<?xml version="1.0" encoding="utf-8" standalone="no"?><EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="eduid" Name="https://eduid.cz/metadata" validUntil="2026-07-09T23:53:01Z" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd"><ds:Signature>
<ds:SignedInfo>
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<ds:Reference URI="#eduid">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<ds:DigestValue>aUt5eC4ySE3FYsux1Jq9PfIT7bfpQB+eNjBtv6BWRFs=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>
23QuRwr4EYBgipd/IchpWosdlCD6ew1XYT7teUQjFHWuT6oxGh914rktWLct6UCA/2on6UJktouC
fuXdP0JqoqYYdH7jp3huL9zEpIFZb13grvOFzd3MzzHGQ4TzY4TqR8b2lwoToL12G/eivzanWs+2
dob6cTLoEZ4G/+gnk3k6bdXB+x2cNOZLZXPMibp2LXa/c0DVb68qIO3yhkZ2twp9DdMMWszx3rI/
ZFXaafi5uCVI9ikJhSf8qn5Maoj9AWvFRecJ6hf44lbP3T1D09Pc2sjwVqUVS7ZyJ1yAwXf6fmdf
4MvuajtzH2zQH0ZBX/0d0FvaMmJcaIVlnfilug==
</ds:SignatureValue>
<ds:KeyInfo>
<ds:KeyValue>
<ds:RSAKeyValue>
<ds:Modulus>
/VoPIzznnB5h7aQhLDaiZ0B12a+mwCiF1BQ2YXikagIuD7zKOnJVpJd7IzB26pnPiuB55BpteOOQ
nccCZ5h7Ch3J2Kz/2atE4j+W8nYUaZ2t3PmAl9GpRZcKKQ5tz5fTXf3wajB144oQrB2GTnDOVGNs
Vv8fsJYU1941UlDv1ioaty42ntJvX9/UewzgMDHGg2PtvvQZSMfw8+/M/yzTlRG84cS2sbduT8wO
08NXDH2dOy3hEesNjqEAUvJGWOWjkSzor91UbBfSx+J9Dhh8eBsW/ELC/Px9cXHH1fmsHqOBPbGU
RixedOjv/gOeu3UFnYuG+TqHbZ3focxH59nCNQ==
</ds:Modulus>
<ds:Exponent>AQAB</ds:Exponent>
</ds:RSAKeyValue>
</ds:KeyValue>
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</ds:Signature>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ada.tul.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">A°D°A</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">A°D°A</mdui:DisplayName>
          <mdui:Description xml:lang="en">Creative software Virtual futorologist A°D°A</mdui:Description>
          <mdui:Description xml:lang="cs">Kreativní software Virtuální futuroložka A°D°A</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ada.tul.cz/about.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ada.tul.cz/about.html</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://ada.tul.cz/img/icon.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ada.tul.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ada.tul.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ada.tul.cz</ds:KeyName>
          <ds:KeyName>https://ada.tul.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ada.tul.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDjCCAnagAwIBAgITb3tcc6mvRAktxzKuQGuAA3Gd7jANBgkqhkiG9w0BAQsF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ada.tul.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ada.tul.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ada.tul.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ada.tul.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ada.tul.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">A°D°A</md:ServiceName>
        <md:ServiceName xml:lang="cs">A°D°A</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Creative software Virtual futorologist A°D°A</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Kreativní software Virtuální futuroložka A°D°A</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Technical University of Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Srb</md:SurName>
      <md:EmailAddress>mailto:radek.srb@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://adapt.cjv.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>adapt.cjv.muni.cz</ds:KeyName>
          <ds:KeyName>www.adapt.cjv.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=adapt.cjv.muni.cz,O=Masarykova univerzita,L=Brno,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGrTCCBZWgAwIBAgIQD0IHAuAqIh/OV2K5hR8U+DANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Libor</md:GivenName>
      <md:SurName>Šťěpánek</md:SurName>
      <md:EmailAddress>cjv@cjv.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Kurowski</md:SurName>
      <md:EmailAddress>technici@cjv.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://agata.suz.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://agata.suz.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://agata.suz.cvut.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Czech Technical University in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">České vysoké učení technické v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Canteens of CTU in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Menzy ČVUT v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.suz.cvut.cz/en/the-facilities-administration-department-of-the-czech-technical-university-in-prague</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.suz.cvut.cz/sprava-ucelovych-zarizeni-cvut</mdui:InformationURL>
          <mdui:Logo height="40" width="53">https://idp2.civ.cvut.cz/cvutid/logo_cvut_40pix.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>agata.suz.cvut.cz</ds:KeyName>
          <ds:KeyName>https://agata.suz.cvut.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=agata.suz.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUW9fhpX3oGKA8iHpystxeRc+EWWswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://agata.suz.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cvut.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Kaňovský</md:SurName>
      <md:EmailAddress>mailto:admin@suz.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://agkm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">agkm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Archiepiscopal Gymnasium in Kromeriz - Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Arcibiskupské gymnázium v Kroměříži - Knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Archiepiscopal Gymnasium in Kromeriz - Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře knihovny Arcibiskupského gymnázia v Kroměříži</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.agkm.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.agkm.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://agkm.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agkm.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://agkm.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agkm.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://agkm.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Archiepiscopal Gymnasium in Kromeriz - Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Arcibiskupské gymnázium v Kroměříži - Knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Archiepiscopal Gymnasium in Kromeriz - Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Arcibiskupské gymnázium v Kroměříži - Knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.agkm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.agkm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ais-ap1tst.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Testovací verze AIS Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University AIS testing</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Testovací verze AIS Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Charles University AIS testing.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ais-ap1tst.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ais-ap1tst.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDZzCCAk+gAwIBAgIJALFAcvH7jDouMA0GCSqGSIb3DQEBCwUAMEoxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ais.udauk.cuni.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Archivní informační systém Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Archival Information System of Charles University</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Informační systém Archivu UK pro výběr, správu, uložení, zpracování digitálních a analogových archiválií.</mdui:Description>
          <mdui:Description xml:lang="en">Information system of Archive of Charles University for appraisal, management, storage, and processing of both digital and analog archival materials.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://udauk.cuni.cz/ARCH-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://udauk.cuni.cz/ARCHEN-1.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ais.udauk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ais.udauk.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDXzCCAkegAwIBAgIJAJAUxOGbNq2rMA0GCSqGSIb3DQEBCwUAMEYxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://albert.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>albert.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=albert.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUIafqdqe/m4+/POItwitS1PP0U5EwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>albert.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=albert.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUQbELimriAzXdPaO3QdwXMiMkxmIwDQYJKoZIhvcNAQEL
BQAwHjEcMBoGA1UEAxMTYWxiZXJ0LnZtLmNlc25ldC5jejAeFw0yNDA3MjQwODEx
MjZaFw0zNDA3MjIwODExMjZaMB4xHDAaBgNVBAMTE2FsYmVydC52bS5jZXNuZXQu
Y3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDAyywizqbbOsCpB95d
QXOwVrC2WjY8UzwRWfwGdwoEv6ljPF/fyl45BCUDHMgdj82cLWQF4IrvqSHf63cg
7rMi+cP9QucuLM4UgywhcFpz/RO/2GrdBOXy8EWmGrj5i5qSGaJgRFmWaXhq9+y+
f7dfmzt+jP/4zKNzf+cRZZ8GQt9D4c/BptvWw4iEF+lgVe8gQLUS91c67IHiCAJg
ZQ/8uwWy2IfYE+8CIURMYWdMiYOqmfjGzjTaGc7MT5qTAP636rEM0xZQBa1eO1EH
I5RREEdvMxrz9WOU9226/BtVQAwhRMbfYCwiDVnD2xiJzFzKd/JLu5fEyoqBEjKu
cxb/NmeWMRFcMqr2xw1Hl7C3Ga3tti3QhnYHOZjSAdCUjilxLUnuONc96Ik1oQ6E
M+NgQdD+2Vt/GtN6COaaNVi49iKK3mTHPIBt9G0IwUmCYeBYSGSIl1cD4u6Fmw85
DsknWMe6pCakjDCE+thooytgU3GlCYf6PDaeHZUEDRVGL+MCAwEAAaNBMD8wHgYD
VR0RBBcwFYITYWxiZXJ0LnZtLmNlc25ldC5jejAdBgNVHQ4EFgQUNIUWZ/2nS/Ce
gMtbzxbABjQO0AEwDQYJKoZIhvcNAQELBQADggGBABQOyqJJj3aoQt2lc2rSbQxB
BaU3h5kndyi0d05bgboCj0NMfOAVYs4OzgqCYyu/jG0sXA9lN9JIVWetLcdtXxg6
Yhj99bz0Zu+jJFIdPprD6RplEo7Q+n17SjW6QEHVbGdKDJu4g+x4jP/vW6M9Vyxb
dA2Fv1Cbw6vkfZ4JzzwiykTVfumk6ODIlNgXXBssRW4469kfojI/WvXa6TAosyFk
GWoNvIHkl/n1Kjl8dDOXv0I/45hLa/R5s0fOJanwwz1BHKBvA5Gqn46CYgkvZM6Y
9qq/x4b6DuOXt7du4UkN7sjLev4bxztlU/hRIg3rGKIYC5Cqx1GkYYGSSn3g/dL/
SNFWM1l03LC6t5ZUypGTbidmhqGUXFq5H8UHLVFszUafZE/5ZadD+v9BVZfJkvRC
Ewr9fuxhZ4bhlsCjvsRlH7WF/EgJ9Zan+A66B0U+qB7Ph8tjdHnP23gI08+ujufv
2EbCPhELbXgiwBkP9mlrn1nRV0UyvHpIpQejVhHCCw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://alchemist.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Alchymista</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Alchemist</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Interní build server a systém pro podporu projektů</mdui:Description>
          <mdui:Description xml:lang="en">Internal build server and project support system.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://alchemist.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://alchemist.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://alchemist.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://alchemist.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>alchemist.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://alchemist.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=alchemist.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIJANHGhmneRF1oMA0GCSqGSIb3DQEBBQUAMB4xHDAaBgNV
BAMTE2FsY2hlbWlzdC5jZXNuZXQuY3owHhcNMTcwNTI5MDkzMDUwWhcNNDcwNTIy
MDkzMDUwWjAeMRwwGgYDVQQDExNhbGNoZW1pc3QuY2VzbmV0LmN6MIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmZ941ACW2ky4k9CCvPT7HJDCD3KAtNsF
wMuUpAPOZL9JOgZ8K8vEYaS3P2IPsXoZhs7fu3ZJ/tqpHNNTc2nhpJJoNzP7toh7
Ye9dLtqUbs3d0Jwyv7hAw6z9gUzxcKmKkBSfdM64kbPvkNW70khLy7MZZ4EIRSfG
PUJmIxgrX6Jy5/AQ3zjlwRstXXFKdN4JJsfbyv5Qd1DzpJT+0x3JZcfxg30TmPbT
nQr54euLjfRZ8g2B2b/RT9YeAduEWBtFJdP4z+XVcNAkUtNeeVo+dxm0a9Cc/sDY
Met6Yoz4tJ5zeqh/P8+7JHe20cpYQxDC+ca2/0YQ3rMtsugAYH1gyQIDAQABo2kw
ZzBGBgNVHREEPzA9ghNhbGNoZW1pc3QuY2VzbmV0LmN6hiZodHRwczovL2FsY2hl
bWlzdC5jZXNuZXQuY3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUtgRm5lY81XRvGjoB
4i6+JgFzj7EwDQYJKoZIhvcNAQEFBQADggEBADDgYqmmuP9DxF1m1qCaI1V7ALIc
qA9C3k8aPlLI3AkHURrHVa6neyvgyNo6FRlDuCzQC1fUDBxYvvHjQHLVwtZMmjN4
8JhxUNBDssE9VuoP/NQ4737ZZ5yPooG/eQXZ9+4qqS5FDkAG6Hs8FcADzQ+uMoNk
60q/+H6CdIcBS9Umd8lQEVdOVLwF86a3XiFYKrHzZJ0GImJhICgvpzencxtc50I/
z8nbBim3q7mt1M+U7cuA0BPQUln1BlPKqOFHUTRd8n5nP2PsKzL3f+qNQ/ZSn8SJ
Y5yZrp46khEM1OiyFs6bfB4qLbH5rfbVeZuN460yswv7GXwyj6MifofsbeY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://alchemist.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.ten.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, Síť národního výzkumu pro ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET, NREN for Czech republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Mach</md:SurName>
      <md:EmailAddress>mailto:jan.mach@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kacha</md:SurName>
      <md:EmailAddress>mailto:pavel.kacha@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://aleph.svkhk.cz/idp/shibboleth">
    <md:Extensions xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">svkhk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Research Library in Hradec Králové</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for patrons and staff of the Research Library in Hradec Králové</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro čtenáře a zaměstance Studijní a vědecké knihovny v Hradci Králové</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.svkhk.cz/Uvodni-stranka.aspx?lang=en-US</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.svkhk.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="26">https://aleph.svkhk.cz/logo/logo_40.png</mdui:Logo>
          <mdui:Logo height="90" width="60">https://aleph.svkhk.cz/logo/logo_90.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAJSFrXye/a/LtnzGg52l6Vv2aZ3AMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUEJlCdI6O+jqGU7O1e2RkV53yqJIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUHR8h609/l5ZaqJVRDkOVK6KQWccwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOYWxlcGguc3ZraGsuY3owHhcNMTUwODI4MTUwODAyWhcN
MzUwODI4MTUwODAyWjAZMRcwFQYDVQQDDA5hbGVwaC5zdmtoay5jejCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBALNWuZY/XJorTyIeONFA6lhfBhhSOaYE
2wtO0KNMlfqY0HPTDn2uPd2F06411wACW12RwyGErZRluedwaZeVdJfy05x3bXsu
oGDm1o/JI0hLiH82BupYWAZsMhv6XBiv9F8DC+nKDIOKETElJ7mc80fTLMNPH9Bm
ICvlXCNKdghfPZdAstZM4YpobGFk/0ZCjU5vWCew8ZOUTsMYtp52A4sGHpieGLXk
0gejaQK8hG70K9GeaDaKm0UAE5780qM13NFBiBg+gIFYUXLxkVZsn7+hEA6YDewu
Yq4pKdiFI2M7Aj+m4UucRzO237txeznDKKmSnrrgRG9UV7c9vHkhfpUCAwEAAaNj
MGEwHQYDVR0OBBYEFM27r6xs8sW5D9dl0IVjah5S9ZZAMEAGA1UdEQQ5MDeCDmFs
ZXBoLnN2a2hrLmN6hiVodHRwczovL2FsZXBoLnN2a2hrLmN6L2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQAfwgwA9/oEx1jnywTpE+I+7omw9RN1McfA
EN+vJDuGt0Vz8TcjRHUOGxwXHtbw4/aOkK48Drg/kIKY7dghuNeGJgd31bNsgvBj
Zdecvn1G8TpRlTZXV71+EliO49zpNX8KSimobPkB+oHSMkt94HTljmka11yogiJi
ycotZyPq8kGjGrFRh0InfIDfRGd9zD0v698moP8FzNlvckl3jL7tzT95QAA9dO21
MpM8yEEOmngDz+D/LJeNJVT5cbvIZ3gpfm5yX16PyvFMXr8g9NMf/OhAznAHrL90
xDF332t8sZ0yvjOOmIVyk2NtktyqGSqA7pRQRUZvzMHw15kyMzEM</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aleph.svkhk.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aleph.svkhk.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aleph.svkhk.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aleph.svkhk.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aleph.svkhk.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aleph.svkhk.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aleph.svkhk.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aleph.svkhk.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aleph.svkhk.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aleph.svkhk.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">svkhk.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAJSFrXye/a/LtnzGg52l6Vv2aZ3AMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmFsZXBoLnN2a2hrLmN6MB4XDTE1MDgyODE1MDgwMloX
DTM1MDgyODE1MDgwMlowGTEXMBUGA1UEAwwOYWxlcGguc3ZraGsuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDk2YhfJ9dmOhNkAn3Bdr2L+ElDZ9Xl
RQQIo+v18FD3ML99ZqS9y0NHGihDe3i8YTJjTYqV+Rg1aV8g7DdivWrqWJle23yf
WRQLm+gl407hJ/XVyo5GfsafwIWdW/2gYq0y0wyFTROZsvzM5fYnBap1dpvf0UD7
ewq5uCcQdSOtQ6hHajJnzn60uWG11sMAiQeaoeo7GdDuvpOH8oVuEMscvZtOHpv8
c+USYcBMZ2n5H6Cp8/GqmIwJzHHrWbpSTwtcj0Qk/fdDHF/bKkukCpFJZmfF9/9O
oqN7xD872Fg65ZTVnNt6VcN336aZkXwPsjndtmZlGWyhLNUu3SsIUJvFAgMBAAGj
YzBhMB0GA1UdDgQWBBSy9TOWhcL1moqEDeJaemfu/clcyTBABgNVHREEOTA3gg5h
bGVwaC5zdmtoay5jeoYlaHR0cHM6Ly9hbGVwaC5zdmtoay5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAAWjWUcrdsnu4coYaqXOPM89MOHqhmuel
Jv955SMGEVDr9nyyy9+ql8xbQbOdHjAJRwu0VgIPlk87mdikX0+H6Xk1c6cp4ud+
BgQHJMtZObkAh2+fkkCxiqBUkYGPb+5GqvUBkzZbmO3nfQQ8GbxpelYse1tMeiaJ
gKBxdaXrBBD2s33bOOZ89IMuDQeUszifVCxeofaS9B5N+wplX8J0svGM0ggxCJoM
x/KI5F8aCCKoDnAD/I8tYu0fTuIwg04I9WwduYCoTxxzAVQ6Ta1QwqDRqRib8QvY
6/ioV7XeMqtOSAqWrOwCClb0vDVOjUnKJTSU9O8E5/eBCYzfVrVKdA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUEJlCdI6O+jqGU7O1e2RkV53yqJIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUHR8h609/l5ZaqJVRDkOVK6KQWccwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aleph.svkhk.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aleph.svkhk.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</OrganizationName>
      <OrganizationName xml:lang="en">The Research Library in Hradec Králové</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">The Research Library in Hradec Králové</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.svkhk.cz/Uvodni-stranka.aspx?lang=en-US</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.svkhk.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Sklenář</SurName>
      <EmailAddress>mailto:petr.sklenar@svkhk.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://aleph.uzei.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">uzei.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Agricultural Economics and Information</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav zemědělské ekonomiky a informací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for staff of the Institute of Agricultural Economics and Information and patrons of the Antonín Švehla Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚZEI a čtenáře Knihovny Antonína Švehly</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.iaei.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.uzei.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="260">https://aleph.uzei.cz/idp/images/logo_40.png</mdui:Logo>
          <mdui:Logo height="90" width="586">https://aleph.uzei.cz/idp/images/logo_90.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUMpwNIIDjijUQqZdCRG3vxvraaf4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUYTl6w2OhZbXKvt/aecmkgEjA2AUwDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLaWRwLnV6ZWkuY3owHhcNMjEwNjE5MTQzNjUxWhcNNDEw
NjE5MTQzNjUxWjAWMRQwEgYDVQQDDAtpZHAudXplaS5jejCCAaIwDQYJKoZIhvcN
AQEBBQADggGPADCCAYoCggGBAIIwAeUgJAAfgox1+dYZYKhQXEv6Yco9AiT2J/vH
n52iQPAsf3UaAb6W0I6MfJPGZTbYp4apkWTK8g2ZmQUd2h/HupkS2Psw1qLMHpgw
6NpNrhlJw8jxOewepHx0LztIXwo+eFKbPKvjTMVEDvPqokkf8HR3x109trQed3r9
v/r0Mm8Wn//I7+xQxAjdN6nqaLaeI9u7ZxiW842WPVqZxDR7yJS/crvHqZmNQHpL
0bag+ZyLu5gmBp1ubZMOxPwqKphSt5DtXUurBNLbTpeBk93iQebliwoTFLhG+CQg
k7ie3ttXsx8xrbTvXRHOH274frLcJmqmA7Pl+JgEl3MdoT0q4ECZQ22ZyrZN02mw
TbYbLLrZdqqrMcxk7bJ9/JOkRdjLTVv9xcP67FEhmMHD1HnlMlKIVjZh+rZ1URTQ
rHxkn+l2KOa/HWEUonTF5sex5PmUTzmsQzbiVjzgccnfYrKc8F8RPL0Aqo2pXPVm
thxDDlEEYjOrd3yDahE1L+YiUQIDAQABo10wWzAdBgNVHQ4EFgQUFue3S7aKy0dK
/9fQUT5vZL6oZJ4wOgYDVR0RBDMwMYILaWRwLnV6ZWkuY3qGImh0dHBzOi8vaWRw
LnV6ZWkuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBAHnTLGsq
HMxuMZW2NDU22yayWCikBvuzT8G86/7NSkRmdnvhdjvKCh4GF1o2tpjr6XMI0cBE
Dt2fpYKRyCrh5qVXr5GbROQ9kkIIRK2uCQnor2sEnj+MO98aVcf4jrBBnl+aePcm
qhpH88YS6mlUrpJSaT2iSjM3DCoQAw6b/CbkzaGuQxT1Rmx5PkKLybuSWRia3vBs
7fVDPM3Vz/XmO63l3jgpK3Dksy3nITxaZZrSZi8sk+4Gj/C/4fmIrn45NV4+Wk0y
Tbs79XSzyPkMJBohXCrSNFzN6ixZ6wTUE/KYtgKBncH8n+VeBuivmeCNFWg9fh5d
YKkKFfZgFieeSn9t8DlcSNnPWOnwke+/nEfW2TJsP4m4J7hr4QtLGk8Q+Yjpal3e
IQWLHsLK7Quys2h9j3yRVXWtMm7mXWrM7TnlJKTbp3aRZ4MvsYK3J85i7IN6FjQ/
eLokEsWT1y7tlLQQNCL53s+qkGC4O30pQhMKzg4X3bxLbWhwiPVejapsgg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAL+AeLtCYDyJR4E1Qn+sIvdhsuSqMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uzei.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uzei.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uzei.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uzei.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Ústav zemědělské ekonomiky a informací</OrganizationName>
      <OrganizationName xml:lang="en">Institute of Agricultural Economics and Information</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Ústav zemědělské ekonomiky a informací</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Institute of Agricultural Economics and Information</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.iaei.cz</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.uzei.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Chorváth</SurName>
      <EmailAddress>mailto:Chorvath.Petr@uzei.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://aleph20.knihovna-pardubice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-pardubice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Library in Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna v Pardubicích</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for patrons and staff of the Regional Library in Pardubice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro čtenáře a zaměstance Krajské knihovny v Pardubicích</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kkpce.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kkpce.cz/</mdui:InformationURL>
          <mdui:Logo height="50" width="156">https://kkpce.idp.tritius.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkpce.idp.tritius.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkpce.idp.tritius.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkpce.idp.tritius.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkpce.idp.tritius.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Library in Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna v Pardubicích</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Library in Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna v Pardubicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kkpce.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kkpce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Gazárek</md:SurName>
      <md:EmailAddress>mailto:gazarek@tritius.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://anketa.uhk.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">anketa.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">anketa.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://anketa.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://anketa.uhk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://anketa.uhk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-prod02.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-prod02.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBjCCAm6gAwIBAgIJAM/tASqVr/8gMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.uhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Hep</md:SurName>
      <md:EmailAddress>mailto:frantisek.hep@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://anketa.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">anketa.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">anketa.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://anketa.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://anketa.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://anketa.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-prod02.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-prod02.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBjCCAm6gAwIBAgIJAM/tASqVr/8gMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://anketa.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://anketa.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Hep</md:SurName>
      <md:EmailAddress>mailto:frantisek.hep@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://ansible-eduid.inovatika.dev/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital library of the Regional Library in Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius - Digital Library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Krajské knihovny v Pardubicích</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kfbz.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>rDXFJ6-tm_wkPLNikui322wl1dQRjxDpRf35WzFqlr8</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="en">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Kfbz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Kfbz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.kfbz.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.kfbz.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Goláň</md:SurName>
      <md:EmailAddress>mailto:r.golan@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Barbora</md:GivenName>
      <md:SurName>Horáková</md:SurName>
      <md:EmailAddress>mailto:b.horakova@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://aperture.ceitec.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Laboratory information management system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Systém správy informací o laboratoři</mdui:DisplayName>
          <mdui:Description xml:lang="en">Access to laboratory information management system</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup k systému správy informací o laboratoři</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ceitec.eu/cryo-electron-microscopy-and-tomography-core-facility/cf94</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ceitec.cz/cryo-electron-microscopy-and-tomography-core-facility/cf94</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>aperture.ceitec.muni.czg</ds:KeyName>
          <ds:KeyName>https://aperture.ceitec.muni.cz//shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=aperture.ceitec.muni.czg</ds:X509SubjectName>
            <ds:X509Certificate>MIIERzCCAq+gAwIBAgIUa4opqblBvpAO/IqkHLEg1gPhAxswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Laboratory Information Management Systeme</md:ServiceName>
        <md:ServiceName xml:lang="cs">Systém správy informací o laboratoři</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Access to laboratory information management system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup k systému správy informací o laboratoři</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CEMCOF</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CEMCOF</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CEMCOF</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CEMCOF</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ceitec.eu/centralni-laborator-kryo-elektronova-mikroskopie-a-tomografie/cf94</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ceitec.cz/centralni-laborator-kryo-elektronova-mikroskopie-a-tomografie/cf94</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nováček</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@ceitec.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://app.permonik-test.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://app.permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://app.permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://app.permonik-test.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik-test.nkp.cz/api/login/sso"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik-test.nkp.cz/api/login/sso" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>app.permonik-test.nkp.cz</ds:KeyName>
          <ds:KeyName>https://app.permonik-test.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=app.permonik-test.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPjCCAqagAwIBAgIUbgPtddUlH0J26bPrtlBOAO7TdrUwDQYJKoZIhvcNAQEL
BQAwIzEhMB8GA1UEAxMYYXBwLnBlcm1vbmlrLXRlc3QubmtwLmN6MCAXDTI1MDUw
NjExMjQwNloYDzIwNTUwNDI5MTEyNDA2WjAjMSEwHwYDVQQDExhhcHAucGVybW9u
aWstdGVzdC5ua3AuY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDf
ZcNgK2UKkYCvLwEaShPCMlivbVPSEgKXCXE2kGzKsZ5TS1QXf06chgH226xKrh65
3F1yxN+9kEloOD1evquBSwLzhesS9eOahRws6RwpM94Nk5qPBx90MdG+CrWnKTtA
jojIOSvhOJErKd3yiwgBwzFGU/EDKSBDwrRqq4mct8AQOI8eG17Ah/hCxUU9fohu
4VGxmlh/es8RV9n7qB6zYvMYNZQEr6CrOYf9aGu/BPnuUQtsW4OFi6iSTyCLJF/P
NDUwulPzAYbfRuGwUIBvJzbgIu7v6YQ8LhYLA+jP8C4XVLqEusb8jrofj1DIbXrA
a5ar/UIPDdzeM1Tq6zP3eKl6mcn2iH3a3gwhEZ87Clu5KlxawHrOfETSTIV8DiW6
5ttwAgdFeXsRfH7a0Tw7KFH/Pb1VSWd4y6W0K/7Q2lh1CLMZZtTF5Dd+LrpljlfQ
/WWY8MWqDlhhvC5STw9wYZxJyXOA/P1oX6kFwwOgw9MoEmgTu0M8EbuhRM6EFD8C
AwEAAaNoMGYwRQYDVR0RBD4wPIIYYXBwLnBlcm1vbmlrLXRlc3QubmtwLmN6hiBo
dHRwczovL2FwcC5wZXJtb25pay10ZXN0Lm5rcC5jejAdBgNVHQ4EFgQUZuSW6CqG
J8+pNX9umsLZVUIcim8wDQYJKoZIhvcNAQELBQADggGBAAwOIXT2kPP93PUiCuDQ
RHIlnoJfIs9pjLouaqIHHA8/FQFixLg+O97wW4q7JbG4+h9conVcBxHfsFgBmTGy
rW8kQI6K23bLWyxpxVTi0SBvhOmrFFd2P5jXc3f64qcnAzDkgzH2MKCOj+rSwSAu
tQ7Du0z2lAJzri+pDMk3Dsi8Y79zQVn1gebSLNnKs49W3R4Rs4G5sqlaj4j/epQN
Rg+BxQ/NbQmrCTUB8Kqa6AahQAZgstCzT4sX/8Dr4nCj8n8jscFdtcx0kZyBEJwz
pqbiC8luGCnGYJyihPdlxdHU6VmoCtdPkMf5Eu8EX9QN6bDvRcxuHtj9J4f7MKpx
