<?xml version="1.0" encoding="UTF-8"?>

<!-- Do not edit manualy! This file is managed by Ansible. -->

<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" entityID="https://idp.ntm.cz/idp/shibboleth">

  <Extensions>
    <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
      <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category-support">
        <!-- Research and Scholarship -->
        <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
      </saml:Attribute>
    </mdattr:EntityAttributes>
  </Extensions>

  <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <Extensions>
      <shibmd:Scope regexp="false">ntm.cz</shibmd:Scope>
      <mdui:UIInfo>
        <mdui:DisplayName xml:lang="en">National technical museum</mdui:DisplayName>
        <mdui:DisplayName xml:lang="cs">Národní technické muzeum</mdui:DisplayName>
        <mdui:Description xml:lang="en">The Identity Provider for National technical museum.</mdui:Description>
        <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance Národního technického muzea.</mdui:Description>
        <mdui:InformationURL xml:lang="en">https://www.ntm.cz/en</mdui:InformationURL>
        <mdui:InformationURL xml:lang="cs">https://www.ntm.cz</mdui:InformationURL>
        <mdui:Logo height="160" width="160">https://idp.ntm.cz/idp/images/idp.ntm.cz.png</mdui:Logo>
      </mdui:UIInfo>
    </Extensions>

    <KeyDescriptor use="signing">
      <ds:KeyInfo>
        <ds:X509Data>
          <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUeGXM1OqAiF/SD+azYj8nf7zltgwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </KeyDescriptor>
    <KeyDescriptor use="encryption">
      <ds:KeyInfo>
        <ds:X509Data>
          <ds:X509Certificate>MIIEEzCCAnugAwIBAgIURAeqcsRhgCNBDa80KRIzYiRiAGswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </KeyDescriptor>

    <!--
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ntm.cz/idp/profile/SAML2/POST/SLO"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ntm.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ntm.cz/idp/profile/SAML2/Redirect/SLO"/>
    -->

    <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.ntm.cz/idp/profile/SAML2/Redirect/SSO"/>
    <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.ntm.cz/idp/profile/SAML2/POST/SSO"/>
    <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.ntm.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>

  </IDPSSODescriptor>

  <Organization>
    <OrganizationName xml:lang="en">National technical museum</OrganizationName>
    <OrganizationName xml:lang="cs">Národní technické muzeum</OrganizationName>
    <OrganizationDisplayName xml:lang="en">National technical museum</OrganizationDisplayName>
    <OrganizationDisplayName xml:lang="cs">Národní technické muzeum</OrganizationDisplayName>
    <OrganizationURL xml:lang="en">https://www.ntm.cz/en</OrganizationURL>
    <OrganizationURL xml:lang="cs">https://www.ntm.cz</OrganizationURL>
  </Organization>

  <ContactPerson contactType="technical">
    <GivenName>Jan</GivenName>
    <SurName>Oppolzer</SurName>
    <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
  </ContactPerson>

</EntityDescriptor>
