<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0"
                   xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idp.udk-berlin.de/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">udk-berlin.de</shibmd:Scope>
            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">The Berlin University of the Arts</mdui:DisplayName>
                <mdui:DisplayName xml:lang="de">Universität der Künste Berlin</mdui:DisplayName>
                <mdui:Description xml:lang="en">Identity Provider of the Berlin University of the Arts</mdui:Description>
                <mdui:Description xml:lang="de">Identity Provider der Universität der Künste Berlin</mdui:Description>
                <mdui:Logo height="16" width="16">https://idp.udk-berlin.de/idp/images/favicon.ico</mdui:Logo>
                <mdui:Logo height="80" width="80">https://idp.udk-berlin.de/idp/images/logo.png</mdui:Logo>
            </mdui:UIInfo>
        </Extensions>

        <KeyDescriptor>
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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=
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

	<ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.udk-berlin.de/idp/profile/SAML1/SO
AP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.udk-berlin.de/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.udk-berlin.de/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.udk-berlin.de/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.udk-berlin.de/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.udk-berlin.de/idp/profile/SAML2/SOAP/SLO"/>

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.udk-berlin.de/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.udk-berlin.de/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.udk-berlin.de/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.udk-berlin.de/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.udk-berlin.de/idp/profile/SAML2/SOAP/ECP"/>

    </IDPSSODescriptor>

    <!-- Protocol-Support für SAML2-Queries im AA-Descriptor aktivieren -->
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">udk-berlin.de</shibmd:Scope>
        </Extensions>

        <KeyDescriptor>
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>
MIIFOzCCAyOgAwIBAgIVALlVX6xBa7xyRpbQlHeJTQaMPP1EMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWlkcC51ZGstYmVybGluLmRlMB4XDTI1MDkxMDA5MTAx
M1oXDTI4MDkxMDA5MTAxM1owHDEaMBgGA1UEAwwRaWRwLnVkay1iZXJsaW4uZGUw
ggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCoXqCsgrYCkpYdwNM5qdkl
/xrMUauDQVEKMG2ffspww/VANyKjqk0zL/hchi0Sr6GzJAHshA0Lc+U963M8y0Zn
L9PBKdGcDGMS1jb4ZVBChCX8eUrYhDpZAzdPjH1lpuWQ8lLN+g1tFfz0L4yJWZwU
9FT2orca6mfCiw/qspGX0Ns6NcYzQiH9ChINtZWWIkBlaB87iMbi1MdLEKtLbuoN
/XY0KS4EpS2uHN4yRcz+FNcaw1pz4ElU/10EyJlyhdkty4YfuMUF0Fg3QCKVMV2S
JdzOEcvGi7GwaHC028GI3c+yghh+ZoZYdNCJXjBE3KFW9wD6Ud57arUxoCtLSPmZ
C1WrIAV12TOhdjcaaK/yMSZ5DpnQiYq5Ixx5Tox9pxnbr8oSRHyGxhYWV4nuexBB
Ea9zYGtpOw4EpmbX/Bt1js2pE9oltrlXESI9mtgkUVJLcg3zAqfG/HzAYgeaEZD+
3yW5gHP1wGmT1EwX9/1uJpRXG6bDaGEJD7g0HoxwM5KnVfLbxnyh8zwa/eFZ1V6R
TGoQ5b7hOR/HnBwkiXMV7ou1Y8ZjAZgy5ivnsRmuG2/ZhDeggXsy4oyJYgKlPuLU
zc7FWp/cfq1bH9LwB+D9Yu9+95KGE6Zy0ZQv71taf3X6cfkjLm/p9aUZg4vMdZ7+
iqEYLCBRHyquglg5GKarqwIDAQABo3QwcjAdBgNVHQ4EFgQUW7IzAl/Uii2C1hcz
NB8L1ZsZazswRgYDVR0RBD8wPYIRaWRwLnVkay1iZXJsaW4uZGWGKGh0dHBzOi8v
aWRwLnVkay1iZXJsaW4uZGUvaWRwL3NoaWJib2xldGgwCQYDVR0TBAIwADANBgkq
hkiG9w0BAQsFAAOCAgEAesQXXVpl8eCLN3dVU2e0PPSvXo6bPD1EH4sW9Yr+i1oc
+/WuYx2NYIM4Gzj+9lH3V9JbCQ8nocTxFKVRvS1rmD2uH1RLmLoH40BIjKtGvUeZ
TllZKoX/EuOTvmwUbmO9Qb1JQoeR+Vb6uyXoBXf1NXCYSSfQOzBElSLIubIu6dIk
NB2aXeUqoqBWSvqd3pgBiq84MNhllm2uS2sr+mz6NW1ZxAUWfTqU6N83yRUOwv0W
vkGBufrkK6LDOPvziyvdPROh3IiFdtGbr0UpVy3JWYoqjBT9xxk42zb7ynwilogR
K2MMB38ZWPPyDWJN6sHvX9ZR/1pPCFZexglmOkj8TORH873Y0Tn0sI2Ar/DdqF6W
Vnaspp/hNnGj+TpBUueedNJaDz4+PgoTddKMK+qKyDHRjlNrAfHpxWm3F6l9IWHE
zS8isQnr/NXfFp6+N9F5jG+m65tgmweFZGapBr+W+42rSwSOn+2HQbLJ+4vfgwYP
0F/2+ssJefG5KpoXnRECgFRC8kgqM60fUUKI2ykiSDjV0wfLPu7mdpmx/A0yKbq6
D3RftarqO2PUByv1SgdxBx9AVVnzplvgpHAfUkePLvUAwsuMu7xffuR7fk6/Y1Lb
ckk1RK/yZumekIUwW3DeJBcPGcBzqw/BKp9bC+ZmvLvxjkcxJZ6jGSjFIYHlEZ4=
                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.udk-berlin.de/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP-binding" Location="https://idp.udk-berlin.de/idp/profile/SAML1/SOAP/AttributeQuery"/>

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
