName>
      <md:EmailAddress>mailto:help@brandeis.edu</md:EmailAddress>
    </md:ContactPerson>
</EntityDescriptor>
