<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gatekeeper.new.ox.ac.uk/shibboleth">
  <!--
		This is a "New College Wifi authentication server" Shibboleth SP for the University of Oxford.
	-->
  <Extensions>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://ukfederation.org.uk" registrationInstant="2013-11-28T10:27:24Z">
      <mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy>
    </mdrpi:RegistrationInfo>
  </Extensions>
  <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
    <Extensions>
      <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/Login"/>
    </Extensions>
    <KeyDescriptor>
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>
						MIIDDDCCAfSgAwIBAgIJAOQwjabMZUfkMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV
						BAMTF2dhdGVrZWVwZXIubmV3Lm94LmFjLnVrMB4XDTEzMTEyNzE0MDMwNVoXDTIz
						MTEyNTE0MDMwNVowIjEgMB4GA1UEAxMXZ2F0ZWtlZXBlci5uZXcub3guYWMudWsw
						ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDIZzpzGZMdO8WNqgTiaHTh
						4h7xBDoIBX2FgZMc5cvIvltA1Zbg1RCgskKcid/EGCWT+Xe9zPM7H/LablZ5KGU8
						p6tg40jzZc6ZQzPrgsPCxFDarVdn4itgm2YLhWJKMAcfhtpFc2hcD+5Cxv7QOFzg
						n/XXmQWqXedsVFftpZ2ZIbMs6LmSY8x+Eq92Him1dgiGTrxBNBKS+nqGXXt6orH8
						qkP11tQ88b9FSCuQ05vBoc0yj9wezx8BT+PYmw/2BK/fCyrLdMIYDh2RmMQnlJGI
						iLu3jrPVAi4buEVMLCPsGE20mNkDsdrCN3BCMzJ6Zi2bAX7dL6bfQT3SK+YfZk/1
						AgMBAAGjRTBDMCIGA1UdEQQbMBmCF2dhdGVrZWVwZXIubmV3Lm94LmFjLnVrMB0G
						A1UdDgQWBBQVbXUza42WR0tfgqKagp9z1hPDPzANBgkqhkiG9w0BAQUFAAOCAQEA
						p9qmPeKyV8MSth4Qf82n5DH6n74JnnSQ85Mtq7rp5WK4KwJ42U3Yw768AgexjJKR
						l8WqgG2lHP3k0ZREUTFip0fEmY08RnzpMmOAdzcedeWrO1ABqNW1724hcStLQPrf
						uRLIycISwMcnPrgqK5uMxqwbp5itzomWeNRDYG6MdToJ81rOs/E5kKlGmjE7d1YS
						fvLGueVy3BbIsyJEjCz7dj5dm8+eguh3VMjRQUT4r79H+sjginc+QTBByxnSZ641
						9ISVAGvfUB2sQMp+B3QPlrubAwMpAVKlgnmiJEYS6R8LOKZEbAOA+nBoFE9+lxmR
						xug/F2NSE54Sg/nepxJpqw==
					</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
    </KeyDescriptor>
    <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/Artifact/SOAP" index="1"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SLO/SOAP"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SLO/Redirect"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SLO/POST"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SLO/Artifact"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SAML2/POST" index="1"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SAML2/Artifact" index="3"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SAML2/ECP" index="4"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SAML/POST" index="5"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gatekeeper.new.ox.ac.uk/Shibboleth.sso/SAML/Artifact" index="6"/>
  </SPSSODescriptor>
  <Organization>
    <OrganizationName xml:lang="en">University of Oxford</OrganizationName>
    <OrganizationDisplayName xml:lang="en">University of Oxford, New College Wifi authentication server</OrganizationDisplayName>
    <OrganizationURL xml:lang="en">http://www.new.ox.ac.uk/</OrganizationURL>
  </Organization>
  <ContactPerson contactType="support">
    <GivenName>IT Office</GivenName>
    <EmailAddress>mailto:it-support@new.ox.ac.uk</EmailAddress>
  </ContactPerson>
  <ContactPerson contactType="technical">
    <GivenName>James</GivenName>
    <SurName>Dore</SurName>
    <EmailAddress>mailto:james.dore@new.ox.ac.uk</EmailAddress>
  </ContactPerson>
</EntityDescriptor>