<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sso-epos.some.ox.ac.uk/shibboleth">
  <!--
		This is a "SC EPOS2" Shibboleth SP for the University of Oxford.
	-->
  <Extensions>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
    <DigestMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    <SigningMethod xmlns="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://ukfederation.org.uk" registrationInstant="2014-02-27T11:20:50Z">
      <mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy>
    </mdrpi:RegistrationInfo>
  </Extensions>
  <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
    <Extensions>
      <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/Login"/>
    </Extensions>
    <KeyDescriptor>
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>
						MIIDNDCCAhygAwIBAgIJAJHKGp/+izijMA0GCSqGSIb3DQEBBQUAMCExHzAdBgNV
						BAMTFnNzby1lcG9zLnNvbWUub3guYWMudWswHhcNMTQwMjI2MTUwODM5WhcNMjQw
						MjI0MTUwODM5WjAhMR8wHQYDVQQDExZzc28tZXBvcy5zb21lLm94LmFjLnVrMIIB
						IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxK24wmjmNTuudz0HDi8xGw1x
						t5v0jh301LqY7sjLKlxd+PoD+YdgdCLQR5gigy3mj/nTSdeAsPYFkhb679SUggS3
						PmD2R0byhHL2e+MgRyG9euiq/e0/JNtKuRugccJFVKHSgr6bXARP4LGpN8H7oou1
						S/I3jQwIvh1GdP/MkolhdgWsts4jRV5c2/m6CzrCvqHFcoyrN0ZUkTP2npNwqAPt
						HvpQncjgUrtNm4v5beC3iCKzvn0q1Img4449MZrQUpAkwONMTb5lFn1emq48f6DF
						cxylRZwY1u3z63k7YOm2mjvvW8axUoH8Mjktq42ZK29scNBzIWv3liHTU/KXIQID
						AQABo28wbTBMBgNVHREERTBDghZzc28tZXBvcy5zb21lLm94LmFjLnVrhilodHRw
						czovL3Nzby1lcG9zLnNvbWUub3guYWMudWsvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
						SgHanJ//YKaw4iZ1IaEUS0q/rRUwDQYJKoZIhvcNAQEFBQADggEBALBM1ASGlxEl
						sJALpwFfz987l1SDYa3fBLXCV9N194MgwtNeQyjoAM2VzWfbIUlCoVJuR8km6j47
						xbZpJpRMKH7pV83RtI//+3Wm9r4R+TYP7woWbnzKgj2wEFM2ce6jkJ+vwcFlS4ES
						W57SDZqlL4C6XqJNRFVAQTFdE0UoBvsSiKGXR8HAm+4MUjSNjrqq3TYqq/Ks/PGh
						xrZT5L+b5jajEf81Ch6WYBBGyFb4GaIw+8aYwzAyS0z+aG9oTJIjehdGnVF/unlc
						OnC87ksYf/icPcU2jtOfL+D3C48ePJ37jKehg9TyDwzy0r2riBc6WrycWWAmyeyh
						FcgVm9Zjv/8=
					</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
      <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
    </KeyDescriptor>
    <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/Artifact/SOAP" index="1"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SLO/SOAP"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SLO/Redirect"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SLO/POST"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SLO/Artifact"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SAML2/POST" index="1"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SAML2/Artifact" index="3"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SAML2/ECP" index="4"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SAML/POST" index="5"/>
    <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso-epos.some.ox.ac.uk/Shibboleth.sso/SAML/Artifact" index="6"/>
  </SPSSODescriptor>
  <Organization>
    <OrganizationName xml:lang="en">University of Oxford</OrganizationName>
    <OrganizationDisplayName xml:lang="en">University of Oxford SC EPOS2</OrganizationDisplayName>
    <OrganizationURL xml:lang="en">http://www.some.ox.ac.uk/</OrganizationURL>
  </Organization>
  <ContactPerson contactType="support">
    <GivenName>Somerville College IT Support</GivenName>
    <EmailAddress>mailto:it.support@some.ox.ac.uk</EmailAddress>
  </ContactPerson>
  <ContactPerson contactType="technical">
    <GivenName>Somerville College IT Support</GivenName>
    <EmailAddress>mailto:it.support@some.ox.ac.uk</EmailAddress>
  </ContactPerson>
</EntityDescriptor>