YVt+qlaby4Je2HAl7L0sIaHO7fipgMxyfR4ByDvMcNtnugjMPmtZavYraRwPOj9/
isSkmMgF6VnP4m2ehDdQa8CX3SuybFIJ2bgiBN2PI66hpey6/lurLMvFQU05iorL
P7bJcJEoOZ2NeYbqmTa7WAlsZbPab4ECbnB2tamg3c1+Bg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://app.permonik.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://app.permonik.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/api/login/sso"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/api/login/sso" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>app.permonik.nkp.cz</ds:KeyName>
          <ds:KeyName>https://app.permonik.nkp.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=app.permonik.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIJANdJewWfVhYhMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://archivndknihovna.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">archivndknihovna.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Theatre Library Archive</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Archivu Národního divadla</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the National Theatre Library Archive</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Archivu Národního divadla</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.archivndknihovna.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.archivndknihovna.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://archivnd.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://archivnd.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://archivnd.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://archivnd.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://archivnd.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Theatre Library Archive</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Archivu Národního divadla</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Theatre Library Archive</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Archivu Národního divadla</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.archivndknihovna.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.archivndknihovna.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://atlases.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Atlases - Pathology Images</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Atlases</mdui:DisplayName>
          <mdui:Description xml:lang="en">Collection of high resolution histological images</mdui:Description>
          <mdui:Description xml:lang="cs">Kolekce histologick\u00FDch obr\u00E1zk\u016F ve vysok\u00E9m rozli\u0161en\u00ED.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://atlases.muni.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://atlases.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://atlases.muni.cz/en/img/_logo80px.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/atlases"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/muni"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduid" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduidnew"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduidnew" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/DS" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/DS/eduid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/DS/eduid" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/wayfdk"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/rediris"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/DS/dfnaai"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/DS/dfnaai" index="5"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/idemgarr"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/idemgarr" index="6"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/surf"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aaieduhr"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/eduidhu"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/eduidhu" index="7"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aconet"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/aconet" index="8"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/renater"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/renater" index="9"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/upki"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/upki" index="10"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/chimarrao"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/chimarrao" index="11"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aaf"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/aaf" index="12"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/pionier"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/pionier" index="13"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/arnes"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/arnes" index="14"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/switch"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/switch" index="15"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/tuakiri"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/tuakiri" index="16"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/edugate"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/edugate" index="17"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/gridp"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/gridp" index="18"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/sifulan"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/sifulan" index="19"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/safeid" index="20"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/cofre"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/cofre" index="21"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/colfire"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/colfire" index="22"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/minga"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/minga" index="23"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aaiarn"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/aaiarn" index="24"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/kafe"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/kafe" index="25"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/elixir"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>atlases-selfsign-2018</ds:KeyName>
          <ds:KeyName>atlases.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=atlases.muni.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDBDCCAewCCQCb6/bGA0ev4jANBgkqhkiG9w0BAQsFADBEMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atlases.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pictures-mu.atlases.muni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://atlases.muni.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://atlases.muni.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Atlases - Pathology Images</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Collection of high resolution histological images from Masaryk University, Brno.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.muni.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukas</md:GivenName>
      <md:SurName>Hejtmanek</md:SurName>
      <md:EmailAddress>mailto:xhejtman@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky</md:SurName>
      <md:EmailAddress>mailto:lubos.kopecky@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Atlases</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:atlases@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://attributes.eduid.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/sp-group/mojeid-edu</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Attribute Viewer</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Zobrazovač atributů</mdui:DisplayName>
          <mdui:Description xml:lang="en">A service displaying attributes released by your Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Služba zobrazující atributy uvolněné Vaším poskytovatelem identity.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://attributes.eduid.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://attributes.eduid.cz/</mdui:InformationURL>
          <mdui:Logo height="94" width="200">https://attributes.eduid.cz/img/eduidcz.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://attributes.eduid.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://attributes.eduid.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>attributes.eduid.cz</ds:KeyName>
          <ds:KeyName>https://attributes.eduid.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=attributes.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIJAN6qY01fr+EJMA0GCSqGSIb3DQEBBQUAMB4xHDAaBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atributy.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attributes.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atributy.eduid.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/dsadev/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/ECP" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Zobrazovač atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy uvolněné Vaším poskytovatelem identity.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="samlPairwiseID" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="samlSubjectID" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://au.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">File sharing service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Služba pro sdílení souborů</mdui:DisplayName>
          <mdui:Description xml:lang="en">File sharing service</mdui:Description>
          <mdui:Description xml:lang="cs">Služba pro sdílení souborů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://au.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://au.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://au.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://au.cesnet.cz/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://au.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>au.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://sluzba.organizace.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=au.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJALa1wOiu5p5RMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://au.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://au.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://au.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Projects support</md:ServiceName>
        <md:ServiceName xml:lang="cs">Podpora projektů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service for projects support (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba slouží pro podporu projektů (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://aurochs.is.cuni.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Interní institucionální repozitář publikační činnosti Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University Internal Research Publications Repository</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Institucionální repozitář publikační činnosti UK. Repozitář slouží pro interní potřeby Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Institutional repository of research outputs produced by Charles University authors. For internal use within Charles University.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://aurochs.is.cuni.cz/page/about?locale-attribute=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://aurochs.is.cuni.cz/page/about?locale-attribute=en</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>aurochs.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=aurochs.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDbzCCAlegAwIBAgIUZ3g2SKAyIng5B9YKXmP3bZY0grEwDQYJKoZIhvcNAQEM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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://auror.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Auror</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Auror</mdui:DisplayName>
          <mdui:Description xml:lang="en">Auror scanner</mdui:Description>
          <mdui:Description xml:lang="cs">Auror skener</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://auror.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://auror.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://auror.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auror.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>auror.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://auror.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=auror.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUdkUYR/iYZ/mcbIwmKUnBgFITP6gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auror.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Auror</md:ServiceName>
        <md:ServiceName xml:lang="cs">Auror</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Auror - network security scanner</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Auror - síťový bezpečnostní skener</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, interest association of legal entities</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jaroslav</md:GivenName>
      <md:SurName>Svoboda</md:SurName>
      <md:EmailAddress>mailto:jaroslav.svoboda@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:eidas="http://eidas.europa.eu/saml-extensions" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ns0="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ns1="http://www.w3.org/2000/09/xmldsig#" xmlns:ns2="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:ns3="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:ns4="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:ns5="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ns6="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:ns7="urn:oasis:names:tc:SAML:metadata:ui" xmlns:pyff="http://pyff.io/NS" xmlns:q1="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:remd="http://refeds.org/metadata" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:ser="http://eidas.europa.eu/metadata/servicelist" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:ui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:xi="http://www.w3.org/2001/XInclude" xmlns:xrd="http://docs.oasis-open.org/ns/xri/xrd-1.0" xmlns:xs="http://www.w3.org/2001/XMLSchema" entityID="https://auth.eidas.cesnet.cz/sp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <ns4:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.eidas.cesnet.cz/Saml2SP/disco" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">eIDAS CESNET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eIDAS CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET's eIDAS services</mdui:Description>
          <mdui:Description xml:lang="cs">Služby CESNET eIDAS</mdui:Description>
          <mdui:Keywords xml:lang="en">eIDAS RemSig</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">eIDAS RemSig</mdui:Keywords>
          <mdui:Logo height="100" width="100">https://auth.eidas.cesnet.cz/img/logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">https://eidas.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://eidas.cesnet.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDnzCCAoegAwIBAgIJAItiVBY8jRe2MA0GCSqGSIb3DQEBCwUAMGYxCzAJBgNV BAYTAkNaMRYwFAYDVQQIDA1Tb3V0aCBNb3JhdmlhMQ0wCwYDVQQHDARCcm5vMQ8w DQYDVQQKDAZDRVNORVQxHzAdBgNVBAMMFnNhdG9zYS5laWRhcy5jZXNuZXQuY3ow HhcNMTkwODE1MTQxOTQ4WhcNMzkwODEwMTQxOTQ4WjBmMQswCQYDVQQGEwJDWjEW MBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEPMA0GA1UECgwG Q0VTTkVUMR8wHQYDVQQDDBZzYXRvc2EuZWlkYXMuY2VzbmV0LmN6MIIBIjANBgkq hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuIX2YYgZ2MPFnuDoDExJ9vx6ZqHbO/CL hwNwQ9sABPZup1muFv6MLwm9epzILHRoLsEAFTPqisD5KlVmpCZBi1/V0g7+kG8X QfiadIVLUJmKLtWhLLmr8fW2bH9SXdweDztlysW4W43nr3Z/OCOw1COi5SFKSB3s ifBhrDqKAkrtkAV6e1w/PYO6lnHa2zpDvnNXRdOZaCvqrg6h+t01t7aPcvuh2j9r nOfuAvcJ+2s4Hy2SfgqgtASDo08psyHmsYnK1i/lfkstvpr6ftDrVNLJxs7AYAu7 s+nGRU6CJlBzTGOonHjamFhQzQz+4lMgVnpwPTAEbDn7p0jiZw//PQIDAQABo1Aw TjAdBgNVHQ4EFgQUQGj4kiihZV94Yrj+EZ78kAsbfF0wHwYDVR0jBBgwFoAUQGj4 kiihZV94Yrj+EZ78kAsbfF0wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOC AQEAhS8UPv4GxfOKTjAXFl04GLO2HjCYe2t8HS2fxkpQbLJtCsdjgJA1xn1JRf5u xJIKUhm7DxJz2/6IfeF961d7xzbP9xTdsyaAcMUAhvLBOUPkXg+b+bvjYuejJoYC IzRyQ6IXXKluvadXsTD5RqYrLHd4M7S2M+c3/lXlnnh32ZpuHM/3JboqjoytUrlt SsemQ1GEgZF+IAkTf9ZcC+cnwBNUVO41B6hIo3IfzpsVIzOmDKUfhx5swp+f3b70 CD2FOy4TuApvf5NGxObOSRRQpGIgNxs64yUf+XLNvSvJA4mG7TrC25l3W69Hre8W WP8UE9eFzjICAQ3ms5H/c4nwgg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDnzCCAoegAwIBAgIJAItiVBY8jRe2MA0GCSqGSIb3DQEBCwUAMGYxCzAJBgNV BAYTAkNaMRYwFAYDVQQIDA1Tb3V0aCBNb3JhdmlhMQ0wCwYDVQQHDARCcm5vMQ8w DQYDVQQKDAZDRVNORVQxHzAdBgNVBAMMFnNhdG9zYS5laWRhcy5jZXNuZXQuY3ow HhcNMTkwODE1MTQxOTQ4WhcNMzkwODEwMTQxOTQ4WjBmMQswCQYDVQQGEwJDWjEW MBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEPMA0GA1UECgwG Q0VTTkVUMR8wHQYDVQQDDBZzYXRvc2EuZWlkYXMuY2VzbmV0LmN6MIIBIjANBgkq hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuIX2YYgZ2MPFnuDoDExJ9vx6ZqHbO/CL hwNwQ9sABPZup1muFv6MLwm9epzILHRoLsEAFTPqisD5KlVmpCZBi1/V0g7+kG8X QfiadIVLUJmKLtWhLLmr8fW2bH9SXdweDztlysW4W43nr3Z/OCOw1COi5SFKSB3s ifBhrDqKAkrtkAV6e1w/PYO6lnHa2zpDvnNXRdOZaCvqrg6h+t01t7aPcvuh2j9r nOfuAvcJ+2s4Hy2SfgqgtASDo08psyHmsYnK1i/lfkstvpr6ftDrVNLJxs7AYAu7 s+nGRU6CJlBzTGOonHjamFhQzQz+4lMgVnpwPTAEbDn7p0jiZw//PQIDAQABo1Aw TjAdBgNVHQ4EFgQUQGj4kiihZV94Yrj+EZ78kAsbfF0wHwYDVR0jBBgwFoAUQGj4 kiihZV94Yrj+EZ78kAsbfF0wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOC AQEAhS8UPv4GxfOKTjAXFl04GLO2HjCYe2t8HS2fxkpQbLJtCsdjgJA1xn1JRf5u xJIKUhm7DxJz2/6IfeF961d7xzbP9xTdsyaAcMUAhvLBOUPkXg+b+bvjYuejJoYC IzRyQ6IXXKluvadXsTD5RqYrLHd4M7S2M+c3/lXlnnh32ZpuHM/3JboqjoytUrlt SsemQ1GEgZF+IAkTf9ZcC+cnwBNUVO41B6hIo3IfzpsVIzOmDKUfhx5swp+f3b70 CD2FOy4TuApvf5NGxObOSRRQpGIgNxs64yUf+XLNvSvJA4mG7TrC25l3W69Hre8W WP8UE9eFzjICAQ3ms5H/c4nwgg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.eidas.cesnet.cz/Saml2SP/acs/post" index="1"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">eIDAS CESNET</md:ServiceName>
        <md:ServiceName xml:lang="en">eIDAS CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Služby CESNET eIDAS</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">CESNET's eIDAS services</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">eIDAS CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z.s.p.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:eidas@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Support</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:eidas@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://auth.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>camelot4</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=camelot4</ds:X509SubjectName>
            <ds:X509Certificate>MIIC3zCCAcegAwIBAgIJALi3n/nF8cDIMA0GCSqGSIb3DQEBBQUAMBMxETAPBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Web</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://auth.nfa.cz:4443/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">nfa.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Národní filmový archiv</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Poskytovatel identity digitálních kurátorů NFA</mdui:Description>
          <mdui:DisplayName xml:lang="en">National film archive Prague</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity provider of digital curators of NFA</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nfa.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nfa.cz/</mdui:InformationURL>
          <mdui:Logo height="150" width="150">https://nfa.cz/wp-content/uploads/2014/07/NFA_Color_11-150x150.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHTCCAgWgAwIBAgIVANY3lhOAipHhfUOdx1SN/qb2HdXQMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIUPwW5sn2dcSWZlabpMuCwiafKr78wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIUWgUNk5FdoxAxkWUVOQkZBId39X4wDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLYXV0aC5uZmEuY3owHhcNMTYwNTIyMDg1NzM2WhcNMzYw
NTIyMDg1NzM2WjAWMRQwEgYDVQQDDAthdXRoLm5mYS5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBALmjYwP55nn8axN2u/pl1HXDhzDXM6iosTCd/E9P
ae4BdYGdbpWF6Khr7glpA1+5JbhSKTnFqZ4iQGCKwxicbzVEYpnTphT/1hx2GiV0
X/lfLa5HSUCWEfvBpiTNPHeHsO7UuiqhvEDInemWWmj9GMbrLNB3lEloMhW29vIh
/WNw/Cnzxlr4IWC9PK3VZ5b6WePeLy6mquuJewHAv6KxHwO6qlMkm9/lMdxdE0fN
m7bsdjCH/0oGqLDyaxgtMtJSFnXeC8RWF9A/eM2bNxW2Ns/jyu33DD8y6M2QZHlq
3jid4gkmXcRvEvvj9fd6puB2AU1SMaWAb/Uw9/bwWMr3TkECAwEAAaNiMGAwHQYD
VR0OBBYEFHAJnIHv44aZG/wuPOaa5nmARUnCMD8GA1UdEQQ4MDaCC2F1dGgubmZh
LmN6hidodHRwczovL2F1dGgubmZhLmN6OjQ0NDMvaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQELBQADggEBAH6slEdzsVgGG/aQ5SSkPU5Ua3Xskx7Bsems6A4Jt6m0
3v9PEsTi1m0JWVC5d8VGee16fmVSX33PyxtrYI4JhApK7ok98YXk3WpwlGK7nPmu
YeT6IM7GI4rky2v7B2QiQoZwzLlFPKBFfhz0wG9Yh0rNOhB/iX8PQJxKXMidzdET
OVl3GW2i1rFfXmlHOTVkl6fDREO1vug3oKOCWL5zTWYyq26ZNriv/ccTrid/xg9Y
h0kyFBxpjBEa9dAsJlVUW6HbMvxQO0Vwy1BrVWJ3cBu8zYD+kT3rqZyBIG79x3T/
11+wThgYqbx0YVZXBjy2+UG9zyUqilx6EQMhD7dA1fU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://auth.nfa.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.nfa.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://auth.nfa.cz:4443/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.nfa.cz:4443/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.nfa.cz:4443/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.nfa.cz:4443/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nfa.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHTCCAgWgAwIBAgIVANY3lhOAipHhfUOdx1SN/qb2HdXQMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIUPwW5sn2dcSWZlabpMuCwiafKr78wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIUWgUNk5FdoxAxkWUVOQkZBId39X4wDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLYXV0aC5uZmEuY3owHhcNMTYwNTIyMDg1NzM2WhcNMzYw
NTIyMDg1NzM2WjAWMRQwEgYDVQQDDAthdXRoLm5mYS5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBALmjYwP55nn8axN2u/pl1HXDhzDXM6iosTCd/E9P
ae4BdYGdbpWF6Khr7glpA1+5JbhSKTnFqZ4iQGCKwxicbzVEYpnTphT/1hx2GiV0
X/lfLa5HSUCWEfvBpiTNPHeHsO7UuiqhvEDInemWWmj9GMbrLNB3lEloMhW29vIh
/WNw/Cnzxlr4IWC9PK3VZ5b6WePeLy6mquuJewHAv6KxHwO6qlMkm9/lMdxdE0fN
m7bsdjCH/0oGqLDyaxgtMtJSFnXeC8RWF9A/eM2bNxW2Ns/jyu33DD8y6M2QZHlq
3jid4gkmXcRvEvvj9fd6puB2AU1SMaWAb/Uw9/bwWMr3TkECAwEAAaNiMGAwHQYD
VR0OBBYEFHAJnIHv44aZG/wuPOaa5nmARUnCMD8GA1UdEQQ4MDaCC2F1dGgubmZh
LmN6hidodHRwczovL2F1dGgubmZhLmN6OjQ0NDMvaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQELBQADggEBAH6slEdzsVgGG/aQ5SSkPU5Ua3Xskx7Bsems6A4Jt6m0
3v9PEsTi1m0JWVC5d8VGee16fmVSX33PyxtrYI4JhApK7ok98YXk3WpwlGK7nPmu
YeT6IM7GI4rky2v7B2QiQoZwzLlFPKBFfhz0wG9Yh0rNOhB/iX8PQJxKXMidzdET
OVl3GW2i1rFfXmlHOTVkl6fDREO1vug3oKOCWL5zTWYyq26ZNriv/ccTrid/xg9Y
h0kyFBxpjBEa9dAsJlVUW6HbMvxQO0Vwy1BrVWJ3cBu8zYD+kT3rqZyBIG79x3T/
11+wThgYqbx0YVZXBjy2+UG9zyUqilx6EQMhD7dA1fU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://auth.nfa.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Film Archive Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Národní filmový archiv</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National Film Archive Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní filmový archiv</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://nfa.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://nfa.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Klodner</SurName>
      <EmailAddress>mailto:michal.klodner@nfa.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://auth.polygraf.app/metadata">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/category/code-of-conduct/v2</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/discoResponse/default-sp" index="0"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Polygraf Online</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Polygraf Online</mdui:DisplayName>
          <mdui:Description xml:lang="en">Real-time speech-to-text and presentation streaming for students with hearing or visual impairments.</mdui:Description>
          <mdui:Description xml:lang="cs">Živý přepis řeči a streamování prezentací pro studenty se sluchovým nebo zrakovým postižením.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://polygraf.app/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://polygraf.app/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://polygraf.app/privacy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://polygraf.app/privacy</mdui:PrivacyStatementURL>
          <mdui:Logo height="80" width="80">https://polygraf.app/logo-eduid-80.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGTCCAoGgAwIBAgIUfbD7KqmFKGmDbD0l4UqIp/hAt14wDQYJKoZIhvcNAQELBQAwHDEaMBgGA1UEAwwRYXV0aC5wb2x5Z3JhZi5hcHAwHhcNMjYwNTA2MTYzODM5WhcNMzYwNTAzMTYzODM5WjAcMRowGAYDVQQDDBFhdXRoLnBvbHlncmFmLmFwcDCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAMFP4l8O511fdeGU5j4olyl1zON3ngwIbgglS2P4UbnVeWmAs42SjxPTVZfHZQRDfsWeD4KVcefJRlxloTxDmBhxpvhGU0LIXIvTOmdpDGEQPJ5kAeS0RybuDvtyztXGG0mNgHEHsJEOC3EbTSqB9X58HZP/zGgjSZTcxahVa+MigBvl2wTLwEkd7CY9NHpbDPcrDAh0ckIYE90+JKqXIyTyTykTagtU3849j3Te9IKz/vdSgTYbtcMkpNKxUiKGpFcssd4y6pOA1Vaa6lrB28xURTQe1qpZ6ddSH3mxWp4+femDBADkrC1ldkD6eWXk8LCAZCNvWvcNQz+pWCMoSfhJzAAWh679HKmMq7uV+eUup3tRc2QJ37/WjJX17o+DQa5SvmI34c+wIEOnT43rELdiSg+U6FIGPU/gDmknVYyb678I33Xl89FAXuZDeIqiLaLmfkJpUpoBDo2KNf17VrBz4anmKo6JDDFz/E+D6gM0UPWZnloPsKZED+Yf6iHrrQIDAQABo1MwUTAdBgNVHQ4EFgQULfQgwFiwel/rtbkIKnJ8PH41MeEwHwYDVR0jBBgwFoAULfQgwFiwel/rtbkIKnJ8PH41MeEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAYEAWVl5WWEzsiQVK43DAASiT9vL1XPi2CRPdQPL1eoVkittiTej5Hxc2B6FTnsjrcg0SQmR4BIUf2kS5d6h3hAQdcjHuCSow0ydZf+OMTaxbIsYUagtFCFItJ+lexCH17VQ3AJcPmRpCxy6wfMhz4Bv1MLllaTNnaxTMc3v7AEW3gXa3RB+fOdoJNQ6nK1/M7VZd8H3NNIS8dHoWwQk9Nmt+ZzuhenkE6yEY8KOodiCjVgTAs0ubaHsN5zp2TWJAXIZ1cAWJgntia5ANPdkcjiI5MR/9eRfF3ozuhjDYpyLjPAXNyfFYoGwnawnueMDFSujzfKsuK23rmxDnno2B05RKhrdZ+U76fuA8ANA31ks/FYhWnFy1wVTUs+4MpoSa71C6PXCDT0+tOb59xWgmhBzJl0lauZCAzIdiBd70/B3XDce0/qb7xn+gn4B09VH3w8X6DLF/hhDZL8NfefCoKM5H2KMmVjvP51KIhMs72rF2oaSiL+Z/0C8wR5EsdSHlhGd</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Polygraf Online</md:ServiceName>
        <md:ServiceName xml:lang="cs">Polygraf Online</md:ServiceName>
        <md:RequestedAttribute Name="eduPersonPrincipalName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="mail" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="givenName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="sn" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="displayName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="eduPersonScopedAffiliation" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Teiresiás Centre, Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Středisko Teiresiás, Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.teiresias.muni.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.teiresias.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Suchan</md:SurName>
      <md:EmailAddress>mailto:suchan@blaze.codes</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Suchan</md:SurName>
      <md:EmailAddress>mailto:suchan@blaze.codes</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Svatoslav</md:GivenName>
      <md:SurName>Ondra</md:SurName>
      <md:EmailAddress>mailto:ondra@teiresias.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Suchan</md:SurName>
      <md:EmailAddress>mailto:suchan@blaze.codes</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://authg.kr-vysocina.cz/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kr-vysocina.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">VysocinaID</mdui:DisplayName>
          <mdui:Description xml:lang="en">VysocinaID</mdui:Description>
          <mdui:DisplayName xml:lang="cs">VysocinaID</mdui:DisplayName>
          <mdui:Description xml:lang="cs">VysocinaID</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://authg.kr-vysocina.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://authg.kr-vysocina.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="125">https://extranet.kr-vysocina.cz/images/Logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://authg.kr-vysocina.cz/authgate/logout/samlLogoutRequest"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authg.kr-vysocina.cz/authgate/logout/samlLogoutRequest"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://authg.kr-vysocina.cz/authgate/login/samlAuthnRequest"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authg.kr-vysocina.cz/authgate/login/samlAuthnRequest"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Kraj Vysočina</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Vysocina Region</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Kraj Vysočina (VysocinaID)</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Vysocina Region (VysocinaID)</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.kr-vysocina.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.kr-vysocina.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>IT</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:osda@kr-vysocina.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Czech Academy of Sciences</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb</ds:KeyName>
