<EntityDescriptor entityID="https://cas.kumc.edu/idp/shibboleth"
                  xmlns="urn:oasis:names:tc:SAML:2.0:metadata"
                  xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
                  xmlns:shibmd="urn:mace:shibboleth:metadata:1.0"
                  xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">

    <IDPSSODescriptor errorURL="https://www.kumc.edu/information-technology.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">kumc.edu</shibmd:Scope>
         <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
           <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
               NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
               Name="urn:oasis:names:tc:SAML:attribute:assurance-certification">
             <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
           </saml:Attribute>
           <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
               NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
               Name="http://macedir.org/entity-category-support">
             <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
           </saml:Attribute>
         </mdattr:EntityAttributes>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding"
                                   Location="https://cas.kumc.edu/idp/profile/SAML1/SOAP/ArtifactResolution" 
                                   index="1"/>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP"
                                   Location="https://cas.kumc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" 
                                   index="2"/>
                                   
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" 
                             Location="https://cas.kumc.edu/idp/profile/Shibboleth/SSO" />
        
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" 
                             Location="https://cas.kumc.edu/idp/profile/SAML2/POST/SSO" />

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" 
                             Location="https://cas.kumc.edu/idp/profile/SAML2/POST-SimpleSign/SSO" />
        
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" 
                             Location="https://cas.kumc.edu/idp/profile/SAML2/Redirect/SSO" />

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
                             Location="https://cas.kumc.edu/cas/logout"
                             ResponseLocation="https://cas.kumc.edu/cas/logout" />

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign"
                             Location="https://cas.kumc.edu/cas/logout"
                             ResponseLocation="https://cas.kumc.edu/cas/logout" />

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
                             Location="https://cas.kumc.edu/cas/logout"
                             ResponseLocation="https://cas.kumc.edu/cas/logout" />

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP"
                             Location="https://cas.kumc.edu/cas/logout"
                             ResponseLocation="https://cas.kumc.edu/cas/logout" />


    </IDPSSODescriptor>

    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">kumc.edu</shibmd:Scope>
        </Extensions>

        <KeyDescriptor>
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" 
                          Location="https://cas.kumc.edu/idp/profile/SAML1/SOAP/AttributeQuery" />
        
        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP"
                          Location="https://cas.kumc.edu/idp/profile/SAML2/SOAP/AttributeQuery" />
        
        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        
    </AttributeAuthorityDescriptor>
  <Organization>
    <OrganizationName xml:lang="en">University of Kansas</OrganizationName>
    <OrganizationDisplayName xml:lang="en">University of Kansas Medical Center</OrganizationDisplayName>
    <OrganizationURL xml:lang="en">http://www.kumc.edu/</OrganizationURL>
  </Organization>
  <ContactPerson contactType="administrative">
    <GivenName>Identity and Data Integration</GivenName>
    <EmailAddress>IDM-University@kumc.edu</EmailAddress>
  </ContactPerson>
  <ContactPerson contactType="technical">
    <GivenName>Identity and Data Integration</GivenName>
    <EmailAddress>IDM-University@kumc.edu</EmailAddress>
  </ContactPerson>
  <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
    <GivenName>Identity and Data Integration</GivenName>
    <EmailAddress>kumc-security@kumc.edu</EmailAddress>
  </ContactPerson>
</EntityDescriptor>    
