<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<EntityDescriptor entityID="https://idbroker.swisscom.com:443/secure" xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:query="urn:oasis:names:tc:SAML:metadata:ext:query" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xenc="http://www.w3.org/2001/04/xmlenc#" xmlns:xenc11="http://www.w3.org/2009/xmlenc11#" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:x509qry="urn:oasis:names:tc:SAML:metadata:X509:query" xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
    <SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
            <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p">
                <ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
            </EncryptionMethod>
            <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc">
                <xenc:KeySize>128</xenc:KeySize>
            </EncryptionMethod>
        </KeyDescriptor>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp" ResponseLocation="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp" ResponseLocation="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp"/>
        <ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idbroker.swisscom.com:443/secure/SPMniRedirect/metaAlias/idbroker/sp" ResponseLocation="https://idbroker.swisscom.com:443/secure/SPMniRedirect/metaAlias/idbroker/sp"/>
        <ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idbroker.swisscom.com:443/secure/SPMniPOST/metaAlias/idbroker/sp" ResponseLocation="https://idbroker.swisscom.com:443/secure/SPMniPOST/metaAlias/idbroker/sp"/>
        <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
        <AssertionConsumerService index="0" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idbroker.swisscom.com:443/secure/AuthConsumer/metaAlias/idbroker/sp"/>
        <AssertionConsumerService index="1" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idbroker.swisscom.com:443/secure/AuthConsumer/metaAlias/idbroker/sp"/>
        <AssertionConsumerService index="2" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idbroker.swisscom.com:443/secure/AuthConsumer/ECP/metaAlias/idbroker/sp"/>
    </SPSSODescriptor>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                <ds:X509Data>
                    <ds:X509Certificate>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                    </ds:X509Certificate>
                </ds:X509Data>
            </ds:KeyInfo>
            <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p">
                <ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
            </EncryptionMethod>
            <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc">
                <xenc:KeySize>128</xenc:KeySize>
            </EncryptionMethod>
        </KeyDescriptor>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp" ResponseLocation="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp" ResponseLocation="https://idbroker.swisscom.com:443/secure/scs/jsp/slo.jsp"/>
        <ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idbroker.swisscom.com:443/secure/IDPMniRedirect/metaAlias/idbroker/idp" ResponseLocation="https://idbroker.swisscom.com:443/secure/IDPMniRedirect/metaAlias/idbroker/idp"/>
        <ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idbroker.swisscom.com:443/secure/IDPMniPOST/metaAlias/idbroker/idp" ResponseLocation="https://idbroker.swisscom.com:443/secure/IDPMniPOST/metaAlias/idbroker/idp"/>
        <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idbroker.swisscom.com:443/secure/SSORedirect/metaAlias/idbroker/idp"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idbroker.swisscom.com:443/secure/SSOPOST/metaAlias/idbroker/idp"/>
        <AssertionIDRequestService Binding="urn:oasis:names:tc:SAML:2.0:bindings:URI" Location="https://idbroker.swisscom.com:443/secure/AIDReqUri/IDPRole/metaAlias/idbroker/idp"/>
        <saml:Attribute Name="surname"/>
        <saml:Attribute Name="givenname"/>
        <saml:Attribute Name="preferredLanguage"/>
        <saml:Attribute Name="emailaddress"/>
        <saml:Attribute Name="lastModificationDate"/>
        <saml:Attribute Name="cmaScn"/>
        <saml:Attribute Name="userGUID" use="optional"/>
        <saml:Attribute Name="authLevel" use="optional"/>
        <saml:Attribute Name="upn" use="optional"/>
        <saml:Attribute Name="companyIndex" use="optional"/>
        <saml:Attribute Name="country" use="optional"/>
        <saml:Attribute Name="postalcode" use="optional"/>
        <saml:Attribute Name="title" use="optional"/>
        <saml:Attribute Name="locality" use="optional"/>
        <saml:Attribute Name="streetaddress" use="optional"/>
        <saml:Attribute Name="mobilephone" use="optional"/>
        <saml:Attribute Name="userId" use="optional"/>
    </IDPSSODescriptor>
</EntityDescriptor>