          <ds:KeyName>avcr.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro AV ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Czech Academy of Sciences</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Czech Academy of Sciences</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d</ds:KeyName>
          <ds:KeyName>avcr.preview.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro AV ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Czech Academy of Sciences</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://beta.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://beta.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://beta.knihovny.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://beta.knihovny.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front-devel.mzk.cz</ds:KeyName>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEsjCCA5qgAwIBAgIQLaS1jOufvcpsVCEBt02nazANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://beta.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Kozlovský</md:SurName>
      <md:EmailAddress>mailto:kozlovsky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://biblio.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">biblio.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Kostelec nad Orlicí</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Kostelec nad Orlicí</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Kostelec nad Orlicí</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Kostelec nad Orlicí</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.biblio.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.biblio.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://kostelec.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+zCCAuOgAwIBAgIUeC+Erm9UebqLR1qbvag+nYkyCQEwDQYJKoZIhvcNAQELBQAwgYwxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEdMBsGA1UEAwwUa29zdGVsZWMuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yMTA2MDMwODQ3MzZaFw0zMTA2MDQwODQ3MzZaMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxHTAbBgNVBAMMFGtvc3RlbGVjLmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCghKi/HSWoqHniGJqMCZ0dORVBvJH1EkbxupF702ACK466Ww1MnRlx4IOcPZLuWqCuMtJztW1IJQIz552VbsKbvGXgShLWg3joUbTpXpkWU0aIgPcYPSsN9vwdYSDkg87MRqLoy6kGZxnkM4dn57X3PTwb5vEA2AtLN4UvZzzQmfxa6xU3s64z74e0bztVO1vi+rEK0VxoxloaMdBCcU6uJA8OF29VmOKCLZiPmWKBtoPF3rq+GwpaO2jXhf0CbGp4/6o45vP+SPzbGLgzqjZ68nBm30JBsFAwK1e8viowtLs579UTSxAI7Rq9JARbzwn2X/lVx0nzyrWZPkFVx7mJAgMBAAGjUzBRMB0GA1UdDgQWBBSaAUvK694pcmYmFIWNp5PJUJXXXjAfBgNVHSMEGDAWgBSaAUvK694pcmYmFIWNp5PJUJXXXjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBsGOJ1/c9/wpMTl/97GZFezhapPjx/N49yxQ+gI+YlY8Oez3ax+ZQ6KbDWZDkYWj2bI7Ts9gP9+DsxKekPaVcAeTBThZ/T1d3QMxz6dLKYrhpzMCkQCvvN6IURv2u7Az8cp6rk24IlkJ4mKQiZ8Ts28qhWwdqxpedTFH0NeVpVb2hHMH4s6W7XILgV8n9TT/9RTmR0ZnanWlRRaB872CNR2OTIx2vb0Iz3bWiUwt+6lVgbxsP1OJstMtYFhue6TXsNoMp2I2ziK+HU77VYlisPlWKB7mK3whUTSNSjQ/0v0DWe6PtgC4MhjB27gqMtLDKW2W5V8PTSr9XARf4YhAJH</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kostelec.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kostelec.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kostelec.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kostelec.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Kostelec nad Orlicí</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Kostelec nad Orlicí</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Kostelec nad Orlicí</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Kostelec nad Orlicí</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.biblio.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.biblio.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://bolg.cesnet.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">cesnet.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Bolg</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Bolg</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing Identity Provider (IdP) for CESNET employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací poskytovatel identity (IdP) pro zaměstnance CESNETu.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ces.net/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://bolg.cesnet.cz/idp/images/bolg.cesnet.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIVAI7MM6sVGzEx3UudzpLRkv8usqekMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELjCCApagAwIBAgIUbAEMyaEuvAxiXEaElianFj2jkiUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bolg.cesnet.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bolg.cesnet.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bolg.cesnet.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Bolg</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Bolg</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.ces.net/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://booksy.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">booksy.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Svitavy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna ve Svitavách</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Svitavy</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny ve Svitavách</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.booksy.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.booksy.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="113">https://mksvit.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mksvit.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mksvit.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mksvit.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mksvit.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Svitavy</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna ve Svitavách</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Svitavy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna ve Svitavách</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.booksy.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.booksy.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://borovany-eduid.koha-system.cz/saml2/idp/metadata.php">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">borovany-cb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Augustin Dubensky Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Augustina Dubenského</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Augustin Dubensky Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Knihovnu Augustina Dubenského</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.borovany-cb.cz/mesto/knihovna//</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.borovany-cb.cz/mesto/knihovna/</mdui:InformationURL>
          <mdui:Logo height="55" width="285">https://borovany-katalog.koha-system.cz/vufind/themes/ereading/images/borovany.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://borovany-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://borovany-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://borovany-eduid.koha-system.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Augustin Dubensky Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Augustina Dubenského</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Augustin Dubensky Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Augustina Dubenského</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.borovany-cb.cz/mesto/knihovna/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.borovany-cb.cz/mesto/knihovna/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kolátor</md:SurName>
      <md:EmailAddress>mailto:jan.kolator@teamlibrary.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://camelot.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>camelot4</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=camelot4</ds:X509SubjectName>
            <ds:X509Certificate>MIIC3zCCAcegAwIBAgIJALi3n/nF8cDIMA0GCSqGSIb3DQEBBQUAMBMxETAPBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="21"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Web</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cards-test.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Testovací portál průkazů Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University - student identification cards testing portal</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Testovací portál průkazů Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Charles University - student identification cards testing portal.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://cuni.cz/UK-1444.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://cuni.cz/UKEN-163.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>cards-test.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cards-test.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDdTCCAl2gAwIBAgIUNlkOHkQuS2mh1hl2eu1twNTHjXwwDQYJKoZIhvcNAQEM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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cards.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Portál průkazů Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University - student identification cards portal</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Aplikace slouží pro účely studentů a zaměstnanců UK. Poskytuje uživatelům přehled aktuálně vystavených průkazů a také možnost požádat o nový průkaz.</mdui:Description>
          <mdui:Description xml:lang="en">The application is used for the purposes of CU students. It provides users with an overview of currently issued cards and also the possibility to request a new card.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://cuni.cz/UK-1444.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://cuni.cz/UKEN-163.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cards.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cards.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>cards.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cards.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUZnvBr/cLYzTjnNB20Htj/OD8OoowDQYJKoZIhvcNAQEM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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:remd="http://refeds.org/metadata" entityID="https://cas-einfracz.dev.perun-aai.org/cas/samlsp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET e-Infrastructure - Dev(DRUID AAI)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">e-Infrastruktura CESNET - Dev(DRUID AAI)</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</mdui:Description>
          <mdui:Description xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/e-infrastruktura-3/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/e-infrastruktura-3/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Logo height="146" width="257">https://login.cesnet.cz/proxy/module.php/cesnet/res/img/cesnet_rgb_small.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUaJVcvA5PemoIXtFc8/Xcz8tzFpYwDQYJKoZIhvcNAQELBQAwKTEnMCUG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUaJVcvA5PemoIXtFc8/Xcz8tzFpYwDQYJKoZIhvcNAQELBQAwKTEnMCUG
A1UEAwweY2FzLWVpbmZyYWN6LmRldi5wZXJ1bi1hYWkub3JnMB4XDTI1MDcwODA4MTIxOFoXDTM1
MDcwNjA4MTIxOFowKTEnMCUGA1UEAwweY2FzLWVpbmZyYWN6LmRldi5wZXJ1bi1hYWkub3JnMIIB
IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwsGmQuX+IsvtS06Nb0oowb8XjS52g3ouQ7FT
xI5ytfZw8FjW8EnFGLrCADtv6G9DQzRD9SQSePcXA5ZQ1y7RwknB935RT1W02FSSUa7pjP7IB5Q3
wTk+MJB+uST2Xer9b9e6x23kALgNPc1LfbxFTUE2bGYYdvGgAoF7nrgjDu7xoUiAW7Sgd/sFCmoh
2scWqD6sq2fGuCr10FKj52DrNE9TMvvCVDdHO2P57NHvyWBNfZV6eDmjakZmcLSxNwcle6S5Z1x0
uncj654YKRgqDKEBUVYLCQQiry2NQQBY4u7JvCWjZae0Kt4Sn/zutf10iH4gMWpgLKRFea+HH4C8
/QIDAQABo1MwUTAdBgNVHQ4EFgQUDW3hcyr0KlgFqNlM9wGKfkwcVoEwHwYDVR0jBBgwFoAUDW3h
cyr0KlgFqNlM9wGKfkwcVoEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAeuef
Bej+/D7v3lpZvpQBbmacpwAZBztpTHcCESDFwYV/la33M7/WEz55DGiM45uwmsRDmvLD5pYg3xZY
DmbLWCrKXUh+gDDvU8sfkTm2FE3jka+JwkHUNVXsVnHIuHQRXpfNmSp8UYG71iGN/F1W+cLrcKXE
ZK+EpyHeRzxyvnpaGN4ofSkTF+SIOl6DL7jQPbPYLhsyd7U+a2wmA9COXg4ll3YjBXAd0xwsIBo8
5SM78xUrliBp0QkYSDjrA3NiwKi0MoJs6Vp1x1O+Fu218k4vRVGOXf3tKZEokWr3VQNNBs8PfsOB
2Dx296o1GpKiAX2QAGLPMCeekBMDbMmsuw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET e-Infrastructure - Dev(DRUID AAI)</md:ServiceName>
        <md:ServiceName xml:lang="cs">e-Infrastruktura CESNET - Dev(DRUID AAI)</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduroamUID" Name="http://eduroam.cz/attributes/eduroamUID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>CESNET-CERTS</md:GivenName>
      <md:EmailAddress>mailto:certs@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas.cuni.cz/cas/sp/edugain/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Authentication Service (CAS)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Autentizační služba Univerzity Karlovy (CAS)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Authentication to Charles University information services.</mdui:Description>
          <mdui:Description xml:lang="cs">Přihlášení k informačním zdrojům Univerzity Karlovy.</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas.cuni.cz/cas/login?client_name=edugain"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=edugain" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas.cuni.cz/cas/sp/eduid/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Authentication Service (CAS)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Autentizační služba Univerzity Karlovy (CAS)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Authentication to Charles University information services.</mdui:Description>
          <mdui:Description xml:lang="cs">Přihlášení k informačním zdrojům Univerzity Karlovy.</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas.cuni.cz/cas/login?client_name=eduid"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=eduid" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://cas.cuni.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">cuni.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Charles University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Karlova</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Charles University students and staff</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro studenty a zaměstnance Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIULCjAcsrMsv7o5QxyJDwHOrKHXdYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAM9R4fP/jTR0k9kHFW/FaZDo/NW+MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUcc+rDXicRkvuNK4P3apAVdOfWwcwDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLaWRwLmN1bmkuY3owHhcNMTYwNTI2MTE1NDI3WhcNMzYw
NTI2MTE1NDI3WjAWMRQwEgYDVQQDDAtpZHAuY3VuaS5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBAI2Pi/cdKwroEeg0GJ/lGMlcJ96ZI1MJbY7RQbsZ
R1MkmBoH5D2VGMsr8eRQuunqBU7d5tkHBqDQBu1OrGTtbxKj0jmfHxBioo01zURY
dBZGMYSQZIEoxQAFgsq+CuJCD0gxSTVfTh+8mCLkGxPbDFZRkWf7P/lBN+tWJzp/
xacz0fh2USEdMNbUEOse1MH93mKc42xwQ2aYqYsvCj6HnPAHy/d3wPg1j60Cny66
LhTB+i4Y8/xyjSUsG4GgLES6DtMRUBQg1k7qkvYIzMov/geVPapfPv92rF8c0JuU
hOyfTCHlY28+IKNXJgRzCjKucbYbTYOCkVzs5V9Q23H7rKECAwEAAaNdMFswHQYD
VR0OBBYEFI+YFeR2gNrcHSpW6XSsipbQQZ4TMDoGA1UdEQQzMDGCC2lkcC5jdW5p
LmN6hiJodHRwczovL2Nhcy5jdW5pLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBAQBIIXz3ArzhfyG/vMEqgw0H08Prwq1ZC9SMBJdz2I0yheIvUg77
C4RWskEwjXOVqvZH7zUUrhW6TFgz/JU7otnjiuLhsldsC00gyhDjqE8FyxCj3RlH
edSiSHzRUN8a8HzXPqk6iRBVJM4Jz+PS94I3TU84O+9fcBaEavBllKpIvN/A8cKH
AaXJa/ZJDtbG+BvAmOebCT3IwjKv6b6BgESdn3vZlS/A+zur09Wbijkhr76IY+Hf
1KJtMpezC7HIjwnyRrNLphq5siIp2S4eHFlr3xFFRWw8p0s8VIggoiMhZX2RXFvW
JOUuqNMefH+XEyPJWcsh5e3VSAdUTi/dkV7Q</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cuni.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cuni.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.cuni.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cuni.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.cuni.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cuni.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">cuni.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIULCjAcsrMsv7o5QxyJDwHOrKHXdYwDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLaWRwLmN1bmkuY3owHhcNMTYxMTA5MTA0NTUxWhcNMzYx
MTA5MTA0NTUxWjAWMRQwEgYDVQQDDAtpZHAuY3VuaS5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBAMug2uqj5t2FT0nhHhLD2Bp2SyaezsYVSeCBwynz
YITrk4WHJz1ICwajpyLa2iEZEogUXoZpIrSG9H+IjMTS4KVs/Ziv09W4mPdDNDdb
YRDwTJCyTX7jX87cvwjJqogGAksnqIWWNPcxOFptldr7ZfysmsgGww1MnY609sYF
2hwoe/1ZoBMUM4Eog/olK0dAXkkLSAEzoYKgvGOCy2aBM8bdViU0v/HRvdXw/7vm
eyMPvyjck+5ri0d7uWunrLK0QB8AMeguLxVHWJmSfG3dCcwTCRTuzxdpHzHyA2lb
vGAYVFbptRCpk6tinigjOKYt9NJIxsaPbn2JVYqmz5yy5i8CAwEAAaNdMFswHQYD
VR0OBBYEFKLXjyayXUyr915Z2p8VY6dDffW/MDoGA1UdEQQzMDGCC2lkcC5jdW5p
LmN6hiJodHRwczovL2Nhcy5jdW5pLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBAQCiOx/0ukZn09gQC3LasAQkI9UHeBz4s3qMdU+1VbG1QC+2dWJn
ebu06K6BWFfNRoce64Ti8yEMCsjsXS7v/FOkkD77u8UfK7qInJwg0INcym8MxnYB
hD1a2QZg59+wB9JP5PFh4C4n0dOX2DbzM2lhpr2eN7f47Oc1MNPdLW+UzPzoChIC
P4rRCBsGj/9IkhYDfCgkiozuJ26UUwUeds8vcrjDXRPpUWMDBsT2ps5TOz8Hbgex
7TXTUIjljUTAE+gbwdVvoXLsxNKJ2DBSQqxIOCWlXpZOaA9LUDOPI7k4sDo/MVvG
PQgUwZJzFrXM3ZbkOO43MLbOXhktH0mA9CWg</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAM9R4fP/jTR0k9kHFW/FaZDo/NW+MA0GCSqGSIb3DQEB
CwUAMBYxFDASBgNVBAMMC2lkcC5jdW5pLmN6MB4XDTE2MDUyNjExNTQyNloXDTM2
MDUyNjExNTQyNlowFjEUMBIGA1UEAwwLaWRwLmN1bmkuY3owggEiMA0GCSqGSIb3
DQEBAQUAA4IBDwAwggEKAoIBAQDH813sVNIPKVY3vDfaxoCismLVXYTNvI+k9CaY
GlhB6Mj8zhuxTCXOElH4QNr3FWCCqXqTupxoDMzPIT13SykxpPIWmjK7ggvMD6wP
CXZ6kdkXCc3qFeIEbbiimL2h+OvgLhojkehq4J08HluF0gDasErMZyp4swaL0QIf
X0U0oM2yuXEgpt4+6+O3xpIZxcWI70JyLehb10Dwx14lvrDzzDMJhM0LZ53JJ90D
DwdXRo3be2XcOMjWa4wsPja9pH7rVDdoIKRUz8/xUEmjh7wqhiLo5Cz6G5EgPSaE
uDTRCU+Alf+8WRtsdmGL4Zfm99DugYh+5rtJMhSqWXdXuIFtAgMBAAGjXTBbMB0G
A1UdDgQWBBRCjfnntyIPiuKm/okbsefhmVqOizA6BgNVHREEMzAxggtpZHAuY3Vu
aS5jeoYiaHR0cHM6Ly9jYXMuY3VuaS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG
9w0BAQsFAAOCAQEAPmGp4R3sGhilsCzQ3vgpNrm8fgtiakrveBJW/XzSchgcP/1t
EP/TLzW0qZCvBC7IGK1qjhZ1CkFTaYoRtitG8ZL5P/ylizCUtlrI2qdRO18h+ljc
KABzl71uFKC962/6eiMjvkZUPexvvD51Pxmes414yQCg2HQyseH/82e59SGq/NgK
kyDP7MieMUUmLuAvaqiJjcxWh5SbcV+Bp9RNenYB8IIfPk4ADZxXUc5m91kF2JiK
Orhmx1+HTv0OlPr8/wD2In3B/QT9c6Tw6wehq27DK0AjChWoe3MOsIN9lptKBYQt
zQpS1UDLf4YYREUGcc3AuHxScKHlq4wrrsQjcw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUcc+rDXicRkvuNK4P3apAVdOfWwcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cuni.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cuni.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas1.cuni.cz/cas/sp/edugain/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Test SP at cas1.cuni.cz / eduGAIN</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací SP na cas1.cuni.cz / eduGAIN</mdui:DisplayName>
          <mdui:Description xml:lang="en">Test SP at cas1.cuni.cz for CAS development in eduGAIN</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací SP na cas1.cuni.cz pro vývoj CAS pro eduGAIN</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas1.cuni.cz/cas/login?client_name=edugain"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw
MTMwMzQ5WhcNNDMwNDE1MTMwMzQ5WjAOMQwwCgYDVQQDDANjYXMwggEiMA0GCSqGSIb3DQEBAQUA
A4IBDwAwggEKAoIBAQCDKL6Jnty3TLU5VvEimuL1Xcq3VOs64Wp2Men6rCBV2jiLm6WQ+vXYRcFq
ihUgHgJGqz2eBmbFyF7IQctu8R0KUyqvl8L66KYqtN5W/IjHtXXV2kOM/FSFaXqdOYi+hsnQEmMg
fFQcuesbn9uq3Shb/G7Nnq9DqwqqK+HcN4ix6z4pXn3pZh0sNSuTZ/dKcJZP1JdmasG3Y5dqPorY
gLBfixx0jx/b5Gvnn5Wm5J2BX6TkW50flVs1TZtrpu8q7Rc63G2uhFjlAbLsJdDNBvOSbOMKEHAI
HEFmHBQ2dEpdAY4KPYVhFaQ6DWisFkrw3T/uxtRn4TFzfGiLZgxaLgZfAgMBAAEwDQYJKoZIhvcN
AQEFBQADggEBADuyt/aC0InqI22CbaWcW8xMOBcqLSu3tS8oIkOdUqKfxyNnqW2lmwE/Hm94X8oM
mzaT/z7TDdJYy2gTkoaWUkYajN8GP/GyeC9yawEQ85pW953+e10eJpdDubJ15Fx4KS3nXcgZEDAB
Jr3nAkdcka/+4raDS3B3T6+xeK+wRSVVI/+sN/Qm/3+ESbVHb7h28Triqe4YX8f0wWmOTjSoPLfo
I8GnxOpF4jn/FyEQl03Il7NOulomsv2EIm4r9Ii11+0ZjbCEttMM5P3xN5iYp70myHkKVUAnvIuT
Pv+58muqc0T2Stqxh/cQx/ZVzRYOHjQz0g+skYB6TCOWmD1F7BI=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=edugain" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas1.cuni.cz/cas/sp/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Test SP at cas1.cuni.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací SP na cas1.cuni.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Test SP at cas1.cuni.cz for CAS development</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací SP na cas1.cuni.cz pro vývoj CAS</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas1.cuni.cz/cas/login?client_name=eduid"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw
MTMwMzQ5WhcNNDMwNDE1MTMwMzQ5WjAOMQwwCgYDVQQDDANjYXMwggEiMA0GCSqGSIb3DQEBAQUA
A4IBDwAwggEKAoIBAQCDKL6Jnty3TLU5VvEimuL1Xcq3VOs64Wp2Men6rCBV2jiLm6WQ+vXYRcFq
ihUgHgJGqz2eBmbFyF7IQctu8R0KUyqvl8L66KYqtN5W/IjHtXXV2kOM/FSFaXqdOYi+hsnQEmMg
fFQcuesbn9uq3Shb/G7Nnq9DqwqqK+HcN4ix6z4pXn3pZh0sNSuTZ/dKcJZP1JdmasG3Y5dqPorY
gLBfixx0jx/b5Gvnn5Wm5J2BX6TkW50flVs1TZtrpu8q7Rc63G2uhFjlAbLsJdDNBvOSbOMKEHAI
HEFmHBQ2dEpdAY4KPYVhFaQ6DWisFkrw3T/uxtRn4TFzfGiLZgxaLgZfAgMBAAEwDQYJKoZIhvcN
AQEFBQADggEBADuyt/aC0InqI22CbaWcW8xMOBcqLSu3tS8oIkOdUqKfxyNnqW2lmwE/Hm94X8oM
mzaT/z7TDdJYy2gTkoaWUkYajN8GP/GyeC9yawEQ85pW953+e10eJpdDubJ15Fx4KS3nXcgZEDAB
Jr3nAkdcka/+4raDS3B3T6+xeK+wRSVVI/+sN/Qm/3+ESbVHb7h28Triqe4YX8f0wWmOTjSoPLfo
I8GnxOpF4jn/FyEQl03Il7NOulomsv2EIm4r9Ii11+0ZjbCEttMM5P3xN5iYp70myHkKVUAnvIuT
Pv+58muqc0T2Stqxh/cQx/ZVzRYOHjQz0g+skYB6TCOWmD1F7BI=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=eduid" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/metadata.php/default-sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEtzCCA5+gAwIBAgIJANklDQORgTZlMA0GCSqGSIb3DQEBBQUAMIGYMQswCQYDVQQGEwJDUzEXMBUGA1UECBMOQ3plY2ggUmVwdWJsaWMxFjAUBgNVBAcTDUZyeWRlay1NaXN0ZWsxFjAUBgNVBAoTDUxlbnRlYSBzLnIuby4xCzAJBgNVBAsTAklUMRMwEQYDVQQDEwpsZW50ZWEuY29tMR4wHAYJKoZIhvcNAQkBFg9pbmZvQGxlbnRlYS5jb20wHhcNMTQwNTI5MTI1MzIxWhcNMjQwNTI4MTI1MzIxWjCBmDELMAkGA1UEBhMCQ1MxFzAVBgNVBAgTDkN6ZWNoIFJlcHVibGljMRYwFAYDVQQHEw1GcnlkZWstTWlzdGVrMRYwFAYDVQQKEw1MZW50ZWEgcy5yLm8uMQswCQYDVQQLEwJJVDETMBEGA1UEAxMKbGVudGVhLmNvbTEeMBwGCSqGSIb3DQEJARYPaW5mb0BsZW50ZWEuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5PhlVjNv8g1jEylxl64HGQRXgYfpiN/aohby4VUvXxOc6myrkBc74REaesEjBkFBwOjwQGYdZghlajkVNu9Ta3ljtEv1GJemKYCCrsc8/dWlAB1otlGROv6A2MR9Ejiy+V6Ri/0jGmMzdS+N5ME4ArSrhVvRMCBGEaG6cpr6Z+OdlU/E+0h/pFBfYPJUnOzA5BPrvJjABQyqG6DslMOvEXuKDS/JIMnVuFD/1FWGyLNflk7IVlN0b53M6BrET+GI5pzKG9pdpK/GfJl0FemuoU/FaDEn6YM3DckRGNXEWpBxFI+4+MgzdA7GeQo5TtBovShhHW5gtNJpV6BnBOY/sQIDAQABo4IBADCB/TAdBgNVHQ4EFgQUwIW6yozBkebbQuY+eB8IurvxGt0wgc0GA1UdIwSBxTCBwoAUwIW6yozBkebbQuY+eB8IurvxGt2hgZ6kgZswgZgxCzAJBgNVBAYTAkNTMRcwFQYDVQQIEw5DemVjaCBSZXB1YmxpYzEWMBQGA1UEBxMNRnJ5ZGVrLU1pc3RlazEWMBQGA1UEChMNTGVudGVhIHMuci5vLjELMAkGA1UECxMCSVQxEzARBgNVBAMTCmxlbnRlYS5jb20xHjAcBgkqhkiG9w0BCQEWD2luZm9AbGVudGVhLmNvbYIJANklDQORgTZlMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQEFBQADggEBABPWiu40t3jmax8+06E3PIQuaN95dKMxSeBdADkLcm/hvsrPuIzd31Q62UVnctXlu58vl1RHBazney7VfPMGL1V5XLMaja2M3Wwi9xV1zg4+r/hz/uTcOPwGlZrkOErF5bBMu14NZ/9TgIWp4Zqg3512x0L9oTNBccfU3XtjP14CCbznVic/lQne1weklujnqJJ463tnddYJ/2tTPqntNh1xeReqtB1flJRiec8OJFEN7wiVNNRyps9G5uruH+2luUcod0FniBJsPlUx0dvzlWIKSRDPE6yCy/DyuAFHlgOWgwelbSXBl5wrletFohyg+oONtoZQ9HkjnlRPQc5TQSc=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">lentea.com s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">lentea.com s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">lentea.com s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">lentea.com s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.lentea.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.lentea.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Kopriva</md:SurName>
      <md:EmailAddress>david.kopriva@lentea.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://cbvk.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">cbvk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Research Library in Ceske Budejovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Jihočeská vědecká knihovna v Českých Budějovicích</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of The Research Library in České Budějovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Jihočeské vědecké knihovny v Českých Budějovicích</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cbvk.cz/index.php?&amp;lang=EN</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cbvk.cz/index.php?&amp;lang=CZ</mdui:InformationURL>
          <mdui:Logo height="40" width="94">https://cbvk.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cbvk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cbvk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cbvk.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cbvk.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Research Library in Ceske Budejovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Jihočeská vědecká knihovna v Českých Budějovicích</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Research Library in Ceske Budejovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská vědecká knihovna v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cbvk.cz/index.php?&amp;lang=EN</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cbvk.cz/index.php?&amp;lang=CZ</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://chadwick.krizik.eu/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">krizik.eu</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Frantisek Krizik Grammar School and Primary School, s.r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Gymnázium Františka Křižíka a základní škola, s.r.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Frantisek Krizik Grammar School and Primary School, s.r.o. Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Gymnázium Františka Křižíka a základní škola, s.r.o..</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.krizik.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.krizik.eu</mdui:InformationURL>
          <mdui:Logo height="50" width="76">https://www.krizik.eu/project/2/cache/domain1/images/386-635482778440023297-0x50-r-.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUTIwSW0oSDzx9iSjmEfOAeRzlzVAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUVo27fA2RqM0k1MNCwo1NLwjgpA8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUIo/LyWu9SOfFwCH0q3JJc+zJ9ecwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://chadwick.krizik.eu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://chadwick.krizik.eu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://chadwick.krizik.eu/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chadwick.krizik.eu/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://chadwick.krizik.eu/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://chadwick.krizik.eu/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">krizik.eu</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUTIwSW0oSDzx9iSjmEfOAeRzlzVAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUVo27fA2RqM0k1MNCwo1NLwjgpA8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUIo/LyWu9SOfFwCH0q3JJc+zJ9ecwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://chadwick.krizik.eu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Frantisek Krizik Grammar School and Primary School, s.r.o.</OrganizationName>
      <OrganizationName xml:lang="cs">Gymnázium Františka Křižíka a základní škola, s.r.o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">František Krizik Grammar School and Primary School, s.r.o.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Gymnázium Františka Křižíka a základní škola, s.r.o.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.krizik.eu</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.krizik.eu</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Prusa</SurName>
