<?xml version="1.0" encoding="UTF-8"?>

<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2030-01-01T00:00:00.000Z" entityID="https://idp.vfu.cz/idp/shibboleth">

    <Extensions>

        <!-- eduGAIN -->
        <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
            <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
        </eduidmd:RepublishRequest>

        <!-- Research & Scholarship entity-category support -->
        <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
          <saml:Attribute
              xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
              NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
              Name="http://macedir.org/entity-category-support">
            <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          </saml:Attribute>
        </mdattr:EntityAttributes>

    </Extensions>

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">vfu.cz</shibmd:Scope>

            <!-- DOKONFIGUROVAT -->
            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">University of Veterinary Sciences Brno</mdui:DisplayName>
                <mdui:DisplayName xml:lang="cs">Veterinární univerzita Brno</mdui:DisplayName>
                <mdui:Description xml:lang="en">Identity Provider for employees and students of University of Veterinary Sciences Brno.</mdui:Description>
                <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a studenty Veterinární univerzity Brno.</mdui:Description>
                <mdui:InformationURL xml:lang="en">https://www.vetuni.cz/en/</mdui:InformationURL>
                <mdui:InformationURL xml:lang="cs">https://www.vetuni.cz/cz/</mdui:InformationURL>
                <mdui:Logo height="40" width="40">https://www.vetuni.cz/imgs/vetuni_logo_40x40.jpg</mdui:Logo>
                <mdui:Logo height="50" width="50">https://www.vetuni.cz/imgs/vetuni_logo_50x50.jpg</mdui:Logo>
                <mdui:Logo height="100" width="100">https://www.vetuni.cz/imgs/vetuni_logo_100x100.jpg</mdui:Logo>
                <mdui:Logo height="200" width="200">https://www.vetuni.cz/imgs/vetuni_logo_200x200.jpg</mdui:Logo>
                <mdui:Logo height="400" width="400">https://www.vetuni.cz/imgs/vetuni_logo_400x400.jpg</mdui:Logo>
                <mdui:Logo height="800" width="800">https://www.vetuni.cz/imgs/vetuni_logo_800x800.jpg</mdui:Logo>
                <mdui:Logo height="2588" width="2588">https://www.vetuni.cz/imgs/vetuni_logo_2588x2588.jpg</mdui:Logo>
            </mdui:UIInfo>

        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <!-- <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.vfu.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> -->
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.vfu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!-- <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat> -->
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.vfu.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.vfu.cz/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.vfu.cz/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.vfu.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        -->

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.vfu.cz/idp/profile/SAML2/Redirect/SSO"/>
        <!-- <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.vfu.cz/idp/profile/Shibboleth/SSO"/> -->
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.vfu.cz/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.vfu.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>

    </IDPSSODescriptor>

    <Organization>
        <OrganizationName xml:lang="en">University of Veterinary Sciences Brno</OrganizationName>
        <OrganizationName xml:lang="cs">Veterinární univerzita Brno</OrganizationName>
        <OrganizationDisplayName xml:lang="en">University of Veterinary Sciences Brno</OrganizationDisplayName>
        <OrganizationDisplayName xml:lang="cs">Veterinární univerzita Brno</OrganizationDisplayName>
        <OrganizationURL xml:lang="en">https://www.vetuni.cz/en/</OrganizationURL>
        <OrganizationURL xml:lang="cs">https://www.vetuni.cz/cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
        <GivenName>Ladislav</GivenName>
        <SurName>Žůrek</SurName>
        <EmailAddress>mailto:zurekl@vfu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
        <GivenName>Petr</GivenName>
        <SurName>Čejka</SurName>
        <EmailAddress>mailto:cejkap@vfu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
        <GivenName>Vojtěch</GivenName>
        <SurName>Škrdla</SurName>
        <EmailAddress>mailto:skrdlav@vfu.cz</EmailAddress>
    </ContactPerson>

</EntityDescriptor>
