<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2025-04-15T10:40:26.410Z" entityID="https://idp.ncirl.ie/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">ncirl.ie</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.ncirl.ie</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.ncirl.ie</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.ncirl.ie/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIEHDCCAoSgAwIBAgIVAOZCmL9IL1MENQPmGoRnogwwRvaBMA0GCSqGSIb3DQEB
CwUAMBcxFTATBgNVBAMMDGlkcC5uY2lybC5pZTAeFw0yNTA0MTUxMDM5MjNaFw00
NTA0MTUxMDM5MjNaMBcxFTATBgNVBAMMDGlkcC5uY2lybC5pZTCCAaIwDQYJKoZI
hvcNAQEBBQADggGPADCCAYoCggGBAIebmYPaN0PXf0EMnf7EBb5/VA/UY6XVWhtM
wNrJH46SvP65Jni7bApHzV7CwNcGTZuwlySesSVV7K4nuvBVZglmNzjjXd9CBc8Y
M/lYwbp2f2clVnR9uKItfjRrIDkB7Sz/gn5KbGpz9239/P9zvizuawQsQF8x+Z09
X3nwYltb1yTxJGnqmIH9q8QjJLFTcCgal1ZApzH6agF8hui/R5kDf8tUl0rJ68kf
7ckZ8jm1MsSqgHqiqMZ21+PZuUZZ9qOhRZP2vQ8JHBaV0Qh3v7nmKuuy4DC003dn
JjHNhH+GITLltDUM7IjzKcyKTnp6bjsIYNZ0NJvhghhQ1ggxcCRpGq/qrRsZoPR8
inCAkLQrVxKVV3RzETcN4xX5p1NfPWUHfQx/U198h+JeAo7geQ/beSvffqzMqwIM
mAmpEeajWbxOUGfHHPxuEv1Qaw1qrsZ3IYeSohXm6bjPtN0yACCLNJ3WDoTOt10L
bjRTqLTOpP0nACsyhS5fJSo1mrD46QIDAQABo18wXTAdBgNVHQ4EFgQUAb5sAprW
+RA4QDNTxuNkSBwXELkwPAYDVR0RBDUwM4IMaWRwLm5jaXJsLmllhiNodHRwczov
L2lkcC5uY2lybC5pZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEA
G3+HCf3eFLlBNyBqz3625w84Qr8J+/I8f6MWvMZ4j1uQj5CUtfJrXWiQC30Y8TIE
/uaYP6Taoas0CayHptuove3a6SoO6LkAqugSZSEDPJY9obzX/HB57+RtnmdKsSJP
Sm5KyFLaMJxZEfV31e/yso1lodbh7WTkNEU+V8dwi92hQvw9288KHdOGh0cjk3zN
s7pxFnQ6ebsq0JfIV5ySqzGSCyCUdcZ5fbVb8axwMVhU0ClO1DTM5y3WAUvDFsda
pDv75UrdOiQhhQCfhDDTKvcCAJ0Vlx08q4wyO44EuLL8KzMrE7cIhgc39qzjN7YB
zQCEIPhXojqKYmoLy+VirjRz17qPdfEyODy9jS0v6qFq2IsREb/t99OOc/q0y9ed
oEXLGBQfGtzHJdub0Ecpqa2NjDCQhEAdAyVpKAIVfa0/mbZ4L7QvUBgxeMSqNHd1
s0KHi9OsXLYtNPEPE/4Rz9lU+Vu7E4W5P63SqR+EegjEA0PdYdvXqf21GN+1zSPJ
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDGzCCAgOgAwIBAgIUDymT+0qnFpj+1wBK67kpD4GOwBQwDQYJKoZIhvcNAQEF
BQAwFzEVMBMGA1UEAxMMaWRwLm5jaXJsLmllMB4XDTE0MDExNTEzNTQ0NloXDTM0
MDExNTEzNTQ0NlowFzEVMBMGA1UEAxMMaWRwLm5jaXJsLmllMIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAypTiVM40mgEF79m5GylKgp+UZRRghVs6iPOc
dClQNg52UCyORYQ/N5PPOJzJRUR97zeqlmNeH9su0tAgfZgbncw/vXklXJIAxIcL
nwGyaZdTGyj/VDBtnxj5u8hLm5/5WwqEw2Jo6Jma5qfBmNFpSAOTfkSvtMxWCtqe
o8h1ni0AN4jKHaijAjrzLMutrlwHpgZDN+21s/9InCTdrWGlfUp3Mbl0yCxizPax
IH3gGsO6nFt55/CNsA4ZTXVK1NzYWpuAubWzeuqM4DMLw0lMCOxCZ0/TTKNKft3p
2gftS6oJriXVcd05tLVG0Th2bAQicl1mZ+OXkFc/a13kcR368wIDAQABo18wXTA8
BgNVHREENTAzggxpZHAubmNpcmwuaWWGI2h0dHBzOi8vaWRwLm5jaXJsLmllL2lk
cC9zaGliYm9sZXRoMB0GA1UdDgQWBBQ1LNq1zEuMDzz7DnnOZ6nDSsxoVTANBgkq
hkiG9w0BAQUFAAOCAQEAxaOejgfPiAEhBHErNLiWdvmzaxtjRp6zKfrIFVcFKEQx
eex6fyCNQ0XQMfPeber7EtAuk2AdidMxlYAgBMNp57oZnBuvYipO8LVn6qPpotoQ
uqMQX4MYtEcIHnDdwZErO3CzKWG76PC5C5CM2G9eh7sahmP2F7EZshX+Wz45il1j
vELnlgNrvB9nRAbI8OfYuUhrHCEQpoEcvGNoXtZfbRCYoA0RSKZzoLMP8+mtgrMN
QoD56UPu/9sTcUyhMp+wrXLZE2YuAru5feZwGSOWMk+CKosq75DBJ6xlJKMEMpYe