      <EmailAddress>mailto:martin.prusa@whitesoft.eu</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://chomutovskaknihovna.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">chomutovskaknihovna.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Chomutov Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Chomutovská knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Chomutov Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Chomutovské knihovny</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.chomutovskaknihovna.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.chomutovskaknihovna.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="208">https://mkchom.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+zCCAuOgAwIBAgIULoEm/Bazr+fihEnvh0U0VZZj51swDQYJKoZIhvcNAQELBQAwgYwxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEbMBkGA1UEAwwSbWtjaG9tLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0yMTAzMjUxMjE5NDlaFw0zMTAzMjYxMjE5NDlaMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGzAZBgNVBAMMEm1rY2hvbS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCvgZ3HFzL/C0B0kqqrnXHstYAK7wwxl8CD54GmJXTTegWVZcQqX9M7u7ZPDY0/s+cpCes6tZOm94AO85lvrn7c9MbKGNVFf5q0+FNI9ywdY+p/AEtizs9c0XCSS0L+2LIPEgCJAepRw26fqSsp0IL9Ojqf5w+TljS1HEobDBeQg9qNCY9PSf7q+qYt/H1iKpPp+2PJa+Gss4dJVEewCUlZ2HRTSOfJQGXNdcTGxjB8+5sszihnCr1q6T/NiVGS6vYEKAKvnnkjsGhlGh1BjbKBL5EmPSBfpAJXdzf+pBpMqV24U5cNwufqzIwfQPNUGkjiuRVMKePAfX8/5VcmByddAgMBAAGjUzBRMB0GA1UdDgQWBBTPy+4UoXOQHTTxCrW4zfLE+RdJkTAfBgNVHSMEGDAWgBTPy+4UoXOQHTTxCrW4zfLE+RdJkTAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCNo5twgGDaBUH97LZr81UyjsyBaqTbS8jxgsKGADPppdDOhRbxV3nvK7BSu7OkIynmiysjT+rGKAAgpy9amxQwKv1AIzMSCQNo0TjbRHEki+qc2Sm+0OyDXE7ChB/wZNtRDTBgq+F+Bl2xyuqZNKRMvGGEW7w2v5Tn+m1HivIYvDlnj6ts+t975ZVxA7AYGod+BlH0+YgVe9KOSODZonE57gpeO7MxShBFqc3Dan7OaIFRJar+U1hUZs4hazgRXNVvbPL9lGZbBsGP31QaOUcKUU1jMfklUIrgBEAld+V8YX5AAy+xMhHJiHJFoH3sYT6zfvMLQTQqlOPrrKyw+6lu</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkchom.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkchom.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkchom.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkchom.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Chomutov Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Chomutovská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Chomutov Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Chomutovská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.chomutovskaknihovna.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.chomutovskaknihovna.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cis-login-eduid.vscht.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Login portal, CIS UCT Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:DisplayName>
          <mdui:Description xml:lang="en">Login portal, CIS UCT Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://cis-login.vscht.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://cis-login.vscht.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://tvp.vscht.cz/images/0!0/uzel/18546/logoVSCHT_zakl.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cis-login-eduid.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cis-login-eduid.vscht.cz,OU=CIS-IT_shib,O=CIS VSCHT Praha,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIFUTCCAzkCAgCoMA0GCSqGSIb3DQEBCwUAMHwxGDAWBgNVBAoTD0NJUyBWU0NI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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The University of Chemistry and Technology, Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The University of Chemistry and Technology, Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.vscht.cz/english/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.vscht.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Horníček</md:SurName>
      <md:EmailAddress>jan.hornicek@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ciselnik.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Organizations directory</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Číselník organizací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Organizations directory (not only) for eduID.cz and eduroam.cz.</mdui:Description>
          <mdui:Description xml:lang="cs">Číselník organizací (nejen) pro eduID.cz a eduroam.cz.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ciselnik.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ciselnik.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ciselnik.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://ciselnik.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ciselnik.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUUsugP6gf/ZT5VBmEzdcsz7cDQ3YwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Organizations directory</md:ServiceName>
        <md:ServiceName xml:lang="cs">Číselník organizací</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Organizations directory (not only) for eduID.cz and eduroam.cz.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Číselník organizací (nejen) pro eduID.cz a eduroam.cz.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ckis.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ckis.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ckis.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ckis.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ckis.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDlTCCAn2gAwIBAgIJAM4Urn1svIKjMA0GCSqGSIb3DQEBCwUAMGExCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ckis.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/metadata.php/collector">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml2-logout.php/collector"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml2-acs.php/collector" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml1-acs.php/collector" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml2-acs.php/collector" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml1-acs.php/collector/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Cesnet TMC</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Cesnet TMC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Cesnet TMC</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Cesnet TMC</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.liberouter.org</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Cesnet</md:GivenName>
      <md:SurName>TMC support</md:SurName>
      <md:EmailAddress>tmc@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cpk-front-devel.mzk.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/DS" index="1"/>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
BAMTEGNway1mcm9udC5temsuY3owHhcNMTgwODI0MDUxOTQ2WhcNMjgwODIxMDUx
OTQ2WjAbMRkwFwYDVQQDExBjcGstZnJvbnQubXprLmN6MIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAxmBJpBendcnsTUwvvCrjZQ4pL68CrreUiSI5yo5B
WFPZSPWivL8yzpoRy58ORBUDzotkt9eLPYhTmwnpPaK0YojXYKxVWPGZeUyJAFnL
mIzD37pBhu+kEMtJPBfW+FlFUmhTOlEfzyjw4jbWoXShisGRT3jZ9fo1jovtA0fo
hhEkLgfmBWnVNXZ56S87AFwnmRp8/bPwrymD7v0DPEKot4tpVy8BwysAKLtYpHC/
34ok4sRGc17CiQBujTMfU9bJlEteGWXTKXWfUNW47V14LX4sHDstOAnWd/vsUlWp
SNXI+N5067hHSFJCmEcWbs4ucdk8yOowd+aJdIBotsvRAwIDAQABo1kwVzA2BgNV
HREELzAtghBjcGstZnJvbnQubXprLmN6hhlodHRwczovL2Nway1mcm9udC5temsu
Y3ovMB0GA1UdDgQWBBQ6m3JSrGhB4VDWxlwMadT+OGm3zzANBgkqhkiG9w0BAQUF
AAOCAQEAspo2G1ipPcs+VVAow7m2g3r5CbKN83zKNW5rkUGSMj2/e4490m55p/Ae
/dH4KaxDaC2AM3wcn/N+o/ftmmRMF2qAXIEPhyTSoq5gCOFLGfu8oaRfVuzBFrDc
u9rmOJ6QbLhWwIUzsz7UjtKPf+4vhpDao5WNGH4L8HayRa7N46EZDC8n+SPvV+k1
64lVo+N9cQYlPfb3/MDK9z5sBtqljA3O/sRlfIbAqJqmOvknATzKbX2pwvJK3vHs
gRMTjU8nnrXP+FKAweVA1lhy65SILr7bkbAHqekcYDyZ6NjVcVkCEAIW70yh1NJX
EydrxWL0Xs1btUqrx8bojR4+II+CIA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cpk-front.mzk.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/DS" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/DS" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/MoZeK"/>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/Artifact/SOAP" index="4"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/Artifact/SOAP" index="5"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/Artifact/SOAP" index="6"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/Artifact/SOAP" index="7"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/Artifact/SOAP" index="8"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/Artifact/SOAP" index="9"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/Artifact/SOAP" index="10"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/Artifact/SOAP" index="11"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/Artifact" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/ECP" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/POST-SimpleSign" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/Artifact" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/ECP" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/POST" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/POST-SimpleSign" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML/Artifact" index="24"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML/POST" index="25"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/Artifact" index="26"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/ECP" index="27"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/POST" index="28"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/POST-SimpleSign" index="29"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML/Artifact" index="30"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML/POST" index="31"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/Artifact" index="32"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/ECP" index="33"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/POST" index="34"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/POST-SimpleSign" index="35"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML/Artifact" index="36"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML/POST" index="37"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/Artifact" index="38"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/ECP" index="39"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/POST" index="40"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/POST-SimpleSign" index="41"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML/Artifact" index="42"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML/POST" index="43"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/Artifact" index="44"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/ECP" index="45"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/POST" index="46"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/POST-SimpleSign" index="47"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML/Artifact" index="48"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML/POST" index="49"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/Artifact" index="50"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/ECP" index="51"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/POST" index="52"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/POST-SimpleSign" index="53"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML/Artifact" index="54"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML/POST" index="55"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/Artifact" index="56"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/ECP" index="57"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/POST" index="58"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/POST-SimpleSign" index="59"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML/Artifact" index="60"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML/POST" index="61"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/Artifact" index="62"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/ECP" index="63"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/POST" index="64"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/POST-SimpleSign" index="65"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML/Artifact" index="66"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML/POST" index="67"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/Artifact" index="68"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/ECP" index="69"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/POST" index="70"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/POST-SimpleSign" index="71"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML/Artifact" index="72"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML/POST" index="73"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/Artifact" index="74"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/ECP" index="75"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/POST" index="76"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="77"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://csnonlinefirmy.agentura-cas.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Technical standard database</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Databáze českých technických norem</mdui:DisplayName>
          <mdui:Description xml:lang="en">Technical standard database.</mdui:Description>
          <mdui:Description xml:lang="cs">Databáze českých technických norem.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://csnonlinefirmy.agentura-cas.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://csnonlinefirmy.agentura-cas.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.agentura-cas.cz/wp-content/uploads/2020/01/cas_logo-cze.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>profi</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=profi</ds:X509SubjectName>
            <ds:X509Certificate>MIID1jCCAj6gAwIBAgIJAIhqRZClDUuAMA0GCSqGSIb3DQEBCwUAMBAxDjAMBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2021</ds:KeyName>
          <ds:KeyName>csnonlinefirmy.agentura-cas.cz</ds:KeyName>
          <ds:KeyName>https://csnonlinefirmy.agentura-cas.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=csnonlinefirmy.agentura-cas.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEVDCCArygAwIBAgIUei6V8W83eikq8gAVpsajvgj5AdQwDQYJKoZIhvcNAQEL
BQAwKTEnMCUGA1UEAxMeY3Nub25saW5lZmlybXkuYWdlbnR1cmEtY2FzLmN6MB4X
DTIxMDMyOTE4MDg1OFoXDTMxMDMyNzE4MDg1OFowKTEnMCUGA1UEAxMeY3Nub25s
aW5lZmlybXkuYWdlbnR1cmEtY2FzLmN6MIIBojANBgkqhkiG9w0BAQEFAAOCAY8A
MIIBigKCAYEAzVEJ4EfSykrBCJw1+JdZRY2Ny6Ak/DfZ33eDfISLUM+O76Q5yms3
EtIdBrj7UuLOWiBxiXJCxkP0AWJt71eRuhBDFPibdIksW1g4nd56enIdIORrAIET
+WUURqaGqL+/XHT6KNamlS80IdMKNfjbD3W4NkFQoMrl4cKDxPcMiMcRgTN8AVuF
hASh5RaCQ8wq7vP5IAeWKW1kEBcj0KaO3xnz2DQbGb/JdQ5mWc6fe3rahz61jqTD
vpb5Xq7DpFCxFYt3fyTXhoUaByDsMZwdWyF0Yq9hpP5B40XK14DVUhPyCOuOUCaD
xOmWVvyWA2sFZvkcZv4m0456mCMTTxrkLjyAEDt+dB04Q1ZrMS7TRWOYlhFXq1DT
NdgEH4HA5Zl8Zpwpd6d/7B/WJo6p2d3sv1kT/7vx1ZyP88v3XRwsCxKnEclYRKMR
3xtnoLc9578XZh8P6kbB8SM8hGs2QTjWg4TlIFY4gu1SZIJSBLgT7YSFfmBybvJE
cpKisqcSQMqJAgMBAAGjdDByMFEGA1UdEQRKMEiCHmNzbm9ubGluZWZpcm15LmFn
ZW50dXJhLWNhcy5jeoYmaHR0cHM6Ly9jc25vbmxpbmVmaXJteS5hZ2VudHVyYS1j
YXMuY3owHQYDVR0OBBYEFPF0H35vJc4fPofPHKr6JkSipcYHMA0GCSqGSIb3DQEB
CwUAA4IBgQCbWeEAPH6VMvWRNpM/Fnvv6Dqv+mPVHl0X7ZKt2PfXpurYympvVFPj
2UCQ0GavnJaUXtwLP1cY9Db3uizwFx8nU1lcN59k2XJow80wQ184ZX70fm1krJ/g
HP15C57Mmr8TfvGq0i5Gi/Aq7TiZlRG6JtX8RLgBM5iSMkVn4M/rPAPBPvxWRMep
Ui+iEEM1wnaarZuX3f7j7wgZ21Ibvil1rSlfwNR8LajNYoSr2uoK3/mMbpHo+Yhd
PHqJcGcctakZoQ42CABY5TLsdvk5Hbqx3dsZbUcPLFxS2CrhYrDqOaJf/oHv6yeG
NTADN52Qof+stHHBhYOlxrbYVc4gTLRrVnwEmyqRA2w4Cq3PyE/GTLixT3fWKMgR
7XhjxQhYuR3zJKAHo2b/yQHNLrIwuJn2OvEGO9S6JpViXy3eusr9r8tZWfFEEd9b
rqKeUOWSQf49P2mizzWCu04YQ9LaG/oaeIhklxwgxU6gdunQbteYpL1CG+GeYKek
HS7rzR87uf0=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Technical standard database</md:ServiceName>
        <md:ServiceName xml:lang="cs">Databáze českých technických norem</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Technical standard database.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Databáze českých technických norem.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CAS</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČSA</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech standardization agency</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Česká agentura pro standardizaci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.agentura-cas.cz/?language=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.agentura-cas.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Purchart</md:SurName>
      <md:EmailAddress>mailto:purchart@agentura-cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CUNI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Charles University</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Universitu Karlovu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45</ds:KeyName>
          <ds:KeyName>cuni.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CUNI</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Charles University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Universitu Karlovu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cuni.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library  Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://cuni.futurebooks.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://cuni.futurebooks.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cuni.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cuni.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cuni.futurebooks.cz</ds:KeyName>
          <ds:KeyName>https://cuni.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cuni.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUVRbY5CIzOdBWTPmP1zyjLuNG2j4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cuni.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CUNI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Charles University</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Univerzitu Karlovu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282</ds:KeyName>
          <ds:KeyName>cuni.preview.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CUNI</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Charles University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Univerzitu Karlovu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/metadata.php/cz-online.aliveplatform.com">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml2-logout.php/cz-online.aliveplatform.com"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml2-acs.php/cz-online.aliveplatform.com" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml1-acs.php/cz-online.aliveplatform.com" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml2-acs.php/cz-online.aliveplatform.com" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml1-acs.php/cz-online.aliveplatform.com/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">GTS Alive, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">GTS Alive, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">GTS Alive, s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">GTS Alive, s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.isic.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.isic.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Klein</md:SurName>
      <md:EmailAddress>radek.klein@isic.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dataset-catalog.liberouter.org">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Katoda - Dataset Catalog (Production)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Katoda - Katalog datových sad (Produkce)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dataset catalog.</mdui:Description>
          <mdui:Description xml:lang="cs">Katalog datových sad.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dataset-catalog.liberouter.org/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dataset-catalog.liberouter.org/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dataset-catalog.liberouter.org/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>katoda.liberouter.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=katoda.liberouter.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUK+dIykb3bocRW8bEH4ON9AiXx1owDQYJKoZIhvcNAQEL
BQAwIDEeMBwGA1UEAxMVa2F0b2RhLmxpYmVyb3V0ZXIub3JnMB4XDTI1MDMxODA5
NTMwMloXDTM1MDMxNjA5NTMwMlowIDEeMBwGA1UEAxMVa2F0b2RhLmxpYmVyb3V0
ZXIub3JnMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAsquig1aBMfrl
HixsZ2cYdfw1zwH56fGl1YwrGJNf0+XhOZT9vyjFwSzSzTmvC6eyIrIQPWAVMKWJ
2X9CK4j2rX677/an/OszRhjOkbtnIhW1hX+LDcs47/ztD/omiPWRndtRVLKdlF+f
dCmkk3wcMkvmbW+3i5ZL8sodF2dkbXaQBIVV5n9qFqwm9HvxeWiFHRMa4yWVr96t
JADtdmNLy3ytDexO1SylCsrLpHUlwTpuzF/TyHxpCqTR3a/UhTN95ToTbNqRzzAt
jT97xZ7ZeMtU3f/UOwrHbMGa4HpXpZp66u1mlho4d4GKXknRA4YbMMzC5eT8FQQk
rew/+4uUNH6go+V5xbQ3fJbBZj6HzNYWNzi6dvmUhnLCJY7uXeNuXpculAyf0e0F
xc6F+qBarp96ElNJ4Cqiv+a6KpWOoXrIKWFUpEO1W7GcgG6rcA05/B31qJWlKrNk
VVJOgBLnJ64vWQMQaystKl5wkA/KcepYT/H9Krd9mvtYQ6lYRZCDAgMBAAGjWjBY
MDcGA1UdEQQwMC6CFWthdG9kYS5saWJlcm91dGVyLm9yZ4YVa2F0b2RhLmxpYmVy
b3V0ZXIub3JnMB0GA1UdDgQWBBT2temcpPVR9MHK9vhNHGEpb9qqcDANBgkqhkiG
9w0BAQsFAAOCAYEAJr1GI1rOhSuFdDrmzAEV+y0bpVNqt35zit6YIT6D57fGwD/W
osjvInuoNLQq4oZ3cC/mQtGzrowed9UQttvVFvIJn6+iKatif/eEtAmaRI3GtCjV
T5XDBQ9CiH0J+Z5MUhZ4rODpMNALWu9ZUkNaaTJJ149UwFR9lxJHTRQSI1jBKfFv
XrrKt5mERCedKnnQLYwTjsfjutjdIyytYsWeN24QS4fd+m0/hIlHi4EULVP3iXKO
sHDNa1n1ikch9TQMghE32DkLitHQjnpuZ8ug78n4ngcNEEU0moTgG+fGgzY6EeQ0
Xhce9bIXK+yDfswobbLBsmY7CfWd0qp1E5fbAKcCaDKCi4XcgORO6Hrfs49GVo9h
//zP7Uf8OV4Tq3dB5EKZJquDeY314MsEqtZ0KT3wg8S95EynCC/RCfRDj90oEWks
NLCul4Jf9aDQ0xvF0TRgBbqhgUqQHQ1W04N1hfsFbNh0yLsU0RtnGyOJlp1KAKIL
ZyCi3Fu214ls+zV+</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>katoda.liberouter.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=katoda.liberouter.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIEETCCAnmgAwIBAgIUJK9BKbEg7xF0ovaZ125Mzd5WH/0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Katoda - Production</md:ServiceName>
        <md:ServiceName xml:lang="cs">Katoda - Produkce</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dataset catalog.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Katalog datových sad.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Beneš</md:SurName>
      <md:EmailAddress>mailto:benesdavid@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://datel-demo.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Datel-demo</mdui:Description>
          <mdui:Description xml:lang="cs">Datel-demo</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://datel-demo.upce.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://datel-demo.upce.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://datel-demo.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datel-demo.upce.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>datel-demo.upce.cz</ds:KeyName>
          <ds:KeyName>https://datel-demo.upce.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=datel-demo.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUMR7Bfr0Repp52xGoB8qUbP+afm0wDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAxMSZGF0ZWwtZGVtby51cGNlLmN6MB4XDTIxMTEwMzA3NDU1
NFoXDTMxMTEwMTA3NDU1NFowHTEbMBkGA1UEAxMSZGF0ZWwtZGVtby51cGNlLmN6
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA0vjIIpzzilIlaGeL3PE1
gihYjYotblG0n5Edcd1SNW89CR1IDz2d5D34ThcCeKLZ9j/LsKhvcD9syGlh76b/
RxBpBNucRQxp8Rogs7G5NXpBL8DQsXulyEzZRI20johyWa1mAx+ACwbAP+qTrspm
WrQoBmUD39yzOoJv1RBt+0hFBwG9LdHsu78T+ZRL8IlQrBi5/2yFBtEVXEEBmDIK
iIWQffhAhmlzpIBygTl5zDCt4VxHuuxbi87lNxPsZvFz3D/zNXUf9xwsCs8K5z0H
/jydI7RGRmWEsbbx4UbLWV0J0T/7KCIusYeNWPrP/H4Gg72FPpp28JH1hmYRsSaP
KlRecDDF3VWppLrvSbDU2ci4Uwwoj83WHsWbS+DXg0OiLioI632gBteHIvlYaSWc
wcM9GuZsPbkItIMJnYSYGxkXRApWv0y0MIyVxTvkgPOU+qPBOW+P9cqcZVqC58Ae
QEkyfD/7pYPiEHOvY3FD1J/3AY39eUG1Lai8JsirCX5NAgMBAAGjZzBlMEQGA1Ud
EQQ9MDuCEmRhdGVsLWRlbW8udXBjZS5jeoYlaHR0cHM6Ly9kYXRlbC1kZW1vLnVw
Y2UuY3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUxHegHfjrX2kITJc/+qEH0UKFzdgw
DQYJKoZIhvcNAQELBQADggGBAEJ6zhW+/h3POK0kSANjziQx0bFqh11rws5/TKAW
E/6j26oEv9bwJVuN933KG3h6+iF93hxcfsq5ZWnXZQjMIxMUt4bCfLYuZrJUNtP3
PCgTPePLulUak9xcSAd2DwaKKlr312/1g5SLCH2L0zV4iRoY2nEko+Ij/13JJT9f
7ezVC6ouIE71PpNmupTVWZWMYoPfKWA2ErF5qY8tPHgpX1LOkdDiPC0lF3cylNao
fFI6qQb/N/WOkzsrZSVEeDjTNv28KQTjj4NoGmEUrHZOFu67UN7st0LDq8akkYwe
R/bLYKRkpfVdjxb/E9+cgiofCxWywh7kOjWgFm4lpOsotbC4O7w8/7tX/ZCbCuv8
rX7MnioZ4mWigjX+UAjkQBUGa+uxj7QlfZ++SlOptooRdhOXpRSIll/P0NEP8xft
ykznj4uKNysOmC2YkVsfpl3kfMDdMNBfusQSkxcNtXd2cXw68Juzqfz+tcWWmj7C
ZUcGmAz0vjFsnFxpKL3SctNqLw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://datel-demo.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Datel-demo</md:ServiceName>
        <md:ServiceName xml:lang="cs">Datel-demo</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Datel project, demo enviroment.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Projekt datel, demo prostředí.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dbsportal.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">DBS Portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">DBS Portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">Application for supporting database education.</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace na podporu výuky databází.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dbsportal.cz/info/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dbsportal.cz/info/cs</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dbsportal.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://fit.dbsportal.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://czu.dbsportal.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://jcu.dbsportal.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dbsportal.cz</ds:KeyName>
          <ds:KeyName>https://dbsportal.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dbsportal.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDDCCAnSgAwIBAgIUO5wgd3PvdWKjOFycckqid2IMUv8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fit.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://czu.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jcu.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="4"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML/POST" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML/POST" index="24"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">DBS Portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">DBS Portál</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Application for supporting database education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Aplikace na podporu výuky databází.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">FIT CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">FIT ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Information Technology, Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fakulta informačních technologií, České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.fit.cvut.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.fit.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Hunka</md:SurName>
      <md:EmailAddress>mailto:hunkajir@fit.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dhcp.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">DHCP registration</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Registrace DHCP</mdui:DisplayName>
          <mdui:Description xml:lang="en">Workstation registration in DHCP server</mdui:Description>
          <mdui:Description xml:lang="cs">Registrace stanic v DHCP serveru</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dhcp.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dhcp.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dhcp.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dhcp.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dhcp.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dhcp.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://dhcp.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dhcp.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJAO6AdTB4WKePMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dhcp.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a.l.e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z.s.p.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Nejman</md:SurName>
      <md:EmailAddress>mailto:nejman@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://digi.law.muni.cz">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Digital Library of the Faculty of Law MU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Právnické fakulty MU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Publications related to law published since 1800 in czech lands.</mdui:Description>
          <mdui:Description xml:lang="cs">Publikace z oblasti práva vydávané od roku 1800 v českých zemích.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://digi.law.muni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://digi.law.muni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://digi.law.muni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>digi.law.muni.cz</ds:KeyName>
          <ds:KeyName>https://digi.law.muni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=digi.law.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAPYfNd/AzT23MA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digi.law.muni.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://muni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vlastimil</md:GivenName>
      <md:SurName>Krejčíř</md:SurName>
      <md:EmailAddress>mailto:kic_admins@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://digitool.is.cuni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://digitool.is.cuni.cz/shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://digitool.is.cuni.cz/shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>digitool.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=digitool.is.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDozCCAougAwIBAgIJAK92H6tieviqMA0GCSqGSIb3DQEBCwUAMGgxCzAJBgNV
BAYTAkNaMSMwIQYDVQQKDBpVbml2ZXJ6aXRhIEthcmxvdmEgdiBQcmF6ZTEWMBQG
A1UECwwNU2hpYmJvbGV0aCBTUDEcMBoGA1UEAwwTZGlnaXRvb2wuaXMuY3VuaS5j
ejAeFw0xNTEyMDMxNTEyNDZaFw0yMDEyMDExNTEyNDZaMGgxCzAJBgNVBAYTAkNa
MSMwIQYDVQQKDBpVbml2ZXJ6aXRhIEthcmxvdmEgdiBQcmF6ZTEWMBQGA1UECwwN
U2hpYmJvbGV0aCBTUDEcMBoGA1UEAwwTZGlnaXRvb2wuaXMuY3VuaS5jejCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANYSFDW53c2w4PSKsmPjOa6022vV
5lA1N8t89t98b8mTkZMAvb4gtmnTaERaNm/edUMxNvH+ETof2rWf3/W4zzW8ADac
fOrRuuXSvcpk5/w262x3byMykEZcEjrJSOp6svPk8627WlCkFBWXJMhDOrmrPMsB
IypL9GANG62m4nv6asOCJ2RwxOV+at/uKjbGT0ZW1ZMMq/79WyiSwiSqXqDtO2LV
RBLUfFOV4tLEUUDVKSa6Rve2kUYya0toU1Ix/5iLpyNH+JA9Ihs1tyVpou0jVJXg
B3kFneh/tdbc+r+VmcGN3TuLwM5w6zMYQHc0cmO7UHtbdL1OZXsNQqrRH40CAwEA
AaNQME4wHQYDVR0OBBYEFPhWVPQwRWsjLws4xsB5kmbkv2crMB8GA1UdIwQYMBaA
FPhWVPQwRWsjLws4xsB5kmbkv2crMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQEL
BQADggEBAJ0kKnaH+SzVu6lNJSNbGcWk+uVBfwWn5FwCCRZenAlTx9Dfz8RY1Hgx
MmBq+M1LUX5oy+pX5QJxUAHezQlAnXue05Pd+Id+lcjyoe0/2mIz7gTaXYhleqIS
kYbaOqqmETVxZE9Qu5uqD+CrV34Kpq4GYIIc+MMmwVIltPCPpgZIf6k9EUXpfVsz
L59kSL/izoCXpCP55WI4U6JcCbxocu9goPEpCQZ3ufLB8Tf2qkW+gpmW4xzHAXnL
4h8cpZwG1sxHrjOz1N4IQwxSIqVYEC82yOUh7EXY8YksgtZWZPnMth8VXtawua3F
OVwBT/eB4NHRU4kMHrYnKJKqSyqnF4E=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digitool.is.cuni.cz/shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dl-archiv.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle courses archive</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Archiv Moodle kurzů</mdui:DisplayName>
          <mdui:Description xml:lang="en">Moodle courses archive</mdui:Description>
          <mdui:Description xml:lang="cs">Archiv Moodle kurzů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dl-archiv.cuni.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dl-archiv.cuni.cz/?lang=cs</mdui:InformationURL>
          <mdui:Logo height="90" width="128">https://dl-archiv.cuni.cz/moodle.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dl-archiv.cuni.cz</ds:KeyName>
          <ds:KeyName>https://dl-archiv.cuni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dl-archiv.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUXi9hVY4GZUAtVHayBiETHMaMvNYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle courses archive</md:ServiceName>
        <md:ServiceName xml:lang="cs">Archiv Moodle kurzů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle courses archive</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Archiv Moodle kurzů</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles Uviversity</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://cuni.cz/UK-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for Stellenbosch University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro Stellenbosch University</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Stellenbosch University</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Stellenbosch University</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
          <mdui:PrivacyStatementURL xml:lang="en">https://fair-wizard.com/privacy-policy</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97</ds:KeyName>
          <ds:KeyName>dmp.sun.ac.za</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for Stellenbosch University</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro Stellenbosch University</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Stellenbosch University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Stellenbosch University</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://dolni-bousov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">dolni-bousov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library and Infocentre in Dolni Bousov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna a infocentrum Dolní Bousov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library and Infocentre in Dolni Bousov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny a infocentra v Dolním Bousově</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna.dolnibousov.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna.dolnibousov.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://dbousov.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dbousov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dbousov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dbousov.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dbousov.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library and Infocentre in Dolni Bousov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna a infocentrum Dolní Bousov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library and Infocentre in Dolni Bousov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna a infocentrum Dolní Bousov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna.dolnibousov.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna.dolnibousov.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dpl8.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Weby 2.LF UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">2.LF UK webs</mdui:DisplayName>
          <mdui:Description xml:lang="en">Weby 2.LF UK</mdui:Description>
          <mdui:Description xml:lang="cs">2.LF UK webs</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.lf2.cuni.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.lf2.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dpl8test.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dpl8test.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDjCCAnagAwIBAgIUQsNqyrqOs0mMZbgo0IlR0waOMmUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dpl8test.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dpl8test.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDjCCAnagAwIBAgIUB0j8bOOOW0qXPOqLa543kyDRTugwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://imunologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telovychova.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jazyky.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vedecka-konference.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://epidemiologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fyziologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anatomie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ortopedie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://orl.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://histologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dvojka.edu.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://simulacemotol.cz/Shibboleth.sso/SAML2/POST" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.simulacemotol.cz/Shibboleth.sso/SAML2/POST" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clip.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verejne-zdravi.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.nadacnifond2lf.cz/Shibboleth.sso/SAML2/POST" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nadacnifond2lf.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cord.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="24"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="25"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="26"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace-dev.ufal.mff.cuni.cz/shibboleth-sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TEST - CUNI Data Repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TEST - Datový repozitář UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">A test version of CUNI Data Repository</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací verze datového repozitáře UK</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://dspace-dev.ufal.mff.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://dspace-dev.ufal.mff.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dspace-dev</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace-dev</ds:X509SubjectName>
            <ds:X509Certificate>MIID8DCCAligAwIBAgIUJZ66WOBh7s4IKLc6bvSDuNpI6eEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dspace-dev</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace-dev</ds:X509SubjectName>
            <ds:X509Certificate>MIID8DCCAligAwIBAgIUVLWQbUAU5MAgebhqlfYWo9PgFfYwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAxMKZHNwYWNlLWRldjAeFw0yMzA5MTQwODMyMTZaFw0zMzA5
MTEwODMyMTZaMBUxEzARBgNVBAMTCmRzcGFjZS1kZXYwggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQDXWOmqT0mgG4wfwL46YcNCY6wrqrVinHuISmvJJDsh
ySELT5LN/6S0DPfLLVM7X/FYiJQAmeUm7TDEQjqeGL72M0yhK3bdmBe8vCSbIUW/
rRDga3r850JJtH1ozaVsClNp0mGxww72HqAX6sUls3YE/7dbF5dZ9pe+ineua5UD
g5hls9lt28qghNM+M0O0+fOmbYEs4pH+o7iB5GNiYUSvootCPDmLdYFTFlp/k+RQ
P/9P+N5NnIIxqWfUkQqFPC1tbFtmvs9Fu+Id97LN7LV0gHNNQSSlPrEBpC1CVTYx
ha83YF73gBxoB+YDuFC/jlfCduL2V8W0QwUkrDn6ACitOaSG4ImzPcRRWD2tzuHV
g/Mkk8SsUL0qnLysHFMRa3fCsogLuXPjqk0CE+VLBDlgs4+FRKlioF7DATjZc0EP
JBqalcZzEIGSHadxfVGUZN1deFGn/sFyV+4Cgiw6X8uwo3M73zZraZHqa1oxqZeI
+SPgzjqPW9mfECTrzyHSVoUCAwEAAaM4MDYwFQYDVR0RBA4wDIIKZHNwYWNlLWRl
djAdBgNVHQ4EFgQUxfG70iQ0TA0dmnxdmQmKLMOERkkwDQYJKoZIhvcNAQELBQAD
ggGBAIRRHDPjKNLsDW5tGzp3LfARtm5v62T+Df6uF+pYHGeu4KqMvbQQXr9iyDKe
fZbReVWGJuFddnFiwH4WTq1tS4S3U3Ah/ShnlzXhhdJblsm0uDoLM9vRAbbV7KuU
tFiys1OeCnD8XS5IWWssqZvwapTH8mGLUs76vI0BSp3zUhHRXhYL8VbC/h2ISOIt
t1ZSOGFQRNXg/oZKwONhoBnfQZydN82iCbOgTi0ppfVCUCVZGRW9IN3qZLcJM16a
E6cewsXh4bB2FovIexUjfV2ZDRhmvpeX1LL5JUVTl6RhbAIHmrlnQLB8qvGphRu/
SniU2dw+az9HIa1fdvmKoeC284VTsylIhVpLGVuJwTN0vWLf9ipLvxtG8W/O6Lba
Ay1TnXfMnr6RQ8yoKshKjWzFZ8mKvgi7tnHEh6sce6TRKHc3hwOdD1FAYeYJiRXi
1UZpjizVUMlWQy5RBzNUpLlAqvZc6UGhXl8Myc+KajyzqJMnPrr5jrv0ouhNWdnY
tvF1PA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">TEST - CUNI Data Repository</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A test version of CUNI Data Repository</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:mace:dir:attribute-def:eduPersonEntitlement" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague, Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav formální a aplikované lingvistiky, Matematicko-fyzikální fakulta, Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚFAL MFF UK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ufal.mff.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ufal.mff.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Košarko</md:SurName>
      <md:EmailAddress>mailto:kosarko@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Straňák</md:SurName>
      <md:EmailAddress>mailto:stranak@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Authentication Support</md:GivenName>
      <md:EmailAddress>mailto:lindat-technical@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.amu.cz/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace.amu.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.amu.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">DSpace - AMU repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">DSpace - repozitář AMU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Theses repository</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitář kvalifikačních prací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dspace.amu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dspace.amu.cz/?locale=en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dspace.amu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace.amu.cz,O=Academy of Performing Arts in Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDcjCCAlqgAwIBAgIIM+c8V7acfyUwDQYJKoZIhvcNAQELBQAwUDELMAkGA1UE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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.amu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace.amu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace.amu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of Performing Arts in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Academy of Performing Arts in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.amu.cz/?set_language=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.amu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomas</md:GivenName>
      <md:SurName>Jungwirth</md:SurName>
      <md:EmailAddress>mailto:tomas.jungwirth@amu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ivanov</md:SurName>
      <md:EmailAddress>mailto:jakub.ivanov@amu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Digitální repozitář Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University Digital repository</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální sbírky fakult Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Collections of faculties of Charles University.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://knihovna.cuni.cz/rozcestnik/repozitare/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://library.cuni.cz/openaccess/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>dspace.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDWTCCAkGgAwIBAgIJAMmtMod1bH0fMA0GCSqGSIb3DQEBCwUAMEMxCzAJBgNV
BAYTAkNaMRswGQYDVQQKDBJVbml2ZXJ6aXRhIEthcmxvdmExFzAVBgNVBAMMDmRz
cGFjZS5jdW5pLmN6MB4XDTE5MDEwNDEwNTY0OFoXDTI5MDExMTEwNTY0OFowQzEL
MAkGA1UEBhMCQ1oxGzAZBgNVBAoMElVuaXZlcnppdGEgS2FybG92YTEXMBUGA1UE
AwwOZHNwYWNlLmN1bmkuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
AQCaAtHtyKGG+zLlCh0kWs7nlfAxwKlwMUs/RsUnyHJPN/2dnSJ6p4FBQyKidgR3
DC6gLLEkqeqpGtIJhcFdDLfOm9CFUncRUdEYrFmZ+bVk2GWF+VuSWaWiypgS6Omn
5Q7jrsumkbHzbTkiqAH9yi9jU8/hmDv9Ys92AvgNoJl50d5L4+33OzFY/BynGa1O
ntXconEOKx8UzL9gpIsIpazOsQaGBnc77nhtNiXHtUrDmiBNaZprFfsE49sBbIJm
VHCC1t1CIR0WU91urIsauEorTD2eacgb220FF071o9/j5G9jWfeHpgKdA1i4ov+V
uvwdd1vGx7XXcKFiaVj8c43dAgMBAAGjUDBOMB0GA1UdDgQWBBSZM07ulhPzv2Vu
YhRl8r+0q5S6tDAfBgNVHSMEGDAWgBSZM07ulhPzv2VuYhRl8r+0q5S6tDAMBgNV
HRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBTSsyFaJ6Y/vQ2sugDPW1J3/hJ
SPylo894UekG0b2Tt8Ev49OIqDhrQEH8lX4pskB7rR/eTs1zI0oqlL5x4O47hw4N
YUyZ9R3WqiWKO/XIqURriqaNR0pF/NYSK2oOWFkcd1aLj3o0dxfxhr2qCR4H0J6e
ZiOPmmMiwCNYT+Qdzeov/zLfLg5fzoIQp+bj36AgdvJrqwGIIkJPtDPwmjuft1w9
dsTEShWwoFbFpd/C+nXrmZ+x78mpnhESa0JcS0vZk3dliydCocCcm3r8dX/8/hXi
ZqPvf5dZ+1MWkeJIJiD9M5dnpoFncTYBXCKR2bUsMIdsu8FPJLatKvpA3WPN</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.test.amu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Dspace - theses repository - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Dspace - repozitář VŠKP - testovací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dspace - theses repository - test</mdui:Description>
          <mdui:Description xml:lang="cs">Dspace - repozitář VŠKP - testovací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dspace.test.amu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dspace.test.amu.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dspace.test.amu.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace.test.amu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.test.amu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dspace.test.amu.cz</ds:KeyName>
          <ds:KeyName>https://dspace.test.amu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace.test.amu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUIXeeJOwdH6WobqxfsP2HkAke+PEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.test.amu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Dspace - theses repository - test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Dspace - repozitář VŠKP - testovací</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dspace - theses repository - test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Dspace - repozitář VŠKP - testovací</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of performing arts in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">AMU Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">AMU v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.amu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.amu.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ivanov</md:SurName>
      <md:EmailAddress>mailto:jakub.ivanov@amu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.vsb.cz/sp/shibboleth">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.vsb.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dspace.vsb.cz</ds:KeyName>
          <ds:KeyName>dspace2.vsb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace2.vsb.cz,O=VSB-Technical University of Ostrava,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhzCCA2+gAwIBAgIRAKxr8VW1PH3Wmd+ghY+tl+cwDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dspace.vsb.cz</ds:KeyName>
          <ds:KeyName>dspace2.vsb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace2.vsb.cz,O=VSB-Technical University of Ostrava,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhzCCA2+gAwIBAgIRAKxr8VW1PH3Wmd+ghY+tl+cwDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.vsb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">VSB - Technical University of Ostrava</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola báňská - Technická univerzita Ostrava</OrganizationName>
      <OrganizationDisplayName xml:lang="en">VSB - Technical University of Ostrava</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">VŠB - Technická univerzita Ostrava</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.vsb.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://en.vsb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jiří</GivenName>
      <SurName>Vychodil</SurName>
      <EmailAddress>jiri.vychodil@vsb.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace5.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace5.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace5.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>dspace5.zcu.cz</ds:KeyName>
          <ds:KeyName>https://dspace5.zcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace5.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJAOtOvs1fpn4QMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
BAMTDmRzcGFjZTUuemN1LmN6MB4XDTE1MTEyNTA4NTY1OFoXDTMwMTEyMTA4NTY1
OFowGTEXMBUGA1UEAxMOZHNwYWNlNS56Y3UuY3owggEiMA0GCSqGSIb3DQEBAQUA
A4IBDwAwggEKAoIBAQDREsNGwKOcbALJ7PYOdCFZVHTPwq57KjnLPI6/LGMxV5ZO
ymxaZ9doFyU71VZxrnSWnxjHPZddC2Rwz2/MBV0CkPcUs/NJL5ejJcGAh01s7eiR
SD8X18r5+Trm9bXydVDC3tNXN3fD0Hq1srC9cB8YGqrI4gcEjRIKLTAPdEuJ3esh
CVwxTbd9kAoAzFoNJBdSccfZK3dsYPtslVdTrhrt98qAqXo7cuEhBRn6hdSOh2I1
JdEputGc7M1NPQ6/Ls11KM7+wmJfdzh3eeJ2VXgJIxULxDJ+xS25KmWsITkFvTdP
Ix8S+WnpyQ1XOCxGrWIuTUr/j1SeAqIb3Y2dpQPpAgMBAAGjXzBdMDwGA1UdEQQ1
MDOCDmRzcGFjZTUuemN1LmN6hiFodHRwczovL2RzcGFjZTUuemN1LmN6L3NoaWJi
b2xldGgwHQYDVR0OBBYEFGV7vUf1glDtoOXdXCJfPPg7cGCkMA0GCSqGSIb3DQEB
BQUAA4IBAQBp5T0UBAJx9/+WjOvl8sp16GW2TZqnYGk/9Z4D63IDUWkccamNNGLz
lG4Fzv8X2gR2+qdGgpvTe7GYy11waE1HJCmNWe5VY55N82C4A0L62gzmCRrrhahM
hZ811SH820/w+Kkj5Rqx4/TT2vH0nSV/Sqrky0OkThxIGINyv733QYgOMwDsZj/8
id48D9NyAkhUsoeXUkzc7vShhMQWwct1WTEEnnZZzS8x/2E9Jm7u/col20rkUbUw
yoFhtErosFknqbfUh9LJZxdKBrkpw511VLCs/99t6YD7eY0P6MDatBtpJiXWhmMF
PyZYPItWHfc+jEqMS3Wl4ZAIBZJ1EQe8</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace5.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.zcu.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace7.test.amu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Dspace - theses repository ver. 7 - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Dspace - repozitář VŠKP ver. 7 - testovací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dspace - theses repository ver. 7 - test</mdui:Description>
          <mdui:Description xml:lang="cs">Dspace - repozitář VŠKP ver. 7 - testovací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dspace7.test.amu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dspace7.test.amu.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dspace7.test.amu.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace7.test.amu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace7.test.amu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dspace7.test.amu.cz</ds:KeyName>
          <ds:KeyName>https://dspace7.test.amu.cz~/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace7.test.amu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENDCCApygAwIBAgIUJkk/Cbgt+GkWbSV0657hHxW+C4swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace7.test.amu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Dspace - theses repository ver. 7 - test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Dspace - repozitář VŠKP ver. 7 - testovací</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dspace - theses repository ver.7  - test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Dspace - repozitář VŠKP ver. 7- testovací</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of performing arts in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">AMU Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">AMU v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.amu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.amu.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ivanov</md:SurName>
      <md:EmailAddress>mailto:jakub.ivanov@amu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://easygrant.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">easygrant.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">easygrant.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://easygrant.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://easygrant.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://easygrant.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://easygrant.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://easygrant.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-core02.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-core02.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBjCCAm6gAwIBAgIJAIzoRaj98d67MA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Vesely</md:SurName>
      <md:EmailAddress>mailto:frantisek.vesely@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://easygrant2.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">easygrant2.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">easygrant2.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://easygrant2.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://easygrant2.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://easygrant2.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://easygrant2.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://easygrant2.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>win-66g0ock6sfb</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=win-66g0ock6sfb</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJAIptPP0QrtrcMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant2.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Vesely</md:SurName>
      <md:EmailAddress>mailto:frantisek.vesely@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://edu.ista.tacr.cz/ISTA">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2019-01-30T17:35:38Z"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TAČR - Technologická agentura ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">TAČR - Technologická agentura ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tacr.cz/index.php/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh0CBFhKqfowDQYJKoZIhvcNAQELBQAwXzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh0CBFhKqfowDQYJKoZIhvcNAQELBQAwXzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://edu.ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirect"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edu.ista.tacr.cz/ISTA/PUBLIC/saml/SAMLAssertionConsumer" index="0" isDefault="true"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceName>
        <md:ServiceName xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Technologická agentura ČR</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Technologická agentura ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.tacr.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.tacr.cz/index.php/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radovan</md:GivenName>
      <md:SurName>Lupták</md:SurName>
      <md:EmailAddress>mailto:luptak@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimír</md:GivenName>
      <md:SurName>Kubíček</md:SurName>
      <md:EmailAddress>mailto:kubicek@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.collegium-carolinum.de/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">collegium-carolinum.de</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Collegium Carolinum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Collegium Carolinum</mdui:DisplayName>
          <mdui:Description xml:lang="en">Collegium Carolinum Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Collegium Carolinum</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.collegium-carolinum.de/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.collegium-carolinum.de/cs/</mdui:InformationURL>
          <mdui:Logo height="333" width="1000">https://eduid.collegium-carolinum.de/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEWzCCAsOgAwIBAgIUAchjrdcmwWH1y3u1KmP8y+wEsrwwDQYJKoZIhvcNAQEL
BQAwJzElMCMGA1UEAwwcZWR1aWQuY29sbGVnaXVtLWNhcm9saW51bS5kZTAeFw0y
MzA1MDIxNDI0MjJaFw00MzA1MDIxNDI0MjJaMCcxJTAjBgNVBAMMHGVkdWlkLmNv
bGxlZ2l1bS1jYXJvbGludW0uZGUwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGK
AoIBgQCNvr5en1ICorHWuE6oXOdGQfePAPW0J3SMY6pCzr2Jxysjj8agCuJ9MXPW
kDwHBTfz51Kmh3YL2zh2Lx+Ld4Sf1Kgu/QRT5Dh5nZPLvZL6fQ5QLiGoVfTxuLyQ
/DZYNAFE9rsicgqBBNTZdiVnw48qrI3NN2EixXq3BxeJIz+xYUjQeyQ3lCJJY9Dc
3IDwirJBifEIuczibWg+sWlZZmJGoV1fQR01ITxVXSStuRdxbziRufORBK46+vPu
o5k5qHwK50A4GecXdB4g1mC7vnQinn8hp5nMx2aFh8blvbT/J4hbWx46ybfIZ6RE
YB8g3BBDjZsP9dtqUy/i7cIWLhh5nuzE8WSo5m2UcWXUriai1UTHGq0QRW29a0Kt
beu1vHGDEKi6OxAzPobLz3owByB1TtRbZjC2exD3/12ZsVkhFwQ8Ttd7KCw3kS8c
bso7lgkh/rBj1eZcZwfz8OrGasVVn2N7/d9YTmu2N4lABRT/PUfqW/3Vd5dvJsZ5
4kE8u6kCAwEAAaN/MH0wHQYDVR0OBBYEFOe4Ubi2RlT++6JmI8R1icJ7JuRjMFwG
A1UdEQRVMFOCHGVkdWlkLmNvbGxlZ2l1bS1jYXJvbGludW0uZGWGM2h0dHBzOi8v
ZWR1aWQuY29sbGVnaXVtLWNhcm9saW51bS5kZS9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAYEACPcYwpG/NY+mUn45cjp5LDlYqZKGwqiE83MfnY4oeRnY
IHLIoHK1mqeiPLRkqzGw9PLT9EX3F1ayVQ7F+TY+hmKUhccHT6XthA7COgAAWnXw
y1+yH9saTaUT7QfH+swCHtjnFPd25CxpViA9jkRwZUgDvcF9JUBrbq4rjp3ipczn
fy024SMJ8pkGKQYMcXsf9n2O1NYOzNx6MaQxBjDgfRfde8xbUY8LURCeeAsWOBQj
pUXp/+ZmWEEunS1eZYcXJay6sTbQ71ViPx4yZEqdBIMuBizm1Z5d7s1hjkZoJ3yf
FiMdWrFf2CdA5ZsqTrj5IlfZdoQ7LN0cTLo6EqIntXRLHaKMab0y/lSTAVpiQEBY
qLJTauAK3aesQA91xwRY5q8mpGj2RUZbyVIUFgsbKZclzBjEzs4f4RAo7j0l9vBy
hRkCUOYrWvhDPqSA+sn96uA3g9Kkt02RCMPdRrFquyZUFhBZGeTPVwoeruXvrID3
CNB4lUi2pfYLreiNjeJQ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEXDCCAsSgAwIBAgIVAIOIGbIyPmJNxHCOwa/FcWPQU3jkMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEXDCCAsSgAwIBAgIVALu5v/WBAUHn7i9jeMfH8tL6skaDMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.collegium-carolinum.de:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.collegium-carolinum.de/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.collegium-carolinum.de/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.collegium-carolinum.de/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Collegium Carolinum</OrganizationName>
      <OrganizationName xml:lang="cs">Collegium Carolinum</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Collegium Carolinum</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Collegium Carolinum</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.collegium-carolinum.de/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.collegium-carolinum.de/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.czu.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">czu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech University of Life Sciences Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Česká zemědělská univerzita v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Czech University of Life Sciences Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Českou zemědělskou univerzitu v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.czu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.czu.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="36" width="60" xml:lang="en">https://eduid.czu.cz/CZU_EN_special_40x60.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUS+fpGsDx+6hS7IRhS16MBbd60MUwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIVALcMNniZtig0HlOwIsQvc+1Olk7cMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLDCCAhSgAwIBAgIVAJ4OU+5z11kykDbEHHSdbDMk1Um8MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.czu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.czu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.czu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.czu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Czech University of Life Sciences Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Česká zemědělská univerzita v Praze</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Czech University of Life Sciences Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Česká zemědělská univerzita v Praze</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.czu.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.czu.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Alena</GivenName>
      <SurName>Stránská</SurName>
      <EmailAddress>mailto:stranska@rektorat.czu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Richard</GivenName>
      <SurName>Tůma</SurName>
      <EmailAddress>mailto:tumarichard@rektorat.czu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Admin</GivenName>
      <SurName>Eduid</SurName>
      <EmailAddress>mailto:eduid-admin@czu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Technik</GivenName>
      <SurName>Eduid</SurName>
      <EmailAddress>mailto:eduid-technik@czu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.fnbrno.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">fnbrno.cz</shibmd:Scope>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">The University Hospital Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fakultní nemocnice Brno</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees of The University Hospital Brno.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Fakultní nemocnice Brno.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.fnbrno.en/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.fnbrno.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="145">https://www.eduid.cz/idp-loga/fnbrno.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUD8JuLhhjcEB5ks0vZMb3msuTmDYwDQYJKoZIhvcNAQEF
BQAwGjEYMBYGA1UEAwwPZWR1aWQuZm5icm5vLmN6MB4XDTE0MTEyMTEwNTQzNloX
DTM0MTEyMTEwNTQzNlowGjEYMBYGA1UEAwwPZWR1aWQuZm5icm5vLmN6MIIBIjAN
BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtEtOtW0ZoOX8NbEpKBNZEfEJeBCk
LMLsb4D2In0ZPZxXdfCHTyqgp0l+6f/IzN5KbnmN2UgCbJvwC8o/U8Aivv0vAOW/
B0S0piKIZYYXkvENQIWBstNl6UiZ/7tcPSCvCCfrM1TwHlioo1PoOI6a6YHHBzgj
oXJLQHVbydPDVsCk84ndvthP/6FncT6hwGF6RkCoL6k5dsu3EPiBTA/6Y6MwHAEh
tu/0t/WI2bVGbnEr1Uc5oJ1jC6FW9tW5axnDASZc4hEOxI1c/VLmoNVdge43nhSr
nxeK5jxuCdmIsxvHyB8Ap0UECYvXmJYnV9te7+jgQbPxPRgytMfhKFvp4QIDAQAB
o2UwYzAdBgNVHQ4EFgQU3ubhlxvDVf7r7yYNbkzhGmXnooUwQgYDVR0RBDswOYIP
ZWR1aWQuZm5icm5vLmN6hiZodHRwczovL2VkdWlkLmZuYnJuby5jei9pZHAvc2hp
YmJvbGV0aDANBgkqhkiG9w0BAQUFAAOCAQEADXmozPl8gsP6k+YEW2SAQ8B34Z+6
PMMQCqKOvK4wTZ4G5Znxy/r2RMRZDCgG0VAzZ5Y3b/mvel/q0oAi1MHfHauYdXzG
SuhBD2Z3zXzTQ6cb8vz79odxJbzfo4OtU8Tkn5PI0Ga+dlchcO88PSQ0ISai8td4
eADTW7cEKVzM95SMCqnLlMNvhQW3zQGOYfZHTkruur5nyUH3ohsQygk9xOymaQsc
8TTdMIZpCAVm7Sl4oyx+XNCua0TJb4R8UyqXtUxW7b9cDVikovllY9I3jmt4miId
EsuanFc6NZl/yLd0tWry19Sfz5p7R5n5+y7JBUyy8uyO9lUjuvTjqYwPiA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.fnbrno.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.fnbrno.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.fnbrno.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.fnbrno.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.fnbrno.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eduid.fnbrno.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.fnbrno.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.fnbrno.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.fnbrno.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">fnbrno.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUD8JuLhhjcEB5ks0vZMb3msuTmDYwDQYJKoZIhvcNAQEF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.fnbrno.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.fnbrno.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The University Hospital Brno</OrganizationName>
      <OrganizationName xml:lang="cs">Fakultní nemocnice Brno</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The University Hospital Brno</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Fakultní nemocnice Brno</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.fnbrno.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.fnbrno.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Patrik</GivenName>
      <SurName>Mateovič</SurName>
      <EmailAddress>mailto:mateovic.patrik@fnbrno.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.fno.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">fno.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Fakultní nemocnice Ostrava</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Fakultní nemocnice Ostrava.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">http://www.fno.cz/</mdui:InformationURL>
          <mdui:DisplayName xml:lang="en">University Hospital Ostrava</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for the University Hospital Ostrava employees.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://eng.fno.cz/</mdui:InformationURL>
          <mdui:Logo height="100" width="210">https://eduid.fno.cz/fno-logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUcFkEjmyN9NJy6NL67LLAeq/P56cwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUUXuKNV3N2fcSAs7aYKGRRV4AFSMwDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAwwMZWR1aWQuZm5vLmN6MB4XDTE1MTEyNDEzMjExM1oXDTM1
MTEyNDEzMjExM1owFzEVMBMGA1UEAwwMZWR1aWQuZm5vLmN6MIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo0EP8jghwHhQNBR3ThVfHOHfDZahYq+3GtzU
K6WdgzZ9eP+IiPXhRMMgcl1lxWs+nEf1iTwoMYWjobK2SHFYxUHBSWYprUx/4S87
x7g6rLzNUj+iWKCc0M2P9IdGRzVjZ0s8nm1O34h1uztNM47RsQBJL915NYvTk0tb
iB73q2TTO60dZTAG+83louzPB5JH+ToOji2pKeAPT3pA24UeoVN6nB1Y7yAHH3Qs
GGQpH8gaNLP5ZKL9TzwF7NZZRJPH+4oL+qWwPn4GFh3TQqHsnJPhf6poynsk/PeN
v8kG0C6nUSKbnjv8ilaKSJXgLXUJoiRenkDW8yB8ErECRKl4OQIDAQABo18wXTAd
BgNVHQ4EFgQUsUXbhwzLCVwP0vHABXrCBBIysYIwPAYDVR0RBDUwM4IMZWR1aWQu
Zm5vLmN6hiNodHRwczovL2VkdWlkLmZuby5jei9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAQEAY7NNDM9kNYWWQRocB2uciVUwWOp7veAYplQb3uAOU0v3
11bHQHJlOmK9oiPn3KojX0wytfMoLpQZfOwCxwSguLsXZReyxg9zoRyeFpESm9Km
K8ziJfDDLXj1IypcH4//s7eXHxRAziGnF8JAvkjqdtstogBBNl5CPuNifkdTJ1Mo
+GU4FWaDgHza03JjdfsVLh5I8RoWbnZuy2S8Po1CzGQyYGtHkmp2Wevfpq9QNQ0t
G0Ul9bDWGEoUzbHOext0IZbkckvW21Bk3oKJJxBYQOoBvtEJl4zE6RcXzAyMJHOQ
Bgn1O2CnrNCmvrrHmhdeGSpcUrM4c0Qd4rbFHklQNg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUfrYEql1Xzqsq9u6m75KiJAZnLRMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.fno.cz/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.fno.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.fno.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.fno.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.fno.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.fno.cz/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eduid.fno.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.fno.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.fno.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.fno.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">fno.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUcFkEjmyN9NJy6NL67LLAeq/P56cwDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAwwMZWR1aWQuZm5vLmN6MB4XDTE1MTEyNDEzMjExNFoXDTM1
MTEyNDEzMjExNFowFzEVMBMGA1UEAwwMZWR1aWQuZm5vLmN6MIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmaZ9HYNRXG6ctRZO0ghB7Sh8odocwRZbI0Bk
l78I+VbBg2NHC4w1eBAvvuvuO+238y3sB6ZcwqP5OJ04Jir+ETe/xo650adkIZ/Q
d+b64rD5JIfUqjFicoWIDCFdn5Zq/nhp/Us8GbMOJXi2uGleqtCh3JXJza8PZbj9
gxWP95I9q3xTLbUOyKDCZUcHV/u20LYay2vD1yElL3BDr/tKJKIzQOjszTLf+STx
f8ch+iR/UKX+7r0cTud2T3HCqx3e97lAh9ZuoOYSIlkDJDzHw2CqPX3quLRebU0m
GeYVBll1TIBYdv2kY8LHlQ9OR3tI/ljP0C5VXpjoU2qGZAdoywIDAQABo18wXTAd
BgNVHQ4EFgQUIFMo0B9e/Orp9f2Tv0D8SMsqjNQwPAYDVR0RBDUwM4IMZWR1aWQu
Zm5vLmN6hiNodHRwczovL2VkdWlkLmZuby5jei9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAQEAJ3KIQd4TriD6pQQBHdXcYVBgIeRpu9YByIrYoOqlUnyA
QeyVBqqHGn+4bZC9tHkZInKSpvrqEys3WbE4WAN9V7pG/es3Jb21tOtnWeepddYe
H5RwTceaFxId5GfdFuYkTfTzEtGnr7FrPCJwhkAKw5OTz2cZS/pb4RB12dKdDgav
8HVbQaGIWcPRsW2Pp88HU+gob+nHddCbN2xw/vNNEIWXs+wiyKj48JCV3l+dy4q6
6yCGjpX9K8ySItLVqBsVyusj68KU+uyaFXyEiJUsj+uwVYh6UeP/RDVT8oWaZp3R
HBcP6JYKMk8JThHRTh7nFs8EUCKjXt6jX9s5n8Tahg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUUXuKNV3N2fcSAs7aYKGRRV4AFSMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUfrYEql1Xzqsq9u6m75KiJAZnLRMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.fno.cz/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University Hospital Ostrava</OrganizationName>
      <OrganizationName xml:lang="cs">Fakultní nemocnice Ostrava</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University Hospital Ostrava</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Fakultní nemocnice Ostrava</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://eng.fno.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.fno.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Robert</GivenName>
      <SurName>Janáček</SurName>
      <EmailAddress>mailto:robert.janacek@fno.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.irsm.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">irsm.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Rock Structure and Mechanics of The Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav struktury a mechaniky hornin AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for IRSM employees</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance USMH</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.irsm.cas.cz/index_en.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.irsm.cas.cz</mdui:InformationURL>
          <mdui:Logo height="300" width="300">https://www.irsm.cas.cz/images/logo_usmh.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUWytG400lvoF1NednboCWGRZUjvowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUVTjskSDZT2USAbpenerTbEN+X9EwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAPfupW9epsOvoQ0H694P8g3ZQzjrMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWVkdWlkLmlyc20uY2FzLmN6MB4XDTE3MDMyNzE0MTgy
MloXDTM3MDMyNzE1MTgyMlowHDEaMBgGA1UEAwwRZWR1aWQuaXJzbS5jYXMuY3ow
ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCG8mGTMAp+yShnINWDnc4U
s02aAHMIgvgDL/lB8q7jHtKGCd7rAFKrssCcUnOe/w3oSlfv2pgwRxaDfUZHkke8
OUkT0xQFeekKlp9a2EU7EYJHjocHdeSkGGKkauH9AmQuPU1OI5uqSw2SToRlyLRs
DJQhhdb3eeWbc8pgnJ8cNxuwp8YaTSd34DZIKQYMSBW73L5cm8RV0XtwjQABgYjb
9R8K/jDHjjmXTvRjZEBUaGxsolTDxz+EFj5/cVFtJveexCOBdetJh2EdMK/6BvlG
d06pKnJTqgy07EsCwcZqIIYmPHLgk4evcj/qbdzXGIQFaBtvauAmx1A4hzfFTCah
AgMBAAGjaTBnMB0GA1UdDgQWBBQNVvReUZuWPnMX17zc4KQgAgR0rzBGBgNVHREE
PzA9ghFlZHVpZC5pcnNtLmNhcy5jeoYoaHR0cHM6Ly9lZHVpZC5pcnNtLmNhcy5j
ei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAJvus+S8T8bFLgD/6
+bUEvYnPS6K+to0MAZgIbdQsCVb+5BGsuEGIBJ50cjTovEIq66CXzCANBcSxooSD
uCP13uT6RqFijFWVh2aw3Cv5au8a6QGxOhu5jhKRT+au3HN1PdMAMw5TT7wxNgj6
IlCjupWo235gNSfhRRySfF/m7HrRfDqxc7hbNNXOJynHMdxHYcQq9jrML30OMYHZ
6BrfUIyYs3iEM14Z7gnIoB2dVHf7x+BkZTPxKGVCeZZ+1psk3ZhuHHB9eyCXGRFO
nyZdELry28RwEfn+TnypvBaNolkciycMJ83kT1AccQUUS2o6t3HQBZsmAHCdST/r
V7ARTg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.irsm.cas.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.irsm.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eduid.irsm.cas.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.irsm.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.irsm.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.irsm.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">irsm.cas.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUWytG400lvoF1NednboCWGRZUjvowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUVTjskSDZT2USAbpenerTbEN+X9EwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAwwRZWR1aWQuaXJzbS5jYXMuY3owHhcNMTcwMzI3MTQxODIy
WhcNMzcwMzI3MTUxODIyWjAcMRowGAYDVQQDDBFlZHVpZC5pcnNtLmNhcy5jejCC
ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIYQek4fwQHxFdoinQnX8x/7
9JsWz/vf9jgMFjTVWxKtDBU9FMUIcx98zJLwoOc+QMNsBf4mQ5azlcc2MJ810kni
ZnVbo0VEXpvUBJxwuAM7g/8O8f13/dQdjt4ThCAR4/8NiPobg3IFP1bb8os9S7vx
AUTA2LWKkUfWGzZNAmbTPeTos4saeFjHLHY+JqdDIBWZ0ZM4gRTSU0HMscztrAoM
kOz1lH4WcmvKoLDRSWBUp5KOxiMPN1g1zoFaZtWLOBcfsanRwQY8MTy3JwGaNRmo
WGV5IeI0HaI79s6gOsh+aVV221JwSLNUJNyG0r5/zkECkYZ5kBN+KcWQqBizcAEC
AwEAAaNpMGcwHQYDVR0OBBYEFP4WRElWqDTX7PP/laMeRFaCcX7/MEYGA1UdEQQ/
MD2CEWVkdWlkLmlyc20uY2FzLmN6hihodHRwczovL2VkdWlkLmlyc20uY2FzLmN6
L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBAJ3+HtUsKvtKikRri
P1LSlGlSsDtb+tE2eYlQyjHLQkJAmQUVN1cFDLdoXHHPOMMMw6SAlqRJqrN9Ixqk
qSgt7onlLGJBE9PMsJbsbMQxhnraQR0ckN/TrW9YzWmcIDoRgMES+AvoaN+LbXsL
KdVUeA8zoMo8QlPCiTvtkTjpApOcfnvKQTiSZA+FNsCTrMqXlD/TAWw4DaG/1sX7
6S9wq/68aWY+tIIZvZKGvpdFwYntcGQypuGj8HNGcB9zshDPRP3mczWMyi+efO0h
/SBfwXCTO3oPPx49oCH9HHIA84WA5BALTfYzISQucrSCJNiTeZ91OzM28iArAZef
m4UE</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAPfupW9epsOvoQ0H694P8g3ZQzjrMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWVkdWlkLmlyc20uY2FzLmN6MB4XDTE3MDMyNzE0MTgy
MloXDTM3MDMyNzE1MTgyMlowHDEaMBgGA1UEAwwRZWR1aWQuaXJzbS5jYXMuY3ow
ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCG8mGTMAp+yShnINWDnc4U
s02aAHMIgvgDL/lB8q7jHtKGCd7rAFKrssCcUnOe/w3oSlfv2pgwRxaDfUZHkke8
OUkT0xQFeekKlp9a2EU7EYJHjocHdeSkGGKkauH9AmQuPU1OI5uqSw2SToRlyLRs
DJQhhdb3eeWbc8pgnJ8cNxuwp8YaTSd34DZIKQYMSBW73L5cm8RV0XtwjQABgYjb
9R8K/jDHjjmXTvRjZEBUaGxsolTDxz+EFj5/cVFtJveexCOBdetJh2EdMK/6BvlG
d06pKnJTqgy07EsCwcZqIIYmPHLgk4evcj/qbdzXGIQFaBtvauAmx1A4hzfFTCah
AgMBAAGjaTBnMB0GA1UdDgQWBBQNVvReUZuWPnMX17zc4KQgAgR0rzBGBgNVHREE
PzA9ghFlZHVpZC5pcnNtLmNhcy5jeoYoaHR0cHM6Ly9lZHVpZC5pcnNtLmNhcy5j
ei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAJvus+S8T8bFLgD/6
+bUEvYnPS6K+to0MAZgIbdQsCVb+5BGsuEGIBJ50cjTovEIq66CXzCANBcSxooSD
uCP13uT6RqFijFWVh2aw3Cv5au8a6QGxOhu5jhKRT+au3HN1PdMAMw5TT7wxNgj6
IlCjupWo235gNSfhRRySfF/m7HrRfDqxc7hbNNXOJynHMdxHYcQq9jrML30OMYHZ
6BrfUIyYs3iEM14Z7gnIoB2dVHf7x+BkZTPxKGVCeZZ+1psk3ZhuHHB9eyCXGRFO
nyZdELry28RwEfn+TnypvBaNolkciycMJ83kT1AccQUUS2o6t3HQBZsmAHCdST/r
V7ARTg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.irsm.cas.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Rock Structure and Mechanics of The Czech Academy of Sciences</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav struktury a mechaniky hornin AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">IRSM</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">USMH</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.irsm.cas.cz/index_en.php</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.irsm.cas.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jakub</GivenName>
      <SurName>Stemberk</SurName>
      <EmailAddress>mailto:kuba.stemberk@gmail.com</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.jamu.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">jamu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Janacek Academy of Music and Performing Arts</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Janáčkova akademie múzických umění</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and students of the Janacek Academy of Music and Performing Arts</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a studenty Janáčkovy akademie múzických umění</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.jamu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.jamu.cz/</mdui:InformationURL>
          <mdui:Logo height="94" width="113">https://www.jamu.cz/ovis/jamu.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAOn0DJQV0WppXqupCU3NpFP45462MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAOn0DJQV0WppXqupCU3NpFP45462MA0GCSqGSIb3DQEB
CwUAMBgxFjAUBgNVBAMMDWVkdWlkLmphbXUuY3owHhcNMjAwNzE0MTE0NzEzWhcN
NDAwNzE0MTE0NzEzWjAYMRYwFAYDVQQDDA1lZHVpZC5qYW11LmN6MIIBojANBgkq
hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAi0ZiWU65jHnjCorEjl0MTboL1QMn2Bbn
cmYD+RwZXOTLrZhcYkAJ3PgLwgIHOmXknlGeEckVKc8USAzYh2P9hq5+MAtEYnY5
DjGlsZldRRPnHOEkbDQGoLJok49pCyv+65lzIYMAoQ30yygt4/9ioLTzhZ8rm8hp
P3Z7vTb1imWb+a+Fhgd7yhbcBpabMkFf5kCdy3U1Bz6zDftf10bCPB7Xcho9Myg6
65zE26mB3olkf5tVI05em+VCB6v74n4MXiUeKbT80M65aHkkUbYRyWT3KpbpAJSx
yNt+nasOQ4ZxKwfYs/HX6/yC5k6j5HsNt+VFYafVfa6+fFJzFbXhL3F/DxHYKO3J
F8d3UQvQQ+0+ZJlcmadxf0oFgfY1lWG3YvhJNyW+yCEBsdJDWiBmvDxpvIhqdEI4
hZq7rK6EX0RayqDmGKakbxrJgYKT5ocjZP04B1PDJfUScx+rR31NfnHUv3aq6z13
l8o9yewNj51GSZ9SxCQRFX6iLE72ej5bAgMBAAGjYTBfMB0GA1UdDgQWBBR/6pgm
KqsQvd3RLvK+x4QBsuUaKTA+BgNVHREENzA1gg1lZHVpZC5qYW11LmN6hiRodHRw
czovL2VkdWlkLmphbXUuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD
ggGBACxdpCx3Cffl5cOnHesp/ldvhq9ZOfD/x6Uo0H/6w1U8fntur+ijX0r3yVxA
Y3bwDCiIeur+KSq5DXxV+wLEuOEqbwMfiLjlYsZiQXbbEqrbMBvdBopEkLQSLT6Z
wv8iF5qXQaOnPXFQ0IkWdLTXHX7p+MG3t6tt/3mHuppBPV1e1avEPaazw3UWwaCy
VznhDYYTSZ8VrJI0Ko+rVJKlcFsCG87e1/RHnGm/QIZ8E3V9q89L3BPVpbFbfwOA
+r+x7kJwxNUodzVNy5u7HU+46rr7AgMNw9E9NIY/ceBqGzOEkV8a0/uYMu9NXfif
5i/maZ74vGLJwHB/DG5fEpRpP/gHjWruUI9Uy1/uSSNgFyi/+/rNqHcE6raaRlHT
4yPF0mTPEN45IENTdt1goE9z1cMLHWoqYNca3pcy3sf6cPOjrWQfiw+qJPgsiboM
DooBK3B6zMa5kpkw7bhotCL+XnypGTZYieq8IYVOwCnt6N0f2sjC+O5D+iqk8zTe
LUUNkw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.jamu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.jamu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.jamu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.jamu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Janacek Academy of Music and Performing Arts</OrganizationName>
      <OrganizationName xml:lang="cs">Janáčkova akademie múzických umění</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Janacek Academy of Music and Performing Arts</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Janáčkova akademie múzických umění</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.jamu.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.jamu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Libor</GivenName>
      <SurName>Spáčil</SurName>
      <EmailAddress>mailto:spacil@jamu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.kfbz.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital library of František Bartoš Regional Library in Zlín</mdui:DisplayName>
          <mdui:Description xml:lang="en">František Bartoš Regional Library in Zlín</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kfbz.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">KFBZ / Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Krajské knihovny Františka Bartoše ve Zlíně</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kfbz.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.kfbz.cz/ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.kfbz.cz/ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>G8_Lyvd82FsTfVPpqTxYSZ4q0CaONQog7SIQVToHgqc</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kfbz.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kfbz.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="en">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Kfbz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Kfbz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.kfbz.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.kfbz.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Zahrádka</md:SurName>
      <md:EmailAddress>mailto:zahradka@kfbz.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Libuše</md:GivenName>
      <md:SurName>Pavlicová</md:SurName>
      <md:EmailAddress>mailto:pavlicova@kfbz.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.kkvysociny.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Vysočina Regional Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius KKVYSOCINY digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kkvysociny.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna Vysočiny</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius KKVYSOCINY</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kkvysociny.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.kkvysociny.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.kkvysociny.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>w5Pakoa7-PMiee6cWyJVUy8TuHta5z5WPyGaZTWnIHE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kkvysociny.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kkvysociny.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Vysočina Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Vysočiny</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Vysočina Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Vysočiny</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kkvysociny.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kkvysociny.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Král</md:SurName>
      <md:EmailAddress>mailto:kral@kkvysociny.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.knihovna-pardubice.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital library of the Regional Library in Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius - Digital Library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Krajské knihovny v Pardubicích</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>-nuVLSqhZqYMgZ-2NnmCDbk8BQw8ppp6_N80pmVNVYQ</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGebgKDNjANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjYwNTI4MDk1MzM4WhcNMzYwNTI4MDk1NTE4WjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDFkGuDCLV7gmZkLZYOkUpuS9jb54QlBYUJnHhejWKiTTHDVkMLjy72Ci3O+pxumEH4kwCJycj8Y96FGsFkVWYMuJ55TgwYwM2yGKuOlrgb5z3VCiYeBqJL4LizC9tUl5pHYTwgz9TSZ6ZFP4q4QahJxhmGr5HZxsYnWRmrYw06jzL81BQKqnGHY/jncjVZylc7fpj/cJcSjy+zeOq89iHGTUIDjcoFatj1/p58b9BVGDMAL066kxMKp7dTa2zVywAsbFVFi6Oxgpy8xa/V0hNNzlOPG0J9bEEElRPjGhe5NLi9NQBaIsMfy9BhGs9MKugo1Dvf1cMMd+lFkARkd3C9AgMBAAEwDQYJKoZIhvcNAQELBQADggEBAGvM4JjNH7zIZ2Pe+7onfF6QInmXoNpyDDqiMUN69evPcA4pRjkSpvjn5BwpDi3ewi77CHS4zfsq193OLSCxl8CcDLwFhvS8jOqiPyMXU03LxDWYgQCTVHH0GKA0vyvQrne0t5qFz1nhmcWkN5UcocJZHRGeYIDMg4psm1o5dQBRfUDXRsGF8ods0/btPsPCllJ6Tr7GhNXtlRTH1cTCLsmEHmZ/Bw84fe99bh7TxxwQslcVKGmDbhRo+WWmMa9PPLTTDXIEjKO1mrj5j+rBZ0jaGdXjzv5AfcOzfEiD5ryADqU1wKn4uf18cIUX7/6OWklimsEHjgyVVQZPgublHOk=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Kramerius - Digital Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Digitální knihovna Kramerius</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional library in Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna v Pardubicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Goláň</md:SurName>
      <md:EmailAddress>mailto:r.golan@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Monika</md:GivenName>
      <md:SurName>Pospíchalová</md:SurName>
      <md:EmailAddress>mailto:m.pospichalova@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.knihovnakv.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Karlovy Vary Regional Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius KKKV digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovnakv.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna Karlovy Vary</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius KKKV</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.knihovnakv.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.knihovnakv.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.knihovnakv.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>DhD-v4548ndNW1wy17KAOAdmcpSeTRvcKoev00JcEIo</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.knihovnakv.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.knihovnakv.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Karlovy Vary Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Karlovy Vary</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Karlovy Vary Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Karlovy Vary</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnakv.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnakv.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Evžen</md:GivenName>
      <md:SurName>Jakobi</md:SurName>
      <md:EmailAddress>mailto:jakobi@knihovnakv.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://eduid.kramerius.nkp.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library - Kramerius 7</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library - Kramerius 7</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>7MTvxy2eHV-j2QJsLs0VpD9Tw7u0OttZvXzSGrvci5k</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">NDK</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Holomek</md:SurName>
      <md:EmailAddress>mailto:jan.holomek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kotrba</md:SurName>
      <md:EmailAddress>mailto:pavel.kotrba@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://eduid.kramerius7.nkp.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library - Kramerius 7</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library - Kramerius 7</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>7MTvxy2eHV-j2QJsLs0VpD9Tw7u0OttZvXzSGrvci5k</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">NDK</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Holomek</md:SurName>
      <md:EmailAddress>mailto:jan.holomek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kotrba</md:SurName>
      <md:EmailAddress>mailto:pavel.kotrba@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.kvkli.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Scientific Library in Liberec</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius KVKLI digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kvkli.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Krajská vědecká knihovna v Liberci</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius KVKLI</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kvkli.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.kvkli.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.kvkli.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>iAPZHYaemz5I0q3c-Dv5A2M1ye_icHgiMvpPhnBgysg</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kvkli.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kvkli.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Scientific Library in Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská vědecká knihovna v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Scientific Library in Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská vědecká knihovna v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://en.kvkli.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kvkli.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Miroslav</md:GivenName>
      <md:SurName>Filanda</md:SurName>
      <md:EmailAddress>mailto:filanda@kvkli.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Kříček</md:SurName>
      <md:EmailAddress>mailto:kricek@kvkli.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.mjh.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Museum of the Jindřichův Hradec region</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius digital library of the Jindřichův Hradec Museum</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.mjh.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Muzeum Jindřichohradecka</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius Muzea Jindřichohradecka</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.mjh.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.mjh.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.mjh.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>8GuxC5b4N1wc17dbkBUBB6vhoYCXGiufHCwFDjJbIOY</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.mjh.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.mjh.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Museum of the Jindřichův Hradec region</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Muzeum Jindřichohradecka</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Museum of the Jindřichův Hradec region</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Muzeum Jindřichohradecka</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mjh.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mjh.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Vokáč</md:SurName>
      <md:EmailAddress>mailto:vokac@mjh.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.mlp.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Prague</mdui:DisplayName>
          <mdui:Description xml:lang="en">Municipal Library in Prague</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.digitalniknihovna.cz/mlp/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Městská knihovna v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.digitalniknihovna.cz/mlp/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.digitalniknihovna.cz/mlp/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.digitalniknihovna.cz/mlp/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>9rNaMm8plNTBVwzAMwtNfx7g8HmdBdcpkmubmyiklKQ</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.mlp.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.mlp.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.digitalniknihovna.cz/mlp</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.digitalniknihovna.cz/mlp</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Černý</md:SurName>
      <md:EmailAddress>mailto:ondrej.cerny@mlp.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Světlý</md:SurName>
      <md:EmailAddress>mailto:michal.svetly@mlp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.msvk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Moravian-Silesian Research Library in Ostrava</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius MSVK digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.msvk.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius MSVK</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.msvk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.msvk.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.msvk.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>UKwvp_matzMRhFV1KtqSZEcrkp-lgUf-wAPZL0c5jL0</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.msvk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.msvk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Moravian-Silesian Research Library in Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Moravian-Silesian Research Library in Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.msvk.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.msvk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nováček</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@msvk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.npu.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The National Heritage Institute</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius NPÚ digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.npu.cz</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Národní památkový ústav</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius NPÚ</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.npu.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.npu.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.npu.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>WWiZMkR5oKy2oN9ARLuj9johLkQB_6TxRunPxKKfdPI</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.npu.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.npu.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The National Heritage Institute</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní památkový ústav</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The National Heritage Institute</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní památkový ústav</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.npu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.npu.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Volfík</md:SurName>
      <md:EmailAddress>mailto:volfik.petr@npu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Dohnal</md:SurName>
      <md:EmailAddress>mailto:dohnal.martin@npu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukáš</md:GivenName>
      <md:SurName>Kypta</md:SurName>
      <md:EmailAddress>mailto:kypta.lukas@npu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.ntm.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Technical Museum</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius NTM digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.ntm.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Národní technické muzeum</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius NTM</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.ntm.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.ntm.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.ntm.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>tl88j1poJrOno18sGoIblbxmNvxrK3nDcon_TwEz2N4</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGaclrMCjANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjUxMTExMDk1NzI0WhcNMzUxMTExMDk1OTA0WjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCcSv5XrtUPAMIf128dkcLes7dezTS97c/aXQaXbrItuk7bF6QqPMdq9HD21zlJ/DFwIWSftRSvLhNZlJjNeaxcQDUoy5+S1EvXgUQRZhImw2YFwO/grFb248uqjsQXlfNAHfTt6ZhbcUZC4ibHXv/c6mm0wHqBaGlATAIu6/XS9GJWP4RYVkjseLv0yx4Vq0qp5oElWwgtwU0r74Bn3Gn9xSeoC2NwEHJvzPuTq9aUgolG1EESx3dg+/XJ2FIVkCzEgkGa/rMFt4VM4aqukL9z6O3bbqbMOwx1+260J26avl7imAeP5rEaR86KnjCcJDNzx/GO1q5YvqXFCIVpmlVbAgMBAAEwDQYJKoZIhvcNAQELBQADggEBABYI57GDJzhWdrLCwRQYYHKlDULLMGm/zB7hjt5Sx4rY1YUrmpjnQdtOVFJHQoN9XVC5twbundIw2BbOtYymuyi9yAWKenMJZoxJgj70nB3T6aVLy3h5nxF1X76TQ8nVG7yeD/yF29uSM2OfTkNrAyeEdQ5pgDW4p33g42jEKuym9BTloBTcYr1X+F5F98oxuZB2y/l/XTjjmyr9iBsHWShbtp62QD6Yt2vdT4EO6vtsYOi+PdcIGZures1PB8pLQJ62G1toIs+MRQ/2hEWSm3FqSqZz12X+EFVwX7GJ+/VGaonOeasHZx3p8+YalLtKJe/q5S9ePi+7Jann745hW2M=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.ntm.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.ntm.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Technical Museum</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technické muzeum</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Technical Museum</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technické muzeum</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ntm.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ntm.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kraus</md:SurName>
      <md:EmailAddress>mailto:pavel.kraus@ntm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.nulk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Institute of Folk Culture</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius NULK digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.nulk.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Národní ústav lidové kultury</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius NULK</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.nulk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.nulk.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.nulk.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>D7FsG7RglygYnyJF8mBaRXgRlRSZiIThnXyvyJy8pnU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.nulk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.nulk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Institute of Folk Culture</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní ústav lidové kultury</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Institute of Folk Culture</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní ústav lidové kultury</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.nulk.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nulk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Rájecký</md:SurName>
      <md:EmailAddress>mailto:david.rajecky@nulk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vítězslav</md:GivenName>
      <md:SurName>Jaroš</md:SurName>
      <md:EmailAddress>mailto:vitezslav.jaros@nulk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.prigo.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">prigo.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The PRIGO University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola PRIGO</mdui:DisplayName>
          <mdui:Description xml:lang="en">The PRIGO University</mdui:Description>
          <mdui:Description xml:lang="cs">Vysoká škola PRIGO</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.vs-prigo.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.vs-prigo.cz/</mdui:InformationURL>
          <mdui:Logo height="34" width="97">https://eduid.prigo.cz/idp/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUOZ2b+GxB0vPvjOzJ5q+eIQXKXhYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUYvXg7wp6unrS/h0qSth9991StEgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUZoog5IJg6rRFvqEJMqIe/T6Mce8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.prigo.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.prigo.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eduid.prigo.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.prigo.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.prigo.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.prigo.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">prigo.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUOZ2b+GxB0vPvjOzJ5q+eIQXKXhYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUYvXg7wp6unrS/h0qSth9991StEgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUZoog5IJg6rRFvqEJMqIe/T6Mce8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.prigo.cz.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.prigo.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The PRIGO University</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola PRIGO</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The PRIGO University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Vysoká škola PRIGO</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.vs-prigo.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.vs-prigo.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Smolka</SurName>
      <EmailAddress>mailto:admin@prigoskoly.onmicrosoft.com</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>PRIGO SECURE TEAM</GivenName>
      <EmailAddress>mailto:abuse@prigo.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.svkkl.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Central Bohemian Research Library in Kladno</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Central Bohemian Research Library in Kladno</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.svkkl.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Středočeská knihovna v Kladně</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Středočeská vědecká knihovna v Kladně, příspěvková organizace</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.svkkl.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.svkkl.cz/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.svkkl.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>uzWF-f5ToRgpS4j9RsVRmjEv8jEshwkLeojex765TbA</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.svkkl.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.svkkl.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Central Bohemian Research Library in Kladno</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Středočeská knihovna v Kladně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Central Bohemian Research Library in Kladno</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Středočeská knihovna v Kladně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.svkkl.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.svkkl.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Andrej</md:GivenName>
      <md:SurName>Chalupník</md:SurName>
      <md:EmailAddress>mailto:chalupnik@svkkl.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michaela</md:GivenName>
      <md:SurName>Kukić</md:SurName>
      <md:EmailAddress>mailto:kukic@svkkl.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.uk.tul.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius TUL digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.tul.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Kramerius</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius TUL</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.tul.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.tul.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.tul.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>7JCZuCwVVLfc8h8ZizTutP7-9HdFS1LScr0tNLG3Cqk</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.uk.tul.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.uk.tul.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Technical University of Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Igor</md:GivenName>
      <md:SurName>Kopetschke</md:SurName>
      <md:EmailAddress>mailto:igor.kopetschke@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.uvn.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">uvn.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">UVN Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">UVN Praha</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for UVN employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance UVN.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.uvn.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.uvn.cz/</mdui:InformationURL>
          <mdui:Logo height="200" width="240">https://www.uvn.cz/uvn-logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUd6iTsueiSD35MZtaJ0WcEAitGOwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIVALitZKKE8ootPmBPZcb7jnV+N+0IMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUAkMR5sFzmm64XBZi6H4ngyrXGeswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.uvn.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.uvn.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eduid.uvn.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.uvn.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.uvn.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.uvn.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">uvn.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUd6iTsueiSD35MZtaJ0WcEAitGOwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIVALitZKKE8ootPmBPZcb7jnV+N+0IMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUAkMR5sFzmm64XBZi6H4ngyrXGeswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.uvn.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">UVN Prague</OrganizationName>
      <OrganizationName xml:lang="cs">UVN Praha</OrganizationName>
      <OrganizationDisplayName xml:lang="en">UVN Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">UVN Praha</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.uvn.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.uvn.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Boruvka</SurName>
      <EmailAddress>mailto:Michal.Boruvka@uvn.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.uzei.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Agricultural Economics and Information</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius UZEI digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Ústav zemědělské ekonomiky a informací</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius UZEI</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://dk.uzei.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://dk.uzei.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>lcjysC6pLcOE8lG1HSz_8on-OR89z1lXlpJIkZhFYdE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.uzei.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.uzei.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Agricultural Economics and Information</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav zemědělské ekonomiky a informací</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Agricultural Economics and Information</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav zemědělské ekonomiky a informací</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://iaei.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.uzei.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kravka</md:SurName>
      <md:EmailAddress>mailto:digitalizace@uzei.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.vkol.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Research Library in Olomouc</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius VKOL digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.vkol.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Vědecká knihovna v Olomouci</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius VKOL</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.vkol.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.vkol.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.vkol.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>xQ03jzO_0YZxqC0AR1F8mb9gNc8BTGNiBuN7rKWIDH4</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.vkol.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.vkol.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Research Library in Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vědecká knihovna v Olomouci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Research Library in Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vědecká knihovna v Olomouci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vkol.cz/olomouc-research-library</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vkol.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radim</md:GivenName>
      <md:SurName>Vančo</md:SurName>
      <md:EmailAddress>mailto:radim.vanco@vkol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.vsers.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">vsers.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The College of European and Regional Studies</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola evropských a regionálních studií</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity provider for CERS</mdui:Description>
          <mdui:Description xml:lang="cs">Ověřovací služba pro VŠERS</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://aj.vsers.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.vsers.cz/</mdui:InformationURL>
          <mdui:Logo height="80" width="80">https://eduid.vsers.cz/idp/images/vsers.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUe2v/cXqDQmeXChNcVLeYj7jackUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAPYo3Y+jFN6rIL/8qwByIXhqytHwMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAKqhHe1SZc4qqatt2rzhRqn3LI8KMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.vsers.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.vsers.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.vsers.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.vsers.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.vsers.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.vsers.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.vsers.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eduid.vsers.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.vsers.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.vsers.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vsers.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUe2v/cXqDQmeXChNcVLeYj7jackUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAPYo3Y+jFN6rIL/8qwByIXhqytHwMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAKqhHe1SZc4qqatt2rzhRqn3LI8KMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmVkdWlkLnZzZXJzLmN6MB4XDTIxMDcxNzE1MTEyMloX
DTQxMDcxNzE1MTEyMlowGTEXMBUGA1UEAwwOZWR1aWQudnNlcnMuY3owggGiMA0G
CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCdUcoxD1BH6DMQVu9iu2EX5DTrYTEN
i4Owohm3yIG3rb3gUmR5AryBIADjLtBwqcY51jt4ah5Oh20ozm5TeP5NGJWdkePW
iWoUNyjvmjzFZ1WI2ES+uAVucczNvL5A1WLHJeejO4zBDjtKHRgFRy0pIRgADyIg
nbFnPDNT4OtbN2fl2XFVZtbov0/umpog+X+c6AM09BMXHMYOhj9ty3g4FJ1HsZAX
2LBhtpWMqP7Ydut4C4eKtDPYwXE5MmAltAedXxwupklFsZ+2W5aFdGBz4C8FZI8T
iptrYVZXgT8nfvqi55ccyRKue7UjAZwf1r9+9DFBo+MrPL6+JN0JzMQ40vpfOsUX
QYxfz7p3FOIrnqEyd+RAXizhHcN/E+azrpYRIAGL02aQUq2BNPLlmGVy8TL9soHY
Z1KyFPpWpvyYZekvKR82Ep4XuGQe8czD+P0SQIlCRQ8yHgl7ALK4maQeChyWz00I
/8Ui0sfg40mAqJSkH5EynM3cKYSRd9xLhasCAwEAAaNjMGEwHQYDVR0OBBYEFMhe
NmeNDTvE2cJzZoeKmC12iGCKMEAGA1UdEQQ5MDeCDmVkdWlkLnZzZXJzLmN6hiVo
dHRwczovL2VkdWlkLnZzZXJzLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB
CwUAA4IBgQBhgk9eCNbU1K1z0Gem/zFnxayeR3YDnC73xYfjL++z7ajuBQCqycpE
o19glo8RUPDiQghtfmcj097VSqE5kyKAzqXSGI50TQYf+X16xzNTUeE/6j2TwCwR
lwFbh+pUnr5nn7o1PcfDxzkus9cghRpWvQoyEdr17ChSbqrRadIJb5dldZuLbHEW
lUQf5iq4DW4nSxLzAdwHtcf/hwitGXi3DLUAmJQqolVSfBI2jUmx91vGMBWXVC99
ul2q32J8cqMHNThPs/URX6zeQ2zqmljIZElH/TkR5WUDk5My2eXH4is23yjMoUE2
eHYBjQWGyS3/AC7n/0sOpMt1wD13rOUBo8EYqSj4OC1xVQ1PvIjJgpBTEXVceJGO
iiR1lhf57yKby44+aRoujZeUgV38FwU65Mg8zRADSvLA+Tpv7fnDWU3dzk1JkO9r
GqzHSOfsGpXL9og+r/5wTjp9PB5LXqF2Opo7MVPSRrCdbj0y89Xs8KOzo+CN7Mbi
j/DyakBcyog=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.vsers.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The College of European and Regional Studies</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola evropských a regionálních studií</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The College of European and Regional Studies</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Vysoká škola evropských a regionálních studií</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://aj.vsers.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.vsers.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jiří</GivenName>
      <SurName>Nechvátal</SurName>
      <EmailAddress>mailto:admin@vsers.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://eduid.vspj.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <md:Extensions>
        <shibmd:Scope regexp="false">vspj.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">College of Polytechnics Jihlava</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola polytechnická Jihlava</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for VSPJ employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance VSPJ.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://en.vspj.cz/school/welcome</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vspj.cz</mdui:InformationURL>
          <mdui:Logo height="103" width="489">https://eduid.vspj.cz/idp/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUc5USuhoMBHonWR2diePtI8qEEQ0wDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAwwNZWR1aWQudnNwai5jejAeFw0xOTAyMDgxMjIxMDhaFw0z
OTAyMDgxMjIxMDhaMBgxFjAUBgNVBAMMDWVkdWlkLnZzcGouY3owggGiMA0GCSqG
SIb3DQEBAQUAA4IBjwAwggGKAoIBgQCsmbFmRKMa9Wi79GeCPb/EkJBSCYsMzDrF
k4iRKu7bHiKFf1ZxB4w/95qRBAy+jKsxRoXimJyLFEcznM2+tW2KMeN3RlOtONCY
xBt2zLIfNxweSLNZkuIqNRg33W473InCekCZADzlkOdbHMjrHE4ym62tgaBsFHA6
5N6N15jfbyx8YaPv/QYTTZzM+ymtV8xD8xhmaVfKfqPjiXo6Y4yRnOQL6MJS4cA/
kBjMCMBGVr43nnOCap6yh0XBodFi06X5tYu/0VLj/P4F2Ol5PzIb+7nqUxwzN9SG
Y7rltsUCzDg+sjTqhKt8xrNYHP/C9chzWCENK6rYxN1LggXxrcOKH6ijP3ny4skH
nB5EGFmko9CzBbcNvzeN05mTSc4rgFgnBbWlSipPt5NbjlPNGwp1FadN9S1wTIzU
38MhG0Oxi/pBrhCbcFB3Yfs19p4806rJIQ58laRo+OGJ0AEP6dvxKDwEKeFVX4iH
jUjbdvMS/CArIGopCC+U/jIfsuB98ukCAwEAAaNhMF8wHQYDVR0OBBYEFMUcm/4P
k57RbLLOPzfuuj/FAo9dMD4GA1UdEQQ3MDWCDWVkdWlkLnZzcGouY3qGJGh0dHBz
Oi8vZWR1aWQudnNwai5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC
AYEAG/gf3DYunsoVJJWJHRjw6XiWDG2i0vRDayYxIST4H+8Gke5n2+Qc9KMgE7qR
/vldG/t7KA9TDGsn9+nyF9N72tVQ3hG2Y6E8P1sGh8WQBLh6nAodjziovi6xPStI
D1KdUhx2NyxfSl+Bo8QB7Gk0+XUDVjAIpEORPnHiY7D9dK9GfcsDjhN+myIh8tIy
yigir8k2cJ+ZO8pqF4bZUJdGhJNxjNgW8/DQv4sSlWTrFwhmaMAv8G4j374Bos8g
DtR2T+y8v7a15lq5ul03G9kG8LCN8bmPcoxRQgB0vNy9PbhmXDqa41Hmwpm5jMjM
7iz4fsnsYLcJVAs7H8a7fgPmLRc1yqZi5tvp374aFZJAhXeWZSKnb6BeFs6vOGuj
YBmwppev9cWYiUBjBJPTNn+WhsEFAL4TQ4Kyqnir2PgNzfix2WWGohMwanmkR1N/
dQOCS0MZwRmTka2RY/qyoLC04eijiW720Xd0D+gW/ACVF1IS7DRlae98RFcYD/sQ
Mi+i</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIULrVBl2C4RmqdkcHyE1BWjYt7BaQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAIOlZjoq+5bgOEuBzRPT/FYoOaA7MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.vspj.cz/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.vspj.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eduid.vspj.cz/idp/profile/Shibboleth/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.vspj.cz/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.vspj.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.vspj.cz/idp/profile/SAML2/Redirect/SSO"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">vspj.cz</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUc5USuhoMBHonWR2diePtI8qEEQ0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIULrVBl2C4RmqdkcHyE1BWjYt7BaQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAIOlZjoq+5bgOEuBzRPT/FYoOaA7MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eduid.vspj.cz/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoká škola polytechnická Jihlava</md:OrganizationName>
      <md:OrganizationName xml:lang="en">College of Polytechnics Jihlava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola polytechnická Jihlava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">College of Polytechnics Jihlava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://vspj.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://en.vspj.cz/school/welcome</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Skoumal</md:SurName>
      <md:EmailAddress>mailto:martin.skoumal@vspj.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Chalupa</md:SurName>
      <md:EmailAddress>mailto:ondrej.chalupa@vspj.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Marek</md:GivenName>
      <md:SurName>Štark</md:SurName>
      <md:EmailAddress>mailto:marek.stark@vspj.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Skoumal</md:SurName>
      <md:EmailAddress>mailto:martin.skoumal@vspj.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.vstecb.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vstecb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Vysoká škola technická a ekonomická v Českých Budějovicích</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Institute of Technology and Business in České Budějovice</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Vysokou školu technickou a ekonomickou v Českých Budějovicích</mdui:Description>
          <mdui:Description xml:lang="en">Vysoká škola technická a ekonomická v Českých Budějovicích Identity Provider</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://eduid.vstecb.en/idp/shibboleth</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://eduid.vstecb.cz/idp/shibboleth</mdui:InformationURL>
          <mdui:Logo height="81" width="80">https://journals.vstecb.cz/wp-content/themes/journals/images/logo.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVAI0QZoGiVSv0StEfyFHd7P/MPUPoMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVAK6woSD2TGyImwp9EUtE4EPBkf3mMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUZF5DZ0G8BYSyE4dBl2xlHtDA03IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduid.vstecb.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.vstecb.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.vstecb.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.vstecb.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Technology and Business in České Budějovice</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola technická a ekonomická v Českých Budějovicích</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Technology and Business in České Budějovice</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Vysoká škola technická a ekonomická v Českých Budějovicích</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.vstecb.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.vstecb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Tomas</GivenName>
      <SurName>Topka</SurName>
      <EmailAddress>mailto:topka@vstecb.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduid.vumop.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vumop.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Research Institute for Soil and Water Conservation</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Výzkumný ústav monitoringu a ochrany půdy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for VÚMOP employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance VÚMOP.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vumop.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vumop.cz/</mdui:InformationURL>
          <mdui:Logo height="116" width="400">https://eduid.vumop.cz/idp/images/eduid.vumop.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUe6bGCpgZ+FnXOhxcLuxlQNl9XnQwDQYJKoZIhvcNAQEL BQAwGTEXMBUGA1UEAwwOZWR1aWQudnVtb3AuY3owHhcNMjUwMzI2MDkxODE0WhcN NDUwMzI2MDgxODE0WjAZMRcwFQYDVQQDDA5lZHVpZC52dW1vcC5jejCCAaIwDQYJ KoZIhvcNAQEBBQADggGPADCCAYoCggGBAJ/3fRcn0fmQEbnLghMNNLEs0GqdwBDw 957uSQfJYVzRIHMMl3km2T0zdQ1bbd0EkUPxMNTfYA31VD7UrV+ht9eJLflX7LIg TbbCJp8uh4wyum5YFu4itmW7+pnl1IbeN8Ztb//Po2kUhQ74GrQ3AV300tEj36cO BcbeG3UtkatVCM8wEZ3GqkFqCPxlGDx+U4KD2nI4oTZnml371wU+gSepjqkhzBuX zKl26698CNJuaXqmLadNptnZjCbH5vDGSkSWTr2rx7kWG6zk6BwrB1T6hqVXyPtN L/1AjYRtbUEiinPQ24I1vJtB7wyEIUuli6Ap7QxSfkD7nXSCrz/NSBgfT5YFLTPn mkQ+WSBdd6MQorzV/nBytsSYhTgoA0EU1uNsYqWE08ikGjElOCZgfGvL8SwOb2yS n2k7yXidtXsGSQqMzpd28z0rtGAOzMLioAjZTju8JCwrKlXUNxTCm8KjzDWRSSrn GkHD27HbSzRcox0NUChXwP+OGvo41/m94wIDAQABo2MwYTAdBgNVHQ4EFgQUvzWO fx8nbzAvKovMdh66wPchuCYwQAYDVR0RBDkwN4IOZWR1aWQudnVtb3AuY3qGJWh0 dHBzOi8vZWR1aWQudnVtb3AuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL BQADggGBAHbDUm1riw7OLpzuF2j8j6lmkvMNeB3gcZ2yzPnhNLXnkeZ7Nt8h6ST5 VAEPNRFA/zgLeYeV4svwLylzwdgsJ3wBHJCZMeLQNSAE1WcpPG6zqlQCk4EvvpYz Yk3q86mF6tbgT03er6+bzcDfOfVarOowgHONt7b6dRVAtWpwZ+zbBw1X2drqe2aH KBWZrSo+n+zELlwmTTMIFP1KbB2751cAlm60nfO79aqe6BGobWFEY7q+STDFq5Vl 5DFyvXFNpeD9tZQKWCmsi/+drQaCBGi2GdQfJj2QTu5oRo8eqsKttsKiYkzKCwUE iiCOtxiTGw6vPujM0aMcn+SZYSvwZFxi0tZP904siUuUMPIC9wPRcc/o3sX8/NHN 3MC/l8+MLaII4NWe9X+QMqyfadFAAe6oAUEv2s6hqar5kdrSAQH0t7DJ0IdSaytS dLRS9sq3EY+S/hzXQVMuHGfv7cogCUqvKYvOIirV1LRprKDD0jsvAp2cA05sTAyg +pCgB/brQw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVALwbHDcC40LfMz2D53cyoG6EnaQvMA0GCSqGSIb3DQEB CwUAMBkxFzAVBgNVBAMMDmVkdWlkLnZ1bW9wLmN6MB4XDTI1MDMyNjA5MTgxMVoX DTQ1MDMyNjA4MTgxMVowGTEXMBUGA1UEAwwOZWR1aWQudnVtb3AuY3owggGiMA0G CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDHxuWdmZoJME1GKz/kzukBa0gzIZrr Kw9uTQFA6unatFqVlCVacB0E1gl0cDv4dMN9VRCzGG5SbDhjnqKvQsF52r1Lmz8k eOAJLn2cRPV7OibtaFtZ3yhm++aibqSXm92ojYMzMtPBomgAZB64p2swKjUb6qy3 iaKhDTrUjl2liYTFNiQ+aJaaWM3wgKhecENn8P8cvzpBO+VPHEPZoxwaNhecrD0N FmySTjUbwBDzfySP+OebDmrTdb/K+a9w0KnhIN2yAJNIv7jEzICpk2+5WjI5AkSZ efDFtB5JKVcS+g7+JOYkg2uVq7HIMQRJhTkw5/y4O/C9Voa2IMlNXGVE5U6KdsQK HR758PTba8GB8ELpuMqsdDctigxcDNMwEULYPeLfIbxTDiWfHoc1JaoIFQmqiX+a YNasgfjCfD4ojuQnTtVyPBeyCX6kYY0eoLAb5Oa9gHq/fgXE3TiXnyFz8axX6MyS 4YYsf5QT5gMWYoO9YfdbUI0luhDB5woq5scCAwEAAaNjMGEwHQYDVR0OBBYEFIjV ADQtX0321/5mkWDlDg0zB8UyMEAGA1UdEQQ5MDeCDmVkdWlkLnZ1bW9wLmN6hiVo dHRwczovL2VkdWlkLnZ1bW9wLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB CwUAA4IBgQCmnPoqvQsux6eT/hL3mhIBjuLUCLQgomtW8QAbNPHoPH7YD51u/hjZ db8enTXdrlXe7oKqXWdqs2uiQPfoIWNtG+JYnA0F8TSOAZvzzzvxysi8F+n9ufls lxlUA29lmT9yY43Qxg7x06keaQFhOeNxQjyrYeePhmCuX2/j8djETaAUFzlmtuOw EDZCNn39Ds9+Kjn6nlOyElGP3x98hm1F/9RmIePK5OWzpQCdytA1as5YnzePJJa2 N3Niv88UjsSx1JxNT4ssR5p347VA/f5CK3QyKJAMmmATQJdXXHOTX8Xgqas+jqYD /Prh/aqSANK5OK/knQHpRUUuSuSPHG/brZtVPISaM6N35ZhDcOuuGqlHK9EkTaXd w9bWa0K79Ie9AFuM+mQggMl6Akgb1TBx7Rbld4ChmSXNB0E819RN+g2aAOWUr2AJ hMyLa+b6pjS9ZPR3faNSO/Ho92tt0kjcA2yIsa0gXJNDeULtW5UsKEFyS0Y00+xA nsnLP14aUnU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.vumop.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.vumop.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduid.vumop.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">VUMOP, v. v. i.</OrganizationName>
      <OrganizationName xml:lang="cs">VUMOP, v. v. i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Research Institute for Soil and Water Conservation</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Výzkumný ústav monitoringu a ochrany půdy</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.vumop.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.vumop.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://eduiddemo.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">eduiddemo.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eduiddemo.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://eduiddemo.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://eduiddemo.upol.cz</mdui:InformationURL>
          <mdui:Logo height="85" width="200">https://eduiddemo.upol.cz/images/UP_logo_horizont_cerna_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://eduiddemo.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://eduiddemo.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>win-66g0ock6sfb</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=win-66g0ock6sfb</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJAIptPP0QrtrcMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduiddemo.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Ketner</md:SurName>
      <md:EmailAddress>mailto:david.ketner@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://enem.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://enem.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://enem.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>enem.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=enem.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID8TCCAlmgAwIBAgIJAND73r3pH7J2MA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://enem.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://entk.goodatit.com/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NTK Service catalogue</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NTK Katalog služeb</mdui:DisplayName>
          <mdui:Description xml:lang="en">NTK services catalogue.</mdui:Description>
          <mdui:Description xml:lang="cs">NTK katalog služeb.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://entk.goodatit.com/help/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://entk.goodatit.com/help/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUdTuWBuaH73/bQa8u6Az7Vwy6apswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://entk.goodatit.com/saml-login" index="1"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">goodatit.com</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">goodatit.com</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://entk.goodatit.com/help/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://entk.goodatit.com/help/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eris.avu.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
          <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
        </eduidmd:RepublishRequest>
        <shibmd:Scope regexp="false">avu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">AVU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">AVU</mdui:DisplayName>
          <mdui:Description xml:lang="en">AVU's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro AVU.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.avu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.avu.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="210" width="600">https://www.avu.cz/sites/default/files/editor/avu_logo_1_stranka_6.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUa+WHdds7mTWu86V4TqW1rsAhrcEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAMQ+K+KhY8si6EYEENuN4STpNNgtMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUVcDrIz6+kK9994gno8rER/Uo+MQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eris.avu.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eris.avu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eris.avu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eris.avu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://eris.avu.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eris.avu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">avu.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUa+WHdds7mTWu86V4TqW1rsAhrcEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAMQ+K+KhY8si6EYEENuN4STpNNgtMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUVcDrIz6+kK9994gno8rER/Uo+MQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://eris.avu.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">AVU</OrganizationName>
      <OrganizationName xml:lang="cs">AVU</OrganizationName>
      <OrganizationDisplayName xml:lang="en">AVU</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">AVU</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.avu.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.avu.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Tomas</GivenName>
      <SurName>Kuchar</SurName>
      <EmailAddress>mailto:tomas.kuchar@avu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://erms.czechelib.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CzechElib ERMS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ERMS projektu CzechElib</mdui:DisplayName>
          <mdui:Description xml:lang="en">ERMS of project CzechElib.</mdui:Description>
          <mdui:Description xml:lang="cs">IS pro management elektronických zdrojů projektu CzechElib.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.czechelib.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.czechelib.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://erms.czechelib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://erms.czechelib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>erms.czechelib.cz</ds:KeyName>
          <ds:KeyName>https://erms.czechelib.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=erms.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIJAP4qKzMLz0FXMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>erms.czechelib.cz</ds:KeyName>
          <ds:KeyName>https://erms.czechelib.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=erms.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIJAP4qKzMLz0FXMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://erms.czechelib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CzechElib ERMS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ERMS projektu CzechElib</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Operator of ERMS system of CzechElib project.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Provozovatel ERMS projektu CzechElib.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://esus.msmt.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">msmt.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">MINISTRY OF EDUCATION YOUTH AND SPORTS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MINISTERSTVO ŠKOLSTVÍ, MLÁDEŽE A TĚLOVÝCHOVY</mdui:DisplayName>
          <mdui:Description xml:lang="en">MSMT's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro MŠMT.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.msmt.cz/?lang=2</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.msmt.cz/?lang=1</mdui:InformationURL>
          <mdui:Logo height="96" width="128">https://www.msmt.cz/themes/msmt2017/images/MSMT_logo_male.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUemJ2Gauwk+ukQheWOl/hDXrDx8gwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUdxSVRNNAYoR/ZuAJZ8XrYtRs0EgwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAKcPzUad+E5qvoQP7vA51Mw8o+P7MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://esus.msmt.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://esus.msmt.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://esus.msmt.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://esus.msmt.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">MSMT</OrganizationName>
      <OrganizationName xml:lang="cs">MŠMT</OrganizationName>
      <OrganizationDisplayName xml:lang="en">MINISTRY OF EDUCATION YOUTH AND SPORTS</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">MINISTERSTVO ŠKOLSTVÍ, MLÁDEŽE A TĚLOVÝCHOVY</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.msmt.cz/?lang=2</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.msmt.cz/?lang=1</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Hovorka</SurName>
      <EmailAddress>mailto:pavel.hovorka@msmt.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://evpn.isibrno.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">eduVPN ISI Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eduVPN ÚPT Brno</mdui:DisplayName>
          <mdui:Description xml:lang="en">VPN service for ISI CAS</mdui:Description>
          <mdui:Description xml:lang="cs">Služba VPN pro ÚPT AV ČR, v.v.i.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://evpn.isibrno.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://evpn.isibrno.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://evpn.isibrno.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://evpn.isibrno.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>evpn.isibrno.cz</ds:KeyName>
          <ds:KeyName>https://evpn.isibrno.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=evpn.isibrno.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUPSD6X/dQ8hp5QE9jC1wiFVQxcdIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://evpn.isibrno.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">eduVPN ISI Brno</md:ServiceName>
        <md:ServiceName xml:lang="cs">eduVPN ÚPT Brno</md:ServiceName>
        <md:ServiceDescription xml:lang="en">VPN service for ISI CAS</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba VPN pro ÚPT AV ČR, v.v.i.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Scientific Instruments of the CAS</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav přístrojové techniky AV ČR, v. v. i.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">ISI CAS</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚPT AV ČR, v. v. i.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.isibrno.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.isibrno.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Marek</md:GivenName>
      <md:SurName>Vondra</md:SurName>
      <md:EmailAddress>mailto:mav@isibrno.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exa.civ.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Mitigating unwanted traffic</mdui:Description>
          <mdui:Description xml:lang="cs">Potlačení nežádoucího provozu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exa.civ.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exa.civ.cvut.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>exa.civ.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exa.civ.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUKq+DOUueIqqEoyhZ3uqZ1JlDsCUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>exa.civ.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exa.civ.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUO7814gSLC2PhgW0i8fMHM8wEcfYwDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAxMPZXhhLmNpdi5jdnV0LmN6MB4XDTI1MDQxNTEzMDAzOVoX
DTM1MDQxMzEzMDAzOVowGjEYMBYGA1UEAxMPZXhhLmNpdi5jdnV0LmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAqB7F5YFjlDPOwFbwwStNqoeehQzn
a7Gc1iGKDnsl+C6s1LpCwSgxN6KnI3OMVzXkKzCqp76AcoEACXalsejjum/+7mqx
feqENduw4j168GkYMf0GpWvyT4omOYSS+lYYCnUnqVwBThyqAJsPFC96u4GYZ9w/
OeVAufA3ICkzM06sOfLp11iCQhPwrydupN0o16vVkh9Rm/wINJTyOSwfnwFOmMkh
ZXlNZzpmVOEO5m9pxXj9hwrfaeY7U2aaFn4E/9DGeuEPwecGSvBbtjh9DUUW8SbN
+nghBJ82McTWgN4dUGPQd9bKFJtEG8qyqUa52MuAGiRYvmvuO7Jcq+iz5/Z4hVFP
LQHjuHlLIwjcecgHteLLUYP2mmrA7iO0BaBlUiQfO69palbzzuBGvGYHPSrUnFOR
W27/3y5uNqd1uHWtZbb/2Y5ngFGIKJvXKPGjljjd7w+hQGAapUnHXKq4KRhm2aJV
mN7ChmG2BAAQ2ynmXRD8ziX/CW1SFoPG5qGbAgMBAAGjPTA7MBoGA1UdEQQTMBGC
D2V4YS5jaXYuY3Z1dC5jejAdBgNVHQ4EFgQUsfBoibRZyBvsKt24bHNB21genFUw
DQYJKoZIhvcNAQELBQADggGBAJ0QV5EbiXfuhfGbEHq9NhNH1vMPYJOJUEnSKyl8
m4kf3tICuTKnI8JFQPK7vGJNYLnhwtF+ArI6DXe4XbyYHu26ThV8q3labzygZoNm
0YbEdVLHINhl73cdYwNb1+Hz6Mlr6Lj2ZvPTi3rIffhRurpP2ntpZy8JDOxM8x/I
Gl9HFFCUe8FTBNsD+ehk5cbUUfyNXEnptEzXvlix7FTRQcEii9kvrTmM+xL04NcC
jurSn0ULfWiFpczBV7dsMD8RgoakV/VXjeOs16L5wVzDc+pRovf43r11fTs0Zqzx
XZb1XoBVzea/53nuXImQhFiQP2OYxMiM1pi5aWKCmbvzZlWyqsASDCGpJenjI9IZ
JwUVL95Yl8FQudX4BrJGl6sNPO74uwS/DC/NOtiJD3/KtR2ypcdQHoYU1RKrFGGz
24YhBejkjB4kZYKdhX3Q4p9G2btMdUNLZ4Y5AQhjT/yt1r557NqpDABv60xGUhDX
DVQVIIUV2aBMdkGba9RNHhBbpw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exa.civ.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cvut.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Bílý</md:SurName>
      <md:EmailAddress>mailto:Martin.Bily@cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exaddp.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS exaddp</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS exaddp</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exaddp.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exaddp.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2025</ds:KeyName>
          <ds:KeyName>exaddp.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exaddp.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEAjCCAmqgAwIBAgIUDx4k5JyFVxaLJLwtfpKQ0M0cR9IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaddp.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS exaddp</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS exaddp</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exaflow.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool exaflow</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool exaflow</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exaflow.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exaflow.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2023</ds:KeyName>
          <ds:KeyName>exaflow.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exaflow.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBTCCAm2gAwIBAgIUZnOqGUkhlum1IWM37dZzkLNQo3gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaflow.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exafs.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exafs.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exafs.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2020</ds:KeyName>
          <ds:KeyName>exafs.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exafs.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJANYkXwMAu26fMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exafs.tul.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">exafs.tul.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">exafs.tul.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tul.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tul.cz/info</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exafs.tul.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exafs.tul.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>exafs</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exafs</ds:X509SubjectName>
            <ds:X509Certificate>MIID4TCCAkmgAwIBAgIUci2nYqWbMXWTzXMXaXnKApkuGi8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.tul.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exafs.tul.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exafs.tul.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">exafs.tul.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">exafs.tul.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Technical University of Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://extlogin.ctk.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CTK Infobank</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Infobanka ČTK</mdui:DisplayName>
          <mdui:Description xml:lang="en">CTK - Infobank - access to Czech national news agency's archives</mdui:Description>
          <mdui:Description xml:lang="cs">ČTK - Infobanka - přístup do databází zpravodajství národní tiskové agentury</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ctk.cz/sluzby/databaze/infobanka/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ctk.cz/sluzby/databaze/infobanka/</mdui:InformationURL>
          <mdui:Logo height="54" width="70">https://extlogin.ctk.cz/img/ctk-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://extlogin.ctk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://extlogin.ctk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>O=Internet Widgits Pty Ltd,ST=Some-State,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUcVdYtxFq4aysUkVIOGOcUuLbV/4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>O=Internet Widgits Pty Ltd,ST=Some-State,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUCbm3ZgMz7wfsCi27KZLEpFUyYAAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://extlogin.ctk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CTK Infobank</md:ServiceName>
        <md:ServiceName xml:lang="cs">Infobanka ČTK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CTK - Infobank - access to Czech national news agency's archives</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ČTK - Infobanka - přístup do databází zpravodajství národní tiskové agentury</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Czech News Agency</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Česká tisková kancelář</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">ČTK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ČTK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ctk.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ctk.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kodera</md:SurName>
      <md:EmailAddress>mailto:kodera@ctk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdeněk</md:GivenName>
      <md:SurName>Houdek</md:SurName>
      <md:EmailAddress>mailto:houdek@ctk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ezdroje.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Portál elektronických zdrojů Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University eResources Portal</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Portál elektronických zdrojů Univerzity Karlovy zpřístupňuje informace o elektronických zdrojích ve vědě a výzkumu, které jsou přístupné pro zaměstnance, studenty a uživatele Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Charles University Electronic Information Resources Portal provides access to electronic information resources in science and research, which are open to staff, students and users of the University.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://ezdroje.cuni.cz/napoveda.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://ezdroje.cuni.cz/napoveda.php</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ezdroje.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ezdroje.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ezdroje.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ezdroje.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDWzCCAkOgAwIBAgIJAIkmH6sQjDyVMA0GCSqGSIb3DQEBCwUAMEQxCzAJBgNV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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ezdroje.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://feg.ceitec.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CEITEC facility accounting and reporting system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vyúčtovací a reportovací systém pro facility CEITEC</mdui:DisplayName>
          <mdui:Description xml:lang="en">Access to CF accounting and reporting system</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup k vyúčtovacímu a reportovacímu systému CEITEC</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ceitec.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ceitec.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>feg.ceitec.muni.cz</ds:KeyName>
          <ds:KeyName>https://feg.ceitec.muni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=feg.ceitec.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUJLRVHyv40YNYkRV+hiwzUoktaMYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CEITEC facility accounting and reporting system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Vyúčtovací a reportovací systém pro facility CEITEC</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Access to CF accounting and reporting system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup k vyúčtovacímu a reportovacímu systému CEITEC</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CEITEC MU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CEITEC MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CEITEC MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CEITEC MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://ceitec.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://ceitec.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nováček</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@ceitec.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ffws05.ff.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ProCzeFor</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ProCzeFor</mdui:DisplayName>
          <mdui:Description xml:lang="en">ProCzeFor</mdui:Description>
          <mdui:Description xml:lang="cs">ProCzeFor</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.proczefor.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.proczefor.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stream1</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stream1</ds:X509SubjectName>
            <ds:X509Certificate>MIID5zCCAk+gAwIBAgIULurnMENzEqWhJpiVqCxBwbF58hQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ProCzeFor</md:ServiceName>
        <md:ServiceName xml:lang="cs">ProCzeFor</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ProCzeFor</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ProCzeFor</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Arts, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Filozofická fakulta, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Arts, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Filozofická fakulta, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ff.cuni.cz/home/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ff.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jitka</md:GivenName>
      <md:SurName>Veroňková</md:SurName>
      <md:EmailAddress>mailto:Jitka.Veronkova@ff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://filesender.cesnet.cz/saml/sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FileSender</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FileSender</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNETs servis for sending files.</mdui:Description>
          <mdui:Description xml:lang="cs">Cesnetí služba pro posílání souborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://filesender.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://filesender.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://whoami.cesnet.cz/idp/images/cesnet-logo-40.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC9jCCAd4CCQDdhtc4WQjM2jANBgkqhkiG9w0BAQsFADA9MQswCQYDVQQGEwJDWjEPMA0GA1UEChMGQ2VzbmV0MR0wGwYDVQQDExRmaWxlc2VuZGVyLmNlc25ldC5jejAeFw0xNTA0MDMwNTU1MjdaFw0zNTA0MDIwNTU1MjdaMD0xCzAJBgNVBAYTAkNaMQ8wDQYDVQQKEwZDZXNuZXQxHTAbBgNVBAMTFGZpbGVzZW5kZXIuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv1WBCUZpXFxBpJ0AxFKGuJtdm3MY0PlKNELuzUvVTfiOMqHt19dmuixMzlbk8oPliCI69E6TndBMYnTucueFOgaPi/W7eWEN1p74liVgQQXTypBt8JiIhiHUf4b5AShmNPaWh+IrGtzQ9oFPBdVgU542pT5oLje84ZbfiXMQAwkJ/1lgW0UDVFQTyRrge+aPN89V9Sq5MaHxjzzLvCX0i3BTtUInYUqXOb3E15zTnHiiNtZZOcc9p3QNcEiBpUMyrD/SfGgfAME6wZga4v029vxLDyYCvlArkSCocEgWRISwr4uXK1GiDJ7VKsbO6rSnc//yLz2vt6RYSGrNBimHXQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQChn/lKZGjGsWUav7wlYjAcXND6D8knafWr7LkB/YP819UQJyj+V+Spi+crr/UGQp3anPvh7ZE5Z+/YwuwuuL7r8a9OnKPEZ9jt1XMK7QLNegQcypv0ZhGEprWFPR+B0myu4HaTvqEDZN1Dp4JVbhv5AH+wJUDBJmjnQQYY+ipthydPcXJkiT7S6zlNrSnPEtd1ZigIA5aOpJqQY9OzKZJtH8L30ydGNHCpqu97MxTSyNsP55yQRl+cR8BxOPHvqZQy1lxOhvdciI73pSvhOGz4QWOQ4UJr6BYn4pSRSSeHeySL3iBD1xYFvai+yTeAgEOOYO4SSq9h6Dq8D4THqU4Y</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="15"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky - administrator</md:SurName>
      <md:EmailAddress>mailto:du-support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://filesender2.cesnet.cz/saml/sp">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FileSender</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FileSender</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNETs servis for sending files.</mdui:Description>
          <mdui:Description xml:lang="cs">Cesnetí služba pro posílání souborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://filesender2.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://filesender2.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://whoami.cesnet.cz/idp/images/cesnet-logo-40.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://filesender2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://filesender2.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>filesender2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=filesender2.cesnet.cz,O=Cesnet,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIC+DCCAeACCQCE9o94rtGBqzANBgkqhkiG9w0BAQsFADA+MQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://filesender6.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://filesender2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky - administrator</md:SurName>
      <md:EmailAddress>mailto:du-support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://fsv.spotsuapp.com/shibboleth">
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">FSV Spotsu</mdui:DisplayName>
          <mdui:Description xml:lang="en">Spotsu dedicated FSV instance</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fsv.cuni.cz</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">FSV Spotsu</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Spotsu instance pro FSV</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://fsv.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDczCCAlugAwIBAgIUfSNJKxxLKdqPPdfpuLFbbbFw0DowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDczCCAlugAwIBAgIUfSNJKxxLKdqPPdfpuLFbbbFw0DowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fsv.spotsuapp.com/shibboleth/post" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fsv.spotsuapp.com/shibboleth/artifact" index="1"/>
      <AttributeConsumingService index="0">
        <ServiceName xml:lang="en">FSV Spotsu</ServiceName>
        <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">FSV UK</OrganizationName>
      <OrganizationName xml:lang="cs">FSV UK</OrganizationName>
      <OrganizationDisplayName xml:lang="en">FSV UK</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">FSV UK</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://fsv.cuni.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://fsv.cuni.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Urx</SurName>
      <EmailAddress>mailto:urx@spotsuapp.com</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas-pa.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based Traffic Analysis System</mdui:Description>
          <mdui:Description xml:lang="cs">Flow-based Traffic Analysis System</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/DS" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ftas-pa.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>emailAddress=kosnar@cesnet.cz,CN=ftas-pa.cesnet.cz,OU=FTAS Measurement - Pardubice region,O=CESNET a.l.e.,L=Prague,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIF8jCCA9oCCQDnHVMkc4tr3TANBgkqhkiG9w0BAQsFADCBujELMAkGA1UEBhMC
Q1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ8wDQYDVQQHDAZQcmFndWUxFjAU
BgNVBAoMDUNFU05FVCBhLmwuZS4xLDAqBgNVBAsMI0ZUQVMgTWVhc3VyZW1lbnQg
LSBQYXJkdWJpY2UgcmVnaW9uMRowGAYDVQQDDBFmdGFzLXBhLmNlc25ldC5jejEf
MB0GCSqGSIb3DQEJARYQa29zbmFyQGNlc25ldC5jejAeFw0xODA1MjkwODEzMTBa
Fw0yODA1MjYwODEzMTBaMIG6MQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2gg
UmVwdWJsaWMxDzANBgNVBAcMBlByYWd1ZTEWMBQGA1UECgwNQ0VTTkVUIGEubC5l
LjEsMCoGA1UECwwjRlRBUyBNZWFzdXJlbWVudCAtIFBhