<?xml version="1.0" encoding="UTF-8" standalone="no"?><!--
	U K   F E D E R A T I O N   M E T A D A T A

	Aggregate built 2026-04-08T15:00:27Z

	Aggregate valid for 21 days, until 2026-04-29T15:00:27Z
-->
<EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:elab="http://eduserv.org.uk/labels" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:shibmeta="urn:mace:shibboleth:metadata:1.0" xmlns:ukfedlabel="http://ukfederation.org.uk/2006/11/label" xmlns:wayf="http://sdss.ac.uk/2006/06/WAYF" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="uk20100825T175806Z" Name="http://ukfederation.org.uk" validUntil="2010-09-08T17:58:06Z" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata sstc-saml-schema-metadata-2.0.xsd   urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd   http://www.w3.org/2001/04/xmlenc# xenc-schema.xsd   http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
  <EntityDescriptor ID="uk004076" entityID="https://auth.verifid.ac.uk/federation-manager/shibboleth">
    <ContactPerson contactType="support">
      <EmailAddress>mailto:trustandidentity@jisc.ac.uk</EmailAddress>
      <GivenName>Jisc Trust &amp; Identity</GivenName>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <EmailAddress>mailto:trustandidentity@jisc.ac.uk</EmailAddress>
      <GivenName>Jisc Trust &amp; Identity</GivenName>
    </ContactPerson>
    <Extensions>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224" />
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" />
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1" />
      <mdrpi:RegistrationInfo registrationAuthority="http://ukfederation.org.uk" registrationInstant="2020-09-10T11:31:27Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </Extensions>
    <Organization>
      <OrganizationDisplayName xml:lang="en">Jisc Services Limited</OrganizationDisplayName>
      <OrganizationName xml:lang="en">Jisc Services Limited</OrganizationName>
      <OrganizationURL xml:lang="en">http://www.jisc.ac.uk/</OrganizationURL>
    </Organization>
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.verifid.ac.uk/federation-manager/Shibboleth.sso/SAML2/POST" index="1" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://manager.verifid.ac.uk/federation-manager/Shibboleth.sso/SAML2/POST" index="2" />
      <AttributeConsumingService index="1" isDefault="false">
        <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <ServiceName xml:lang="en">Federation Manager</ServiceName>
      </AttributeConsumingService>
      <Extensions>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.verifid.ac.uk/federation-manager/Shibboleth.sso/Login" index="1" />
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://manager.verifid.ac.uk/federation-manager/Shibboleth.sso/Login" index="2" />
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://auth.verifid.ac.uk/federation-manager/Shibboleth.sso/Login" />
        <mdui:UIInfo>
          <mdui:Description xml:lang="en">Tooling for managing VerifID</mdui:Description>
          <mdui:DisplayName xml:lang="en">Federation Manager</mdui:DisplayName>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm" />
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm" />
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc" />
        <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep" />
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p" />
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>
  						MIIEGjCCAoKgAwIBAgIJAPsuYrKDFIUBMA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV
  						BAMMEmF1dGgudmVyaWZpZC5hYy51azAgFw0yMDA4MjYwMzI2MjNaGA8yMTIwMDgw
  						MjAzMjYyM1owHTEbMBkGA1UEAwwSYXV0aC52ZXJpZmlkLmFjLnVrMIIBojANBgkq
  						hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA0m3gNdsNxGtMjQmQgUX/TJWZZ7o3JmXR
  						KJR041CQ8ioOwW20TFQRfQjCOq41TgR8zBI6Dves6znPI9gjeJi7I+4TIc+EuZ4Y
  						dPm3bqlOgNa1SD4lTjVTnSjspPzPA5XSbW3xz6oP1QVEHnun+j0UZG1dxdl8HduH
  						FLhr2y3Snsp7jovGiY8j7rdz8WGd2bRuGp9QVsa4P7vDtAeflwRuGnAvkWPmDOYH
  						rnR8dCeMiGheA0Lk0F6hCRDcL3lkR7Acibbe0ACmDXJUaTPpnh4WRbC5idRNtSv8
  						WQkKy8NPLueyDSz32JOEtZiQva5E5dYFgYQlc9HL2g1nM39fHZ0grxBCyGnWL5cK
  						BBL0gAvWiKoj8o8mSqjs97ngad3wCzcJnRmmdU4ArkbDSXZF0xEQbKVgSqhyYOYY
  						qf5MxiPIDRBIQ4cCeoLn9fguiIu9rupoZdAg0ZbX3+gZ4cZmUwqGSCn95jEGAOEJ
  						SvXY7oVWXow9pdWZfQy2eBXUp7DOECf/AgMBAAGjWzBZMFcGA1UdEQRQME6CEmF1
  						dGgudmVyaWZpZC5hYy51a4Y4aHR0cHM6Ly9hdXRoLnZlcmlmaWQuYWMudWsvZmVk
  						ZXJhdGlvbi1tYW5hZ2VyL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBAD9/
  						gjJy3EWB73W5LFtXrPqp10MafqR71LV6NBnO89i5dBy75m6SY9gJYtvyvE8RC2MQ
  						6MK3Uq8uyEvSfszeS3dzM0hF2OqLZmcuyo4jZrx9X6gz61Pg5GFUWrFJ18QSZMMN
  						gKToNlZnrzgoRBvhwouFntjy4mw7cEaQMf0r7wndHZZgmpIPoBMLwMWGBUDR5QPv
  						mtDEvRR3F1KZb326W+RGN6vkEKB38Xj7819mhb8OfqlGuFWoQ6gRxbcE/LRLacFA
  						zniaRIn05r/2C/Wj+/2U/dj1qXOb2ueSpzCZrAZ3wA+TUrXeoWFHZrrl7paXpPLO
  						B/pkAmYLseLth2+uDLCVjHwpx1P/WvJ5A+hAZcOKb7iG41f82/Q3ST04AVUIbae4
  						Ubmnpfaq1CFeyaFsn2m/w+JmNWOLC+QhGS1uZB2ICx+ht4WxRAydYt91NoBVqdIf
  						IvrLlNHIHwvto5vV5Sxuv8HBE/hauF8DQELR+I+gR+qjYtqFPCS/00cAim2UcQ==
  					</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
    </SPSSODescriptor>
  </EntityDescriptor>
</EntitiesDescriptor>
