<?xml version="1.0" encoding="UTF-8" standalone="no"?><!--
	U K   F E D E R A T I O N   M E T A D A T A

	Aggregate built 2026-04-07T15:00:29Z

	Aggregate valid for 21 days, until 2026-04-28T15:00:29Z
-->
<EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:elab="http://eduserv.org.uk/labels" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:shibmeta="urn:mace:shibboleth:metadata:1.0" xmlns:ukfedlabel="http://ukfederation.org.uk/2006/11/label" xmlns:wayf="http://sdss.ac.uk/2006/06/WAYF" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="uk20100825T175806Z" Name="http://ukfederation.org.uk" validUntil="2010-09-08T17:58:06Z" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata sstc-saml-schema-metadata-2.0.xsd   urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd   http://www.w3.org/2001/04/xmlenc# xenc-schema.xsd   http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
  <EntityDescriptor ID="uk003928" entityID="https://iris-iam.stfc.ac.uk/sp-entityID">
    <ContactPerson contactType="support">
      <EmailAddress>mailto:iris-iam-support@gridpp.rl.ac.uk</EmailAddress>
      <GivenName>IRIS-IAM Support</GivenName>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <EmailAddress>mailto:thomas.dack@stfc.ac.uk</EmailAddress>
      <GivenName>Thomas</GivenName>
      <SurName>Dack</SurName>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <EmailAddress>mailto:donald.chung@stfc.ac.uk</EmailAddress>
      <GivenName>Donald</GivenName>
      <SurName>Chung</SurName>
    </ContactPerson>
    <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <EmailAddress>mailto:thomas.dack@stfc.ac.uk</EmailAddress>
      <GivenName>Thomas</GivenName>
      <SurName>Dack</SurName>
    </ContactPerson>
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <mdrpi:RegistrationInfo registrationAuthority="http://ukfederation.org.uk" registrationInstant="2019-08-12T11:17:39Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </Extensions>
    <Organization>
      <OrganizationDisplayName xml:lang="en">Science and Technology Facilities Council</OrganizationDisplayName>
      <OrganizationName xml:lang="en">Science and Technology Facilities Council</OrganizationName>
      <OrganizationURL xml:lang="en">https://stfc.ukri.org/</OrganizationURL>
    </Organization>
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iris-iam.stfc.ac.uk/saml/SSO" index="0" isDefault="true" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iris-iam.stfc.ac.uk/saml/SSO" index="1" />
      <AttributeConsumingService index="0">
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false" />
        <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false" />
        <ServiceDescription xml:lang="en">The IRIS Identity and Access Management (IAM) is a central service used to manage identities and authorization policies for IRIS resources and services.</ServiceDescription>
        <ServiceName xml:lang="en">IRIS Identity and Access Management (IAM)</ServiceName>
      </AttributeConsumingService>
      <Extensions>
        <mdui:UIInfo>
          <mdui:Description xml:lang="en">The IRIS Identity and Access Management (IAM) is a central service used to manage identities and authorization policies for IRIS resources and services.</mdui:Description>
          <mdui:DisplayName xml:lang="en">IRIS Identity and Access Management (IAM)</mdui:DisplayName>
          <mdui:InformationURL xml:lang="en">https://iris-iam.stfc.ac.uk/privacypolicy/</mdui:InformationURL>
          <mdui:Logo height="150" width="150">https://www.iris.ac.uk/wp-content/uploads/2018/07/iris-circle-150x150.png</mdui:Logo>
          <mdui:PrivacyStatementURL xml:lang="en">https://iris-iam.stfc.ac.uk/privacypolicy/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>
  						MIIEIzCCAwugAwIBAgIUPlzr4lWp2HzSbnJOxw9H4tRMDIAwDQYJKoZIhvcNAQEL
  						BQAwgaAxCzAJBgNVBAYTAlVLMRQwEgYDVQQIDAtPeGZvcmRzaGlyZTEPMA0GA1UE
  						BwwGRGlkY290MQ0wCwYDVQQKDARTVEZDMQwwCgYDVQQLDANTQ0QxHDAaBgNVBAMM
  						E2lyaXMtaWFtLnN0ZmMuYWMudWsxLzAtBgkqhkiG9w0BCQEWIGlyaXMtaWFtLXN1
  						cHBvcnRAZ3JpZHBwLnJsLmFjLnVrMB4XDTI0MDcyNTEyNDIyNloXDTM0MDcyMzEy
  						NDIyNlowgaAxCzAJBgNVBAYTAlVLMRQwEgYDVQQIDAtPeGZvcmRzaGlyZTEPMA0G
  						A1UEBwwGRGlkY290MQ0wCwYDVQQKDARTVEZDMQwwCgYDVQQLDANTQ0QxHDAaBgNV
  						BAMME2lyaXMtaWFtLnN0ZmMuYWMudWsxLzAtBgkqhkiG9w0BCQEWIGlyaXMtaWFt
  						LXN1cHBvcnRAZ3JpZHBwLnJsLmFjLnVrMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
  						MIIBCgKCAQEA6z79wrMseIA2sNyVB95gG9/ilJD6/EVBYMTteZp6H9U+XgaS9FpU
  						f1HJM0YYEzsbJn9lsDaKQq8vQLjoW1d4NuHvLnf0HFdIaKO5Kwo0wcmg0F0ZLOI0
  						jUFRaW7Uiexi/7g5+IFn59+aUxc8eRPEVm/k7PJ+1eMzzujcFegzxyyZsOBtqQWG
  						rBRaOXhg08xe3PJKLFjbpQoEpMjw54Hdb0VOCapqDlUYotCv3Y2uhTcfglPribjO
  						1VhnG93ENo2k8gvRZYceIkMQhydq36kTEwR87fI6GGm5zaWQT+d84g9l1WjszrVJ
  						KLU6Hq1/aI7amzR1+zfEalUnJE9Hmn7QBwIDAQABo1MwUTAdBgNVHQ4EFgQUsGba
  						a2SOWTU6m6WjG+xz5S190AEwHwYDVR0jBBgwFoAUsGbaa2SOWTU6m6WjG+xz5S19
  						0AEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAcaDlC3N2CJEU
  						R3TBFa76FZgRiuxzwOc5vSlozmH8hcUCJ978wbKLN1CAredqhE3bvebWikJnGH0G
  						+T8GT2Itpp9fEAY47qAbHjG0o0tXN7ubbHzqrh4Xbh8j44OpcaqwfgLMymZq/aIr
  						8Li8n3n7ZrziDWiZh5Qauu6IyFJXGdp1K6+c6qEYK3OmDnvEe3UGWhCwXUhboqBs
  						lR8pVaN00DCrM9xQEWizJ2F/NvDg4GN2VKcXyjSGVXruLBY1OLYzs9NEzUB+re+x
  						P8y+Zexsw+AdZy0aXfhLWb5b4gxkzXyQCEjrhFI288VMhORir/wzbSFDW5/dFko5
  						JNq7dwxnzw==
  					</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc" />
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>
  						MIIEIzCCAwugAwIBAgIUPlzr4lWp2HzSbnJOxw9H4tRMDIAwDQYJKoZIhvcNAQEL
  						BQAwgaAxCzAJBgNVBAYTAlVLMRQwEgYDVQQIDAtPeGZvcmRzaGlyZTEPMA0GA1UE
  						BwwGRGlkY290MQ0wCwYDVQQKDARTVEZDMQwwCgYDVQQLDANTQ0QxHDAaBgNVBAMM
  						E2lyaXMtaWFtLnN0ZmMuYWMudWsxLzAtBgkqhkiG9w0BCQEWIGlyaXMtaWFtLXN1
  						cHBvcnRAZ3JpZHBwLnJsLmFjLnVrMB4XDTI0MDcyNTEyNDIyNloXDTM0MDcyMzEy
  						NDIyNlowgaAxCzAJBgNVBAYTAlVLMRQwEgYDVQQIDAtPeGZvcmRzaGlyZTEPMA0G
  						A1UEBwwGRGlkY290MQ0wCwYDVQQKDARTVEZDMQwwCgYDVQQLDANTQ0QxHDAaBgNV
  						BAMME2lyaXMtaWFtLnN0ZmMuYWMudWsxLzAtBgkqhkiG9w0BCQEWIGlyaXMtaWFt
  						LXN1cHBvcnRAZ3JpZHBwLnJsLmFjLnVrMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
  						MIIBCgKCAQEA6z79wrMseIA2sNyVB95gG9/ilJD6/EVBYMTteZp6H9U+XgaS9FpU
  						f1HJM0YYEzsbJn9lsDaKQq8vQLjoW1d4NuHvLnf0HFdIaKO5Kwo0wcmg0F0ZLOI0
  						jUFRaW7Uiexi/7g5+IFn59+aUxc8eRPEVm/k7PJ+1eMzzujcFegzxyyZsOBtqQWG
  						rBRaOXhg08xe3PJKLFjbpQoEpMjw54Hdb0VOCapqDlUYotCv3Y2uhTcfglPribjO
  						1VhnG93ENo2k8gvRZYceIkMQhydq36kTEwR87fI6GGm5zaWQT+d84g9l1WjszrVJ
  						KLU6Hq1/aI7amzR1+zfEalUnJE9Hmn7QBwIDAQABo1MwUTAdBgNVHQ4EFgQUsGba
  						a2SOWTU6m6WjG+xz5S190AEwHwYDVR0jBBgwFoAUsGbaa2SOWTU6m6WjG+xz5S19
  						0AEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAcaDlC3N2CJEU
  						R3TBFa76FZgRiuxzwOc5vSlozmH8hcUCJ978wbKLN1CAredqhE3bvebWikJnGH0G
  						+T8GT2Itpp9fEAY47qAbHjG0o0tXN7ubbHzqrh4Xbh8j44OpcaqwfgLMymZq/aIr
  						8Li8n3n7ZrziDWiZh5Qauu6IyFJXGdp1K6+c6qEYK3OmDnvEe3UGWhCwXUhboqBs
  						lR8pVaN00DCrM9xQEWizJ2F/NvDg4GN2VKcXyjSGVXruLBY1OLYzs9NEzUB+re+x
  						P8y+Zexsw+AdZy0aXfhLWb5b4gxkzXyQCEjrhFI288VMhORir/wzbSFDW5/dFko5
  						JNq7dwxnzw==
  					</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iris-iam.stfc.ac.uk/saml/SingleLogout" />
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iris-iam.stfc.ac.uk/saml/SingleLogout" />
    </SPSSODescriptor>
  </EntityDescriptor>
</EntitiesDescriptor>