EpAWVSexjo2IWj8KAOEJOpUl5z8XsVybIWIR1IUvYw==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ncirl.ie:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ncirl.ie:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ncirl.ie/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ncirl.ie/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ncirl.ie/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ncirl.ie:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.ncirl.ie/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.ncirl.ie/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.ncirl.ie/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ncirl.ie/idp/profile/Shibboleth/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">ncirl.ie</shibmd:Scope>
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDGzCCAgOgAwIBAgIUDymT+0qnFpj+1wBK67kpD4GOwBQwDQYJKoZIhvcNAQEF
BQAwFzEVMBMGA1UEAxMMaWRwLm5jaXJsLmllMB4XDTE0MDExNTEzNTQ0NloXDTM0
MDExNTEzNTQ0NlowFzEVMBMGA1UEAxMMaWRwLm5jaXJsLmllMIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAypTiVM40mgEF79m5GylKgp+UZRRghVs6iPOc
dClQNg52UCyORYQ/N5PPOJzJRUR97zeqlmNeH9su0tAgfZgbncw/vXklXJIAxIcL
nwGyaZdTGyj/VDBtnxj5u8hLm5/5WwqEw2Jo6Jma5qfBmNFpSAOTfkSvtMxWCtqe
o8h1ni0AN4jKHaijAjrzLMutrlwHpgZDN+21s/9InCTdrWGlfUp3Mbl0yCxizPax
IH3gGsO6nFt55/CNsA4ZTXVK1NzYWpuAubWzeuqM4DMLw0lMCOxCZ0/TTKNKft3p
2gftS6oJriXVcd05tLVG0Th2bAQicl1mZ+OXkFc/a13kcR368wIDAQABo18wXTA8
BgNVHREENTAzggxpZHAubmNpcmwuaWWGI2h0dHBzOi8vaWRwLm5jaXJsLmllL2lk
cC9zaGliYm9sZXRoMB0GA1UdDgQWBBQ1LNq1zEuMDzz7DnnOZ6nDSsxoVTANBgkq
hkiG9w0BAQUFAAOCAQEAxaOejgfPiAEhBHErNLiWdvmzaxtjRp6zKfrIFVcFKEQx
eex6fyCNQ0XQMfPeber7EtAuk2AdidMxlYAgBMNp57oZnBuvYipO8LVn6qPpotoQ
uqMQX4MYtEcIHnDdwZErO3CzKWG76PC5C5CM2G9eh7sahmP2F7EZshX+Wz45il1j
vELnlgNrvB9nRAbI8OfYuUhrHCEQpoEcvGNoXtZfbRCYoA0RSKZzoLMP8+mtgrMN
QoD56UPu/9sTcUyhMp+wrXLZE2YuAru5feZwGSOWMk+CKosq75DBJ6xlJKMEMpYe
EpAWVSexjo2IWj8KAOEJOpUl5z8XsVybIWIR1IUvYw==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ncirl.ie:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ncirl.ie:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>
<!-- Enabling SAML Proxy -->
 <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                        <ds:X509Certificate>
MIIDGzCCAgOgAwIBAgIUDymT+0qnFpj+1wBK67kpD4GOwBQwDQYJKoZIhvcNAQEF
BQAwFzEVMBMGA1UEAxMMaWRwLm5jaXJsLmllMB4XDTE0MDExNTEzNTQ0NloXDTM0
MDExNTEzNTQ0NlowFzEVMBMGA1UEAxMMaWRwLm5jaXJsLmllMIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAypTiVM40mgEF79m5GylKgp+UZRRghVs6iPOc
dClQNg52UCyORYQ/N5PPOJzJRUR97zeqlmNeH9su0tAgfZgbncw/vXklXJIAxIcL
nwGyaZdTGyj/VDBtnxj5u8hLm5/5WwqEw2Jo6Jma5qfBmNFpSAOTfkSvtMxWCtqe
o8h1ni0AN4jKHaijAjrzLMutrlwHpgZDN+21s/9InCTdrWGlfUp3Mbl0yCxizPax
IH3gGsO6nFt55/CNsA4ZTXVK1NzYWpuAubWzeuqM4DMLw0lMCOxCZ0/TTKNKft3p
2gftS6oJriXVcd05tLVG0Th2bAQicl1mZ+OXkFc/a13kcR368wIDAQABo18wXTA8
BgNVHREENTAzggxpZHAubmNpcmwuaWWGI2h0dHBzOi8vaWRwLm5jaXJsLmllL2lk
cC9zaGliYm9sZXRoMB0GA1UdDgQWBBQ1LNq1zEuMDzz7DnnOZ6nDSsxoVTANBgkq
hkiG9w0BAQUFAAOCAQEAxaOejgfPiAEhBHErNLiWdvmzaxtjRp6zKfrIFVcFKEQx
eex6fyCNQ0XQMfPeber7EtAuk2AdidMxlYAgBMNp57oZnBuvYipO8LVn6qPpotoQ
uqMQX4MYtEcIHnDdwZErO3CzKWG76PC5C5CM2G9eh7sahmP2F7EZshX+Wz45il1j
vELnlgNrvB9nRAbI8OfYuUhrHCEQpoEcvGNoXtZfbRCYoA0RSKZzoLMP8+mtgrMN
QoD56UPu/9sTcUyhMp+wrXLZE2YuAru5feZwGSOWMk+CKosq75DBJ6xlJKMEMpYe
EpAWVSexjo2IWj8KAOEJOpUl5z8XsVybIWIR1IUvYw==
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                        <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ncirl.ie/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
    </SPSSODescriptor>
</EntityDescriptor>
