<?xml version="1.0" encoding="UTF-8"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idp.painless-security.com/idp/shibboleth"> <md:Extensions> <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://ukfederation.org.uk" registrationInstant="2015-07-07T13:46:22Z"> <mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy> </mdrpi:RegistrationInfo> </md:Extensions> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0"> <md:Extensions> <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">painless-security.com</shibmd:Scope> <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"> <mdui:DisplayName xml:lang="en">Painless Security, LLC</mdui:DisplayName> <mdui:Description xml:lang="en">Single sign-on for staff, contractors and guests of Painless Security, LLC. </mdui:Description> </mdui:UIInfo> </md:Extensions> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> MIIDTzCCAjegAwIBAgIUQynxnQARWSAiT433dOEy4rgUWoswDQYJKoZIhvcNAQEL BQAwJDEiMCAGA1UEAwwZaWRwLnBhaW5sZXNzLXNlY3VyaXR5LmNvbTAeFw0xNTA2 MDkxOTUyNTlaFw0zNTA2MDkxOTUyNTlaMCQxIjAgBgNVBAMMGWlkcC5wYWlubGVz cy1zZWN1cml0eS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCl yldHUHv/seFmWguFN28U6c/zLp6+caSZ2GCC84uP0ffvHbd6TV/JUeo6h5RVjjPB beWDCUFbxpQEOtNokdOAdrmMu11AtW0u0oyppmbVhfd9uIXJxnAUmq/AHtpqngUj yKl8ddJEVTqeX3iBiBZSXRBGjed4ZLqh1wmWfgZDxJS44sK3panId4NdV5SzjgJ8 UtKuwtH9P84xvMMQjgLcmBtnRU+3Fwi50f5Q56tkJYJXC0rp8GMJkuX20aKrk9Xx R3E2g3m++A1Flai3k0YK7m4sEK7LMWIby7ALzzXgRyboZVYtYpYRILY/K0lXh9BL 3amhcIYQXRalaNYLqX8RAgMBAAGjeTB3MB0GA1UdDgQWBBRrLqZ+Xuc7a8no4h3R KqK0MCyXTzBWBgNVHREETzBNghlpZHAucGFpbmxlc3Mtc2VjdXJpdHkuY29thjBo dHRwczovL2lkcC5wYWlubGVzcy1zZWN1cml0eS5jb20vaWRwL3NoaWJib2xldGgw DQYJKoZIhvcNAQELBQADggEBADnukeJJTy53hb7t2zGznoX8RVJPUXU+YO47ZTnu fq1K6XRqN76baq0Xrie5sgbmryC9OQz087B5PRTD9e7Rb+87JaMfQzfLApb6D2I3 nWCI/CaywJ8T2J3+2MY78gjLcWezgigkt1KNDc4nkhSWrMdNlqQ7JbGHWSWiN89P TTe6Z8/NNhCjizcNqZcvmySgRlvIiTdhgLqXxmDAArizrLVq7HElbNoc0IW03LBX QTRNrAggfvMGf32MdIPPCfX9odu63lwZfx17sqPxvdQ2xq2ZL6iAXbC65rtlKTjW gcWNbUNwBO9L972+8/PKLZD/V0mGrrlgDpwI6rKuIlaQTzk= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> MIIDUDCCAjigAwIBAgIVAMxItCUJxrxuCYpH3cVsXJ/cZImsMA0GCSqGSIb3DQEB CwUAMCQxIjAgBgNVBAMMGWlkcC5wYWlubGVzcy1zZWN1cml0eS5jb20wHhcNMTUw NjA5MTk1MjU5WhcNMzUwNjA5MTk1MjU5WjAkMSIwIAYDVQQDDBlpZHAucGFpbmxl c3Mtc2VjdXJpdHkuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA lnefIU94qiDGGL7oLuD+dUsIfewPwXwQr2bX1NftMpJhlcVWmilKuXvR1zfjifYN f7JZwErLGQpGbooqRhtuyjPh0luxhlAQNhBQqa8aYAZCdghq5TKDikfOM2MCs/W6 msKM5sbjKpy+XUsAxWyd1tDYV2e7xI5SY1QBg9Vu1GF8W+FWPCtfEJAVCapkMzGR 