diff options
author | Björn Mattsson <bjorn@sunet.se> | 2022-11-17 16:57:30 +0100 |
---|---|---|
committer | Björn Mattsson <bjorn@sunet.se> | 2022-11-17 16:57:30 +0100 |
commit | c9b4889e429634c798766f7da20b16265c8fd750 (patch) | |
tree | 99efb7ab8f2e062bb5bda4497ed005fa76ab20db /swamid-testing/idp02.gih.se-idp-shibboleth.xml | |
parent | fea25a2892a986b21b9790db40213c0d743f9455 (diff) |
Rearranged files into separate dirs for swamid-edugain and swamid-testing
Diffstat (limited to 'swamid-testing/idp02.gih.se-idp-shibboleth.xml')
-rw-r--r-- | swamid-testing/idp02.gih.se-idp-shibboleth.xml | 214 |
1 files changed, 214 insertions, 0 deletions
diff --git a/swamid-testing/idp02.gih.se-idp-shibboleth.xml b/swamid-testing/idp02.gih.se-idp-shibboleth.xml new file mode 100644 index 00000000..ffc8927c --- /dev/null +++ b/swamid-testing/idp02.gih.se-idp-shibboleth.xml @@ -0,0 +1,214 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp02.gih.se/idp/shibboleth"> + <md:Extensions> + <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/"> + <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + <mdattr:EntityAttributes> + <samla:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue> + </samla:Attribute> + <samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category-support"> + <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + </md:Extensions> + <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://idp02.gih.se/error/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX"> + <md:Extensions> + <shibmd:Scope regexp="false">gih.se</shibmd:Scope> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="sv">Gymnastik- och idrottshögskolan - Test</mdui:DisplayName> + <mdui:DisplayName xml:lang="en">The Swedish School of Sport and Health Sciences - Test</mdui:DisplayName> + <mdui:Description xml:lang="sv">Identitetsutgivare för Gymnastik- och Idrottshögskolan - Test</mdui:Description> + <mdui:Description xml:lang="en">Identity Provider for The Swedish School of Sport and Health Sciences - Test</mdui:Description> + <mdui:Logo xml:lang="sv" height="80" width="80">https://idp02.gih.se/idp/images/gihlogo-mdui.png</mdui:Logo> + <mdui:Logo xml:lang="en" height="80" width="80">https://idp02.gih.se/idp/images/gihlogo-mdui.png</mdui:Logo> + <mdui:InformationURL xml:lang="sv">https://www.gih.se/</mdui:InformationURL> + <mdui:InformationURL xml:lang="en">https://www.gih.se/</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://www.gih.se/OM-GIH/Styrdokument/Forvaltning-styrdokument/</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">https://www.gih.se/OM-GIH/Styrdokument/Forvaltning-styrdokument/</mdui:PrivacyStatementURL> + <mdui:Keywords xml:lang="sv">gih gymnastik-+och+idrottshögskolan the+swedish+school+of+sport+and+health+sciences</mdui:Keywords> + <mdui:Keywords xml:lang="en">gih gymnastik-+och+idrottshögskolan