<?xml version="1.0" encoding="UTF-8" standalone="no"?><!--
	U K   F E D E R A T I O N   M E T A D A T A

	Aggregate built 2026-04-06T15:00:25Z

	Aggregate valid for 21 days, until 2026-04-27T15:00:25Z
-->
<EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:elab="http://eduserv.org.uk/labels" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:shibmeta="urn:mace:shibboleth:metadata:1.0" xmlns:ukfedlabel="http://ukfederation.org.uk/2006/11/label" xmlns:wayf="http://sdss.ac.uk/2006/06/WAYF" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="uk20100825T175806Z" Name="http://ukfederation.org.uk" validUntil="2010-09-08T17:58:06Z" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata sstc-saml-schema-metadata-2.0.xsd   urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd   http://www.w3.org/2001/04/xmlenc# xenc-schema.xsd   http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
  <EntityDescriptor ID="uk003890" entityID="https://kaizenep.com/sp/shibboleth">
    <ContactPerson contactType="support">
      <EmailAddress>mailto:vojtech@risr.global</EmailAddress>
      <GivenName>Vojtech</GivenName>
      <SurName>Stepan</SurName>
    </ContactPerson>
    <ContactPerson contactType="support">
      <EmailAddress>mailto:matous@risr.global</EmailAddress>
      <GivenName>Matous</GivenName>
      <SurName>Hora</SurName>
    </ContactPerson>
    <ContactPerson contactType="support">
      <EmailAddress>mailto:david@risr.global</EmailAddress>
      <GivenName>David</GivenName>
      <SurName>Fairbank</SurName>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <EmailAddress>mailto:vojtech@risr.global</EmailAddress>
      <GivenName>Vojtech</GivenName>
      <SurName>Stepan</SurName>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <EmailAddress>mailto:matous@risr.global</EmailAddress>
      <GivenName>Matous</GivenName>
      <SurName>Hora</SurName>
    </ContactPerson>
    <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <EmailAddress>mailto:keean@risr.global</EmailAddress>
      <GivenName>Keean</GivenName>
      <SurName>Schupke</SurName>
    </ContactPerson>
    <Extensions>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1" />
      <mdrpi:RegistrationInfo registrationAuthority="http://ukfederation.org.uk" registrationInstant="2019-05-10T09:18:27Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </Extensions>
    <Organization>
      <OrganizationDisplayName xml:lang="en">Fry-IT Limited</OrganizationDisplayName>
      <OrganizationName xml:lang="en">Fry-IT Limited</OrganizationName>
      <OrganizationURL xml:lang="en">https://www.fry-it.com/</OrganizationURL>
    </Organization>
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kaizenep.com/Shibboleth.sso/Artifact/SOAP" index="1" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kaizenep.com/Shibboleth.sso/SAML2/POST" index="1" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kaizenep.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kaizenep.com/Shibboleth.sso/SAML2/Artifact" index="3" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kaizenep.com/Shibboleth.sso/SAML2/ECP" index="4" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.kaizenep.com/Shibboleth.sso/SAML2/POST" index="5" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.kaizenep.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="6" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auth.kaizenep.com/Shibboleth.sso/SAML2/ECP" index="7" />
      <AttributeConsumingService index="0">
        <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" />
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" />
        <ServiceName xml:lang="en">risr/advance</ServiceName>
      </AttributeConsumingService>
      <Extensions>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kaizenep.com/Shibboleth.sso/Login" />
        <mdui:UIInfo>
          <mdui:Description xml:lang="en">risr/advance</mdui:Description>
          <mdui:DisplayName xml:lang="en">risr/advance</mdui:DisplayName>
          <mdui:Logo height="51" width="236">https://fry-it.com/wp-content/uploads/2017/01/kaizen-logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm" />
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm" />
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p" />
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>
  						MIIC6zCCAdOgAwIBAgIJANDSZ8pQiXJuMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
  						BAMTDGthaXplbmVwLmNvbTAeFw0xNTEwMjkyMzI3MzJaFw0yNTEwMjYyMzI3MzJa
  						MBcxFTATBgNVBAMTDGthaXplbmVwLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEP
  						ADCCAQoCggEBALc941jz1px/ZBQZxps6KGOC7kGDVkXVkBRaWfeGf7dpxCqje2BR
  						hO34nacSmPkpREVZqnxsH7qrSj2K3NOwLVKSw6EQmJ0FeFJCqqOsswVEh1Xc95/V
  						l6p8baBVrNIXLWrlHxKyqEC1IA0yB9EOuClCU9kPX+bzMo7/wb3yZJckCGEn/T3p
  						WmLPCJ0hzNOnFaAMRSaUYPZZwNX3dq4/dXXQmFLBjR3JwtSoWsfZ9vgTV9+6zDZd
  						FnL1ar8Eiypi78QO9xPNhq5iOO1QIMYa8i4uugJy638YS6rHuDfIsyjicMd82pNI
  						BEUbfsIFTvDrKJfDuL4VjJQlSa2RECrNpL0CAwEAAaM6MDgwFwYDVR0RBBAwDoIM
  						a2FpemVuZXAuY29tMB0GA1UdDgQWBBR6kET1CLq6SJOSkLV2ZyexDoPwFDANBgkq
  						hkiG9w0BAQUFAAOCAQEAqYJvbh/BdEzUVqT6YD8Xh4Z3QwdazrvvDeZEaF4tNSiy
  						0k2EJ3ibwGQzfJSzI2fCZVDf66NjBveyoDzRjGa7I5KTVkjxdAYHJEaGa3z9nDyI
  						57h0Ve0PSeR8gqN+Ev6WtyVIjh2ifHPmHga5geQfBBOJTPEJzLfey4nUHhvIjTkC
  						b9qTAzlTB/q+RsATJ5ejJ+3QW20LiyULFnNWHoh1NbJyp5K20BsVH3R8o5vai74+
  						/Kqad/tV6iljmPTesrm3voOkOss5dukWHrjuOCQ8nFkRuJmP1D+tbkfYD2j6himK
  						tEQcXcbTKL88U8r8+xy9dmcDFYjyQplDxSUOmqnB/g==
  					</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kaizenep.com/Shibboleth.sso/SLO/SOAP" />
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kaizenep.com/Shibboleth.sso/SLO/Redirect" />
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kaizenep.com/Shibboleth.sso/SLO/POST" />
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kaizenep.com/Shibboleth.sso/SLO/Artifact" />
    </SPSSODescriptor>
  </EntityDescriptor>
</EntitiesDescriptor>