9US+hU2xM6hSeOegb7CKt/6BcSK+pislffQSApmFtNhP2N3uUePbuZEskGF4qiy0 0fdpOxH1G+5iRLSOmGDvKIdzZ+TytQlqAhv+U9VJSaihCR5q2aWVwCkXr9UjcYg2 uCW6inEwc28lRkDq9uNt5QIDAQABo3kwdzAdBgNVHQ4EFgQUt6U4epZshqW30TRV w1XGB5DNUXYwVgYDVR0RBE8wTYIZaWRwLnBhaW5sZXNzLXNlY3VyaXR5LmNvbYYw aHR0cHM6Ly9pZHAucGFpbmxlc3Mtc2VjdXJpdHkuY29tL2lkcC9zaGliYm9sZXRo MA0GCSqGSIb3DQEBCwUAA4IBAQASs4pQKTc/wOFdPdVJjBtJjQQPNOfdkG1hFCWk JbQLaEQb98i4Mnt8mIZhEuYeCI5V7HHILE/z2qFTadLXT982B46r7pTSJVmjf0/Y Z8iB3JlP26HIb5MqA/KvXc13FsvvuPrPqjlvb5peh/UHqQcfTjid7ueDu+GpbWfc 5SImh98kP49WzKjMYSINsppQrcq1BuyRrmONLWCOV4+5oLjbRUjQLG7nJ+OQvJ3L Ty+Hnn8QuOxrkKH9RPPJuzZ4GnVrKnYk6ZLR61Ycf4bpoEi74GgjBVqmwXZCET1S x1XIIdYkfjFRbr2dxUIYAI+Hy5VavvRSXBWBDQChKZfE4rFt </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> MIIDTzCCAjegAwIBAgIUU5Vd+CG4Yi2i2PMHz783N0/fwl0wDQYJKoZIhvcNAQEL BQAwJDEiMCAGA1UEAwwZaWRwLnBhaW5sZXNzLXNlY3VyaXR5LmNvbTAeFw0xNTA2 MDkxOTUyNTlaFw0zNTA2MDkxOTUyNTlaMCQxIjAgBgNVBAMMGWlkcC5wYWlubGVz cy1zZWN1cml0eS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDY 9DxmRykS0nefXvs34sK+YDIfCHJr4Eo7i4I/eP3lt86Tnb5EjYknYA5OCEE//bSu H4kllbei0wFVasS4vCM9SScY9jjgCKTsB0wcNSlha1n6IHkSR2z1vAKzCjou6G2Z x8ivnVybPjnzBtAXWRQUUcbTptufm51/zA0h4xB/wgnK4X0iaEdZIAzSuKBtl5ze aJgCGT1roxumpHBCE7RY5k5M+QQWVhoOFN+b2KREtWzLGv0GDovaUk6EeUnkK4l3 MkGBFnzCElI+W+/0GGnga4XdTk1dX+C1cO3JZ4vmU3qXX8WJysGoltAM1oJwdBIg Fs9rjEUHFmJvYlWMzyzrAgMBAAGjeTB3MB0GA1UdDgQWBBQfpwL53IrkcS3gHLvw dBq+Geh/VDBWBgNVHREETzBNghlpZHAucGFpbmxlc3Mtc2VjdXJpdHkuY29thjBo dHRwczovL2lkcC5wYWlubGVzcy1zZWN1cml0eS5jb20vaWRwL3NoaWJib2xldGgw DQYJKoZIhvcNAQELBQADggEBAJHvbvh3fHGoXIV0ooIju0FFGgKvvUMqd1RL7jVV uzxH1XWMXK6wvvmlDa5+vSWVkD1amr+D2fqo+Kkyegqh880hl/Vgr5BJEormIZBb 8s6v1Azf/n50Kd6m5NErMT+c+eaXE5JvgLIUYEkjeA+fATpy7M/gCB21xb/Zt2OX Rn7bpj1Md0FQtMkwoDPx76m45rkLG+XCcHQydyBzc2G8GH2yxyEUEYwu2CljCyuq btelXBScoXImhOIbPLj4gl5z1YjBf9+kQz6keSoiS1hz+UAz2jkwd5N8lqSnZem9 lo/z0pnYq19CeeUvOBclHgP7ADCis7+ulg7ea8s4K3pcHpA= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.painless-security.com:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.painless-security.com:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.painless-security.com/idp/profile/Shibboleth/SSO"/> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.painless-security.com/idp/profile/SAML2/POST/SSO"/> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.painless-security.com/idp/profile/SAML2/POST-SimpleSign/SSO"/> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.painless-security.com/idp/profile/SAML2/Redirect/SSO"/> </md:IDPSSODescriptor> <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> <md:Extensions> <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">painless-security.com</shibmd:Scope> </md:Extensions> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> MIIDTzCCAjegAwIBAgIUQynxnQARWSAiT433dOEy4rgUWoswDQYJKoZIhvcNAQEL BQAwJDEiMCAGA1UEAwwZaWRwLnBhaW5sZXNzLXNlY3VyaXR5LmNvbTAeFw0xNTA2 MDkxOTUyNTlaFw0zNTA2MDkxOTUyNTlaMCQxIjAgBgNVBAMMGWlkcC5wYWlubGVz cy1zZWN1cml0eS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCl yldHUHv/seFmWguFN28U6c/zLp6+caSZ2GCC84uP0ffvHbd6TV/JUeo6h5RVjjPB beWDCUFbxpQEOtNokdOAdrmMu11AtW0u0oyppmbVhfd9uIXJxnAUmq/AHtpqngUj yKl8ddJEVTqeX3iBiBZSXRBGjed4ZLqh1wmWfgZDxJS44sK3panId4NdV5SzjgJ8 UtKuwtH9P84xvMMQjgLcmBtnRU+3Fwi50f5Q56tkJYJXC0rp8GMJkuX20aKrk9Xx R3E2g3m++A1Flai3k0YK7m4sEK7LMWIby7ALzzXgRyboZVYtYpYRILY/K0lXh9BL 3amhcIYQXRalaNYLqX8RAgMBAAGjeTB3MB0GA1UdDgQWBBRrLqZ+Xuc7a8no4h3R KqK0MCyXTzBWBgNVHREETzBNghlpZHAucGFpbmxlc3Mtc2VjdXJpdHkuY29thjBo dHRwczovL2lkcC5wYWlubGVzcy1zZWN1cml0eS5jb20vaWRwL3NoaWJib2xldGgw DQYJKoZIhvcNAQELBQADggEBADnukeJJTy53hb7t2zGznoX8RVJPUXU+YO47ZTnu fq1K6XRqN76baq0Xrie5sgbmryC9OQz087B5PRTD9e7Rb+87JaMfQzfLApb6D2I3 nWCI/CaywJ8T2J3+2MY78gjLcWezgigkt1KNDc4nkhSWrMdNlqQ7JbGHWSWiN89P TTe6Z8/NNhCjizcNqZcvmySgRlvIiTdhgLqXxmDAArizrLVq7HElbNoc0IW03LBX QTRNrAggfvMGf32MdIPPCfX9odu63lwZfx17sqPxvdQ2xq2ZL6iAXbC65rtlKTjW gcWNbUNwBO9L972+8/PKLZD/V0mGrrlgDpwI6rKuIlaQTzk= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> MIIDUDCCAjigAwIBAgIVAMxItCUJxrxuCYpH3cVsXJ/cZImsMA0GCSqGSIb3DQEB CwUAMCQxIjAgBgNVBAMMGWlkcC5wYWlubGVzcy1zZWN1cml0eS5jb20wHhcNMTUw NjA5MTk1MjU5WhcNMzUwNjA5MTk1MjU5WjAkMSIwIAYDVQQDDBlpZHAucGFpbmxl c3Mtc2VjdXJpdHkuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA lnefIU94qiDGGL7oLuD+dUsIfewPwXwQr2bX1NftMpJhlcVWmilKuXvR1zfjifYN f7JZwErLGQpGbooqRhtuyjPh0luxhlAQNhBQqa8aYAZCdghq5TKDikfOM2MCs/W6 msKM5sbjKpy+XUsAxWyd1tDYV2e7xI5SY1QBg9Vu1GF8W+FWPCtfEJAVCapkMzGR 9US+hU2xM6hSeOegb7CKt/6BcSK+pislffQSApmFtNhP2N3uUePbuZEskGF4qiy0 0fdpOxH1G+5iRLSOmGDvKIdzZ+TytQlqAhv+U9VJSaihCR5q2aWVwCkXr9UjcYg2 uCW6inEwc28lRkDq9uNt5QIDAQABo3kwdzAdBgNVHQ4EFgQUt6U4epZshqW30TRV w1XGB5DNUXYwVgYDVR0RBE8wTYIZaWRwLnBhaW5sZXNzLXNlY3VyaXR5LmNvbYYw aHR0cHM6Ly9pZHAucGFpbmxlc3Mtc2VjdXJpdHkuY29tL2lkcC9zaGliYm9sZXRo MA0GCSqGSIb3DQEBCwUAA4IBAQASs4pQKTc/wOFdPdVJjBtJjQQPNOfdkG1hFCWk JbQLaEQb98i4Mnt8mIZhEuYeCI5V7HHILE/z2qFTadLXT982B46r7pTSJVmjf0/Y Z8iB3JlP26HIb5MqA/KvXc13FsvvuPrPqjlvb5peh/UHqQcfTjid7ueDu+GpbWfc 5SImh98kP49WzKjMYSINsppQrcq1BuyRrmONLWCOV4+5oLjbRUjQLG7nJ+OQvJ3L Ty+Hnn8QuOxrkKH9RPPJuzZ4GnVrKnYk6ZLR61Ycf4bpoEi74GgjBVqmwXZCET1S x1XIIdYkfjFRbr2dxUIYAI+Hy5VavvRSXBWBDQChKZfE4rFt </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> MIIDTzCCAjegAwIBAgIUU5Vd+CG4Yi2i2PMHz783N0/fwl0wDQYJKoZIhvcNAQEL BQAwJDEiMCAGA1UEAwwZaWRwLnBhaW5sZXNzLXNlY3VyaXR5LmNvbTAeFw0xNTA2 MDkxOTUyNTlaFw0zNTA2MDkxOTUyNTlaMCQxIjAgBgNVBAMMGWlkcC5wYWlubGVz cy1zZWN1cml0eS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDY 9DxmRykS0nefXvs34sK+YDIfCHJr4Eo7i4I/eP3lt86Tnb5EjYknYA5OCEE//bSu H4kllbei0wFVasS4vCM9SScY9jjgCKTsB0wcNSlha1n6IHkSR2z1vAKzCjou6G2Z x8ivnVybPjnzBtAXWRQUUcbTptufm51/zA0h4xB/wgnK4X0iaEdZIAzSuKBtl5ze aJgCGT1roxumpHBCE7RY5k5M+QQWVhoOFN+b2KREtWzLGv0GDovaUk6EeUnkK4l3 MkGBFnzCElI+W+/0GGnga4XdTk1dX+C1cO3JZ4vmU3qXX8WJysGoltAM1oJwdBIg Fs9rjEUHFmJvYlWMzyzrAgMBAAGjeTB3MB0GA1UdDgQWBBQfpwL53IrkcS3gHLvw dBq+Geh/VDBWBgNVHREETzBNghlpZHAucGFpbmxlc3Mtc2VjdXJpdHkuY29thjBo dHRwczovL2lkcC5wYWlubGVzcy1zZWN1cml0eS5jb20vaWRwL3NoaWJib2xldGgw DQYJKoZIhvcNAQELBQADggEBAJHvbvh3fHGoXIV0ooIju0FFGgKvvUMqd1RL7jVV uzxH1XWMXK6wvvmlDa5+vSWVkD1amr+D2fqo+Kkyegqh880hl/Vgr5BJEormIZBb 8s6v1Azf/n50Kd6m5NErMT+c+eaXE5JvgLIUYEkjeA+fATpy7M/gCB21xb/Zt2OX Rn7bpj1Md0FQtMkwoDPx76m45rkLG+XCcHQydyBzc2G8GH2yxyEUEYwu2CljCyuq btelXBScoXImhOIbPLj4gl5z1YjBf9+kQz6keSoiS1hz+UAz2jkwd5N8lqSnZem9 lo/z0pnYq19CeeUvOBclHgP7ADCis7+ulg7ea8s4K3pcHpA= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.painless-security.com:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> </md:AttributeAuthorityDescriptor> <md:Organization> <md:OrganizationName xml:lang="en">Painless Security, LLC</md:OrganizationName> <md:OrganizationDisplayName xml:lang="en">Painless Security, LLC</md:OrganizationDisplayName> <md:OrganizationURL xml:lang="en">http://www.painless-security.com/</md:OrganizationURL> </md:Organization> <md:ContactPerson contactType="support"> <md:GivenName>Sam</md:GivenName> <md:SurName>Hartman</md:SurName> <md:EmailAddress>mailto:hartmans@painless-security.com</md:EmailAddress> </md:ContactPerson> <md:ContactPerson contactType="support"> <md:GivenName>Mark</md:GivenName> <md:SurName>Donnelly</md:SurName> <md:EmailAddress>mailto:mark@painless-security.com</md:EmailAddress> </md:ContactPerson> <md:ContactPerson contactType="technical"> <md:GivenName>Sam</md:GivenName> <md:SurName>Hartman</md:SurName> <md:EmailAddress>mailto:hartmans@painless-security.com</md:EmailAddress> </md:ContactPerson> <md:ContactPerson contactType="technical"> <md:GivenName>Mark</md:GivenName> <md:SurName>Donnelly</md:SurName> <md:EmailAddress>mailto:mark@painless-security.com</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>