the+swedish+school+of+sport+and+health+sciences</mdui:Keywords> + </mdui:UIInfo> + <mdui:DiscoHints> + <mdui:DomainHint>gih.se</mdui:DomainHint> + <mdui:GeolocationHint>geo:59.3467350,18.0811920</mdui:GeolocationHint> + </mdui:DiscoHints> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDHDCCAgSgAwIBAgIVAKtN6+g8qyINNSUdMUj+ETmlrH8pMA0GCSqGSIb3DQEB +CwUAMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTAeFw0yMDExMTkxMTMyMTBaFw0z +MDExMTkxMTMyMTBaMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTCCASIwDQYJKoZI +hvcNAQEBBQADggEPADCCAQoCggEBAIpGBr68QLi3BUV91eCG3U76xIuPwQdwJc3I +0UkWaVUDT3018TmVOpHUftzi7ratKM2/YsSCXjKXAwd55Wrg9b13jZOBOajPumKA +rTQ0j1XrJe3RrNXYV8fW3YGc2r5QkSK9exgZOQMYvrYszB4TRUxGFxtVbQ1bVqDu +TPZw9+q3hZPwg7SXMyJxMqtviA73M8MhfwFhIS6oYiKa4vf3wVEWxRC8x/YOuzCh +h1Yvq3BIzNWxJCimrcZeWe/VJlYnK2XsJ+37R94oPA/UZZWM4W7gZks3o0btJR8r +jihmzfw63uTdiLQuquxti7vf3AfKjmy5CccigFDHN+7RUvtnBvUCAwEAAaNfMF0w +HQYDVR0OBBYEFEsdX6ciDexkMd7P4b2DrjG9EtM+MDwGA1UdEQQ1MDOCDGlkcDAy +LmdpaC5zZYYjaHR0cHM6Ly9pZHAwMi5naWguc2UvaWRwL3NoaWJib2xldGgwDQYJ +KoZIhvcNAQELBQADggEBAFvSriJHkdCy3EJ7W7Xn1guLHf7wMpACeOIv0TRK+TKi +msQNzObMvxFRnAFgmIvuxq/7f6DZ0XGm0VqCcKxmuM7dW9GXtzVzzrtAIds5kFI1 +d3WUWkx8q//v9NGPG4i5KpXZHwR30IuDl5AyrUh0mm1haKWHy9ybm5/y/Yw/OoX1 +BGnFSMWW9V5fwiW1S6E5QqCC/LTPBJR3jIl0pQS/Ik2u2+6hVu/O12U9eaE5ZOCB +pp7OqR+jjunl42YyKK6PYT209nJiW8SmFi+c9qSYmDgPKwlHnA/hYdvy9heTAWYm +HrR00emNkHk9fs7zq95jHw4hSBCKWKhvoL62Xe4m/EE= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDHDCCAgSgAwIBAgIVAL7+mBPoPWMeB+fhGyTwStsYI5rrMA0GCSqGSIb3DQEB +CwUAMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTAeFw0yMDExMTkxMTMxNDlaFw0z +MDExMTkxMTMxNDlaMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTCCASIwDQYJKoZI +hvcNAQEBBQADggEPADCCAQoCggEBAK5ldipbAra5FH7zwDzdDHtZWqb64qBIIr7L +Tjrg0tDxP2RGRzYEHuIwf14ce/fkDjTbBidgQTOj3DxnL7Pg/PfkSLsOiL9yPiiC +y3ql3KJ+eB8JipnrtiGlU61D4o8g1kwGSCn+dSWECtPFh8L42++ht3n2YOUeWFn+ ++V/TKtGG3Ng0MfKb434K2eAJ89lkyd7Rwj7IWiCRXfLnuC+Hz5wz/HSR3L4xsIjh +RDmEpsQpjBVsPdq6asuiLNTsuN6qQBQNg1oVjumCH1GD3mDas6oaGwICFnzl1wWW +51A+9i6EHtW2nxtP3pTZZioxUwTzlVwmXVHtPwAixNMvksEqyz0CAwEAAaNfMF0w +HQYDVR0OBBYEFFU9Z4F8VzfJPZnhDM1V0c8bLGWBMDwGA1UdEQQ1MDOCDGlkcDAy +LmdpaC5zZYYjaHR0cHM6Ly9pZHAwMi5naWguc2UvaWRwL3NoaWJib2xldGgwDQYJ +KoZIhvcNAQELBQADggEBAIF/cLOHqzlGE6b3VTi0PDKME9IU/UXayuTPLwXcZC/W +iU8aiaX9Ut2l5seEpQW49n9/llHpMz8U3YKOKqkpdinB4b8dCcYbP9m9rOsuvYBM +ONL0hwFxwl2Ph6WB3U7jbpIt+dwShQzmWLDYMjqMbj5lW0dyq8cVii3w46L4Rgz0 +e7Hcjpzmj8XWf1qt/PotxX9RC6KpztrVAiuECnLo2M32uqYISykOPVW1ojpSG0Yb +/4q9l+xBYxQ8zhXh+WHYK+m2iTYGc3yBaogxoylffp7dm735Y6+e/u7McDJgSuYU +hfPauxBtehyqdj0u5Kh1alBnJrNgsNU1ldLSDXt8fxU= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp02.gih.se:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp02.gih.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> + <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> + <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp02.gih.se/idp/profile/Shibboleth/SSO"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" ns1:supportsRequestedAttributes="true" Location="https://idp02.gih.se/idp/profile/SAML2/POST/SSO"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" ns1:supportsRequestedAttributes="true" Location="https://idp02.gih.se/idp/profile/SAML2/POST-SimpleSign/SSO"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" ns1:supportsRequestedAttributes="true" Location="https://idp02.gih.se/idp/profile/SAML2/Redirect/SSO"/> + </md:IDPSSODescriptor> + <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> + <md:Extensions> + <shibmd:Scope regexp="false">gih.se</shibmd:Scope> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDGzCCAgOgAwIBAgIUfL5eIxaCCsXXEHWoMbWDcuznRdkwDQYJKoZIhvcNAQEL +BQAwFzEVMBMGA1UEAwwMaWRwMDIuZ2loLnNlMB4XDTIwMTExOTExMzA1OFoXDTMw +MTExOTExMzA1OFowFzEVMBMGA1UEAwwMaWRwMDIuZ2loLnNlMIIBIjANBgkqhkiG +9w0BAQEFAAOCAQ8AMIIBCgKCAQEAj+HoBNvAQtsXd+fWDPJaB3oZhN4sLRxKxvr2 +6GnH67VmUtzb8LpByJ6P9aW+xbHP/KYZ2waDDM0OwmhFsgT6WMfIwu3JWa+JL0ey +5ttKaP6Z7Dv20UD6ntntVLq9hGf/RDQSlbAtqoYAUMURAbiGQ8W0MK1K1cLCzJNn +51xgvIJ0EFCThoBm29Qz9L85MwLFM/qQm3HLf3VuR7Sm9r1Uehr1XeZbylv1n5Ln +PKThGVqNF3EUWPxY1rJb07MYKyis+IG8jf+8GyXi9hmdBX96znacB3MAZ+VSSxYX +/glQYdukMZZr0UoL5AowT9GkEZ82lBOPngXm9SnDA4tGabe8jQIDAQABo18wXTAd +BgNVHQ4EFgQUmf0NpPd2MGKF4HJmHxXsmDBhVyowPAYDVR0RBDUwM4IMaWRwMDIu +Z2loLnNlhiNodHRwczovL2lkcDAyLmdpaC5zZS9pZHAvc2hpYmJvbGV0aDANBgkq +hkiG9w0BAQsFAAOCAQEARcQYXeG/c5NT1dqlOQEbS5RmuuHo8YeVJqn42J4p7YWK +ePa/fGNyiIa6r5L96S4zf1pBGXQ4waEofvdDr3WC/bUr2y4zpSoGL04z7Kz4JhIn +2vv9sUFxjU+N61NxuSu/nSdoHNNi0+vTLqO0dCn2tsCzCYDOM+8fIzanWT7CCMd1 ++7kzroyXpbQfrsg1gHwkdz6FRhpyy8wYlkQBqNiYw8uI2Enz5DtCIgTdzeY5K6T2 +sq6tAAvkig6Q9YAKsZp2pxchkm8VE3Asn9pkKmmylelMXYrX1JZzfPyaQcY2UPD8 +U+hy+KSevibyVy5OBDk6lia+Yp9JAMYJ9eXkcaI1mg== + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDHDCCAgSgAwIBAgIVAKtN6+g8qyINNSUdMUj+ETmlrH8pMA0GCSqGSIb3DQEB +CwUAMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTAeFw0yMDExMTkxMTMyMTBaFw0z +MDExMTkxMTMyMTBaMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTCCASIwDQYJKoZI +hvcNAQEBBQADggEPADCCAQoCggEBAIpGBr68QLi3BUV91eCG3U76xIuPwQdwJc3I +0UkWaVUDT3018TmVOpHUftzi7ratKM2/YsSCXjKXAwd55Wrg9b13jZOBOajPumKA +rTQ0j1XrJe3RrNXYV8fW3YGc2r5QkSK9exgZOQMYvrYszB4TRUxGFxtVbQ1bVqDu +TPZw9+q3hZPwg7SXMyJxMqtviA73M8MhfwFhIS6oYiKa4vf3wVEWxRC8x/YOuzCh +h1Yvq3BIzNWxJCimrcZeWe/VJlYnK2XsJ+37R94oPA/UZZWM4W7gZks3o0btJR8r +jihmzfw63uTdiLQuquxti7vf3AfKjmy5CccigFDHN+7RUvtnBvUCAwEAAaNfMF0w +HQYDVR0OBBYEFEsdX6ciDexkMd7P4b2DrjG9EtM+MDwGA1UdEQQ1MDOCDGlkcDAy +LmdpaC5zZYYjaHR0cHM6Ly9pZHAwMi5naWguc2UvaWRwL3NoaWJib2xldGgwDQYJ +KoZIhvcNAQELBQADggEBAFvSriJHkdCy3EJ7W7Xn1guLHf7wMpACeOIv0TRK+TKi +msQNzObMvxFRnAFgmIvuxq/7f6DZ0XGm0VqCcKxmuM7dW9GXtzVzzrtAIds5kFI1 +d3WUWkx8q//v9NGPG4i5KpXZHwR30IuDl5AyrUh0mm1haKWHy9ybm5/y/Yw/OoX1 +BGnFSMWW9V5fwiW1S6E5QqCC/LTPBJR3jIl0pQS/Ik2u2+6hVu/O12U9eaE5ZOCB +pp7OqR+jjunl42YyKK6PYT209nJiW8SmFi+c9qSYmDgPKwlHnA/hYdvy9heTAWYm +HrR00emNkHk9fs7zq95jHw4hSBCKWKhvoL62Xe4m/EE= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDHDCCAgSgAwIBAgIVAL7+mBPoPWMeB+fhGyTwStsYI5rrMA0GCSqGSIb3DQEB +CwUAMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTAeFw0yMDExMTkxMTMxNDlaFw0z +MDExMTkxMTMxNDlaMBcxFTATBgNVBAMMDGlkcDAyLmdpaC5zZTCCASIwDQYJKoZI +hvcNAQEBBQADggEPADCCAQoCggEBAK5ldipbAra5FH7zwDzdDHtZWqb64qBIIr7L +Tjrg0tDxP2RGRzYEHuIwf14ce/fkDjTbBidgQTOj3DxnL7Pg/PfkSLsOiL9yPiiC +y3ql3KJ+eB8JipnrtiGlU61D4o8g1kwGSCn+dSWECtPFh8L42++ht3n2YOUeWFn+ ++V/TKtGG3Ng0MfKb434K2eAJ89lkyd7Rwj7IWiCRXfLnuC+Hz5wz/HSR3L4xsIjh +RDmEpsQpjBVsPdq6asuiLNTsuN6qQBQNg1oVjumCH1GD3mDas6oaGwICFnzl1wWW +51A+9i6EHtW2nxtP3pTZZioxUwTzlVwmXVHtPwAixNMvksEqyz0CAwEAAaNfMF0w +HQYDVR0OBBYEFFU9Z4F8VzfJPZnhDM1V0c8bLGWBMDwGA1UdEQQ1MDOCDGlkcDAy +LmdpaC5zZYYjaHR0cHM6Ly9pZHAwMi5naWguc2UvaWRwL3NoaWJib2xldGgwDQYJ +KoZIhvcNAQELBQADggEBAIF/cLOHqzlGE6b3VTi0PDKME9IU/UXayuTPLwXcZC/W +iU8aiaX9Ut2l5seEpQW49n9/llHpMz8U3YKOKqkpdinB4b8dCcYbP9m9rOsuvYBM +ONL0hwFxwl2Ph6WB3U7jbpIt+dwShQzmWLDYMjqMbj5lW0dyq8cVii3w46L4Rgz0 +e7Hcjpzmj8XWf1qt/PotxX9RC6KpztrVAiuECnLo2M32uqYISykOPVW1ojpSG0Yb +/4q9l+xBYxQ8zhXh+WHYK+m2iTYGc3yBaogxoylffp7dm735Y6+e/u7McDJgSuYU +hfPauxBtehyqdj0u5Kh1alBnJrNgsNU1ldLSDXt8fxU= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp02.gih.se:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> + </md:AttributeAuthorityDescriptor> + <md:Organization> + <md:OrganizationName xml:lang="sv">Gymnastik- och idrottshögskolan</md:OrganizationName> + <md:OrganizationName xml:lang="en">The Swedish School of sport and health sciences</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="sv">Gymnastik- och idrottshögskolan</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="en">The Swedish School of sport and health sciences</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="sv">https://www.gih.se/</md:OrganizationURL> + <md:OrganizationURL xml:lang="en">https://www.gih.se/</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="administrative"> + <md:Company>Gymnastik- och idrottshögskolan, GIH</md:Company> + <md:SurName>CIO</md:SurName> + <md:EmailAddress>mailto:cio@gih.se</md:EmailAddress> + <md:TelephoneNumber>+46812053700</md:TelephoneNumber> + </md:ContactPerson> + <md:ContactPerson contactType="technical"> + <md:Company>Gymnastik- och idrottshögskolan, GIH</md:Company> + <md:SurName>ITOps</md:SurName> + <md:EmailAddress>mailto:itops@gih.se</md:EmailAddress> + <md:TelephoneNumber>+46812053700</md:TelephoneNumber> + </md:ContactPerson> + <md:ContactPerson contactType="support"> + <md:Company>Gymnastik- och idrottshögskolan, GIH</md:Company> + <md:SurName>IT Support</md:SurName> + <md:EmailAddress>mailto:itsupport@gih.se</md:EmailAddress> + <md:TelephoneNumber>+46812053700</md:TelephoneNumber> + </md:ContactPerson> + <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <md:GivenName>Security Response Team</md:GivenName> + <md:EmailAddress>mailto:abuse@gih.se</md:EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> |