<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://cas.conncoll.edu/idp/shibboleth">
    <IDPSSODescriptor errorURL="https://cas.conncoll.edu/cas/idp/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
        <Extensions>
            <shibmd:Scope regexp="false">conncoll.edu</shibmd:Scope>

            <!--
            <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
                <mdui:DisplayName xml:lang="en">CAS</mdui:DisplayName>
                <mdui:Description xml:lang="en">Apereo CAS</mdui:Description>
                <mdui:InformationURL xml:lang="en">https://apereo.org/projects/cas</mdui:InformationURL>
                <mdui:PrivacyStatementURL xml:lang="en">https://apereo.org/projects/cas</mdui:PrivacyStatementURL>
                <mdui:Logo height="60" width="1119" xml:lang="en">https://apereo.github.io/cas/images/cas_logo.png</mdui:Logo>
            </mdui:UIInfo>
            -->
            
        </Extensions>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>MIIDODCCAiCgAwIBAgIVAPUEeM0abFXGCIdEOlAW+9wmzXf4MA0GCSqGSIb3DQEB
BQUAMB4xHDAaBgNVBAMTE2Nhc3RzdC5jb25uY29sbC5lZHUwHhcNMTMxMDI4MTYw
NzU1WhcNMzMxMDI4MTYwNzU1WjAeMRwwGgYDVQQDExNjYXN0c3QuY29ubmNvbGwu
ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoIFDuBMCiM4YbPZC
m3ezj4xircODZvGjqjy06237XEsGT8oKZBbciJKyuNzASg6FropxbyX3i+4/6+E3
lgxgs1hqqzHGiS6B5R0ilQBkIZHdCNhNXFp65380XwTQswn+9FrmZsrOVGcxWfnu
QbS28Tp69D3mq8CFjQ+L3LUt3CgzX3SlvdeH8WCX7fsJisN6VkAg/LuNPO/wIUhW
maInVIPBfMLgmT2pWSAXVanmGhbpmriOa/PMvw57VQX1jPAktbfNQvwcVmwkOS+e
qLP4zmKDx09AQui5X+tAShB/Fu0GhcsrSBiK5MbtjuQcOSH1R8uZV/9/Ku2le3oK
Ui7jfQIDAQABo20wazBKBgNVHREEQzBBghNjYXN0c3QuY29ubmNvbGwuZWR1hipo
dHRwczovL2Nhc3RzdC5jb25uY29sbC5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0O
BBYEFM0pR2d0wY/alMsBiZDCxRt34lzpMA0GCSqGSIb3DQEBBQUAA4IBAQBVfUXC
cNA6+xYP28WbWxZmrIvWZvDRyHWU/GiM4fOj+pSV1SfuQ/CBUI/3BDTOe+kxjMM5
A5gbTLSemQz0hg435PNUfqfbjjfWyBeNmEnyIWgbH+onJJfxfclDRPsmkfNpzZfq
+NGIlWBQqg4TiqP6eWteaLpR6JTrZvNHByQayM+5gc3BbFCEAbp5mxy5ZTARYRed
x6203y+SNmiQJbanlMD+Zc7Dy5XmEMoGZjxNqa+9hj1O7oD2wyU4aGciOIkX6txH
4e/vvoM57//T3rGxWRAUJwD5uYM0Dmkj2UhVU9xPPTsHIEoN38w2FWQi1UhTM2mN
Zw7lDmCUxzGbtrzP</ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>MIIDCTCCAfGgAwIBAgIJAOptEGxQjUboMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <!--
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" 
                                   Location="https://cas.conncoll.edu/cas/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        -->

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
                             Location="https://cas.conncoll.edu/cas/idp/profile/SAML2/POST/SLO"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
                             Location="https://cas.conncoll.edu/cas/idp/profile/SAML2/Redirect/SLO" />

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
                             Location="https://cas.conncoll.edu/cas/idp/profile/SAML2/POST/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign"
                             Location="https://cas.conncoll.edu/cas/idp/profile/SAML2/POST-SimpleSign/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
                             Location="https://cas.conncoll.edu/cas/idp/profile/SAML2/Redirect/SSO"/>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP"
                             Location="https://cas.conncoll.edu/cas/idp/profile/SAML2/SOAP/ECP"/>

    </IDPSSODescriptor>

    <!--
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
        <Extensions>
            <shibmd:Scope regexp="false">conncoll.edu</shibmd:Scope>
        </Extensions>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>${context.SigningKey}</ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.conncoll.edu/cas/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.conncoll.edu/cas/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    -->
    
    <!--
    <Organization>
        <OrganizationName xml:lang="en">Institution Name</OrganizationName>
        <OrganizationDisplayName xml:lang="en">Institution DisplayName</OrganizationDisplayName>
        <OrganizationURL xml:lang="en">URL</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
        <GivenName>John Smith</GivenName>
        <EmailAddress>jsmith@example.org</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
        <GivenName>John Smith</GivenName>
        <EmailAddress>jsmith@example.org</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="support">
        <GivenName>IT Services Support</GivenName>
        <EmailAddress>support@example.org</EmailAddress>
    </ContactPerson>
    -->
</EntityDescriptor>
