<?xml version="1.0" encoding="UTF-8" standalone="no"?><!--
	U K   F E D E R A T I O N   M E T A D A T A

	Aggregate built 2026-04-08T15:00:27Z

	Aggregate valid for 21 days, until 2026-04-29T15:00:27Z
-->
<EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:elab="http://eduserv.org.uk/labels" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:shibmeta="urn:mace:shibboleth:metadata:1.0" xmlns:ukfedlabel="http://ukfederation.org.uk/2006/11/label" xmlns:wayf="http://sdss.ac.uk/2006/06/WAYF" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="uk20100825T175806Z" Name="http://ukfederation.org.uk" validUntil="2010-09-08T17:58:06Z" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata sstc-saml-schema-metadata-2.0.xsd   urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd   http://www.w3.org/2001/04/xmlenc# xenc-schema.xsd   http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
  <EntityDescriptor ID="uk004262" entityID="https://ska-iam.stfc.ac.uk/sp-entity-ID">
    <ContactPerson contactType="support">
      <EmailAddress>mailto:thomas.dack@stfc.ac.uk</EmailAddress>
      <GivenName>Thomas</GivenName>
      <SurName>Dack</SurName>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <EmailAddress>mailto:thomas.dack@stfc.ac.uk</EmailAddress>
      <GivenName>Thomas</GivenName>
      <SurName>Dack</SurName>
    </ContactPerson>
    <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <EmailAddress>mailto:thomas.dack@stfc.ac.uk</EmailAddress>
      <GivenName>Thomas</GivenName>
      <SurName>Dack</SurName>
    </ContactPerson>
    <Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://ukfederation.org.uk" registrationInstant="2022-08-03T13:29:21Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </Extensions>
    <Organization>
      <OrganizationDisplayName xml:lang="en">Science and Technology Facilities Council</OrganizationDisplayName>
      <OrganizationName xml:lang="en">Science and Technology Facilities Council</OrganizationName>
      <OrganizationURL xml:lang="en">https://www.ukri.org/councils/stfc/</OrganizationURL>
    </Organization>
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ska-iam.stfc.ac.uk/saml/SSO" index="0" isDefault="true" />
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ska-iam.stfc.ac.uk/saml/SSO" index="1" />
      <AttributeConsumingService index="0">
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true" />
        <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false" />
        <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false" />
        <ServiceDescription xml:lang="en">The SKA Identity and Access Manager (IAM) is a central service used to manage identities and authorization policies for SKA resources and services.</ServiceDescription>
        <ServiceName xml:lang="en">Square Kilometre Array Identity and Access Manager (IAM)</ServiceName>
      </AttributeConsumingService>
      <Extensions>
        <mdui:UIInfo>
          <mdui:Description xml:lang="en">The SKA Identity and Access Manager (IAM) is a central service used to manage identities and authorization policies for SKA resources and services.</mdui:Description>
          <mdui:DisplayName xml:lang="en">Square Kilometre Array Identity and Access Manager (IAM)</mdui:DisplayName>
          <mdui:InformationURL xml:lang="en">https://www.skao.int/en/science-users/ska-regional-centres</mdui:InformationURL>
          <mdui:Logo height="150" width="150">https://www.skatelescope.org/wp-content/uploads/2013/11/ska_logo_box_web.full.jpg</mdui:Logo>
          <mdui:PrivacyStatementURL xml:lang="en">https://ska-iam.stfc.ac.uk/privacypolicy/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>
  						MIIEGzCCAwOgAwIBAgIJAIiLhgw7jO+fMA0GCSqGSIb3DQEBCwUAMIGjMQswCQYD
  						VQQGEwJVSzEUMBIGA1UECAwLT3hmb3Jkc2hpcmUxDzANBgNVBAcMBkRpZGNvdDES
  						MBAGA1UECgwJU1RGQyBVS1JJMQwwCgYDVQQLDANTQ0QxGzAZBgNVBAMMEnNrYS1p
  						YW0uc3RmYy5hYy51azEuMCwGCSqGSIb3DQEJARYfc2thLWlhbS1zdXBwb3J0QGdy
  						aWRwcC5ybC5hYy51azAeFw0yMjA3MjYxNTEwMjZaFw0yNzA3MjUxNTEwMjZaMIGj
  						MQswCQYDVQQGEwJVSzEUMBIGA1UECAwLT3hmb3Jkc2hpcmUxDzANBgNVBAcMBkRp
  						ZGNvdDESMBAGA1UECgwJU1RGQyBVS1JJMQwwCgYDVQQLDANTQ0QxGzAZBgNVBAMM
  						EnNrYS1pYW0uc3RmYy5hYy51azEuMCwGCSqGSIb3DQEJARYfc2thLWlhbS1zdXBw
  						b3J0QGdyaWRwcC5ybC5hYy51azCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
  						ggEBALprU6BU+NXA0/bzOW+PQcexofQ2Ox8kM4FHlV5aneHyYQtStSsnPTW5NTr1
  						GVhvFNWrZKMe9/KRwPVOqrZCtCp2K6i+l/3lwU6qZ90UoW3m2PLlKGk6gTLONPc5
  						Xhn0fnhbjNp2kyo9SzhNwGh9vAIVZpfm/lP1V1uOmXVsSZF6ZhB8qR0vqW3+rSlJ
  						ohj4A2DnE2VdGlNLiGzJ1nlJsb7acEHlfCiTEGguym58JyvR1gQbsfv3SczWQryg
  						mk+ylU5T6wkrHZNruQ5J7pbSeG1XuFmfO1BLtL9czl3TGshCEelWOwm3pTWx+0RH
  						VJnS2wuPLvxe3Rf9I3uhFl1Y7ncCAwEAAaNQME4wHQYDVR0OBBYEFMJPTbl+ODPj
  						av59Th43O4jikYHeMB8GA1UdIwQYMBaAFMJPTbl+ODPjav59Th43O4jikYHeMAwG
  						A1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBACgd+Vt3ufPM+3HE2iQiLeQR
  						INlGjo3+gtojIPQSOTKEOMBh/Vc/NIYeaf9rW4oKbsDzqMUQS+G7XhH9sCTGjImO
  						LD8Zpu4hCTJngzAvuLEh1cqAR44bl+yC96GbBIxEGILtIPsJnA+z00CkR6RtniCS
  						qjPf7aKOftrt/i5EDSw6yYYpY5CaG9+giKlPzRL1KpZQtygPgAJARio09/vUc7fA
  						tSfHqzBhS0891texycoNSGrqL4PmsK0L5dieVOoWhuro8gxa755iyxXvqKYQWuo8
  						oiA6iTm14kPN9xdeI4hqwaZoDhxcorI75rpGprQwd5yqe9XtPpHAdFSXPOO8lrU=
  					</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc" />
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>
  						MIIEGzCCAwOgAwIBAgIJAIiLhgw7jO+fMA0GCSqGSIb3DQEBCwUAMIGjMQswCQYD
  						VQQGEwJVSzEUMBIGA1UECAwLT3hmb3Jkc2hpcmUxDzANBgNVBAcMBkRpZGNvdDES
  						MBAGA1UECgwJU1RGQyBVS1JJMQwwCgYDVQQLDANTQ0QxGzAZBgNVBAMMEnNrYS1p
  						YW0uc3RmYy5hYy51azEuMCwGCSqGSIb3DQEJARYfc2thLWlhbS1zdXBwb3J0QGdy
  						aWRwcC5ybC5hYy51azAeFw0yMjA3MjYxNTEwMjZaFw0yNzA3MjUxNTEwMjZaMIGj
  						MQswCQYDVQQGEwJVSzEUMBIGA1UECAwLT3hmb3Jkc2hpcmUxDzANBgNVBAcMBkRp
  						ZGNvdDESMBAGA1UECgwJU1RGQyBVS1JJMQwwCgYDVQQLDANTQ0QxGzAZBgNVBAMM
  						EnNrYS1pYW0uc3RmYy5hYy51azEuMCwGCSqGSIb3DQEJARYfc2thLWlhbS1zdXBw
  						b3J0QGdyaWRwcC5ybC5hYy51azCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
  						ggEBALprU6BU+NXA0/bzOW+PQcexofQ2Ox8kM4FHlV5aneHyYQtStSsnPTW5NTr1
  						GVhvFNWrZKMe9/KRwPVOqrZCtCp2K6i+l/3lwU6qZ90UoW3m2PLlKGk6gTLONPc5
  						Xhn0fnhbjNp2kyo9SzhNwGh9vAIVZpfm/lP1V1uOmXVsSZF6ZhB8qR0vqW3+rSlJ
  						ohj4A2DnE2VdGlNLiGzJ1nlJsb7acEHlfCiTEGguym58JyvR1gQbsfv3SczWQryg
  						mk+ylU5T6wkrHZNruQ5J7pbSeG1XuFmfO1BLtL9czl3TGshCEelWOwm3pTWx+0RH
  						VJnS2wuPLvxe3Rf9I3uhFl1Y7ncCAwEAAaNQME4wHQYDVR0OBBYEFMJPTbl+ODPj
  						av59Th43O4jikYHeMB8GA1UdIwQYMBaAFMJPTbl+ODPjav59Th43O4jikYHeMAwG
  						A1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBACgd+Vt3ufPM+3HE2iQiLeQR
  						INlGjo3+gtojIPQSOTKEOMBh/Vc/NIYeaf9rW4oKbsDzqMUQS+G7XhH9sCTGjImO
  						LD8Zpu4hCTJngzAvuLEh1cqAR44bl+yC96GbBIxEGILtIPsJnA+z00CkR6RtniCS
  						qjPf7aKOftrt/i5EDSw6yYYpY5CaG9+giKlPzRL1KpZQtygPgAJARio09/vUc7fA
  						tSfHqzBhS0891texycoNSGrqL4PmsK0L5dieVOoWhuro8gxa755iyxXvqKYQWuo8
  						oiA6iTm14kPN9xdeI4hqwaZoDhxcorI75rpGprQwd5yqe9XtPpHAdFSXPOO8lrU=
  					</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ska-iam.stfc.ac.uk/saml/SingleLogout" />
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ska-iam.stfc.ac.uk/saml/SingleLogout" />
    </SPSSODescriptor>
  </EntityDescriptor>
</EntitiesDescriptor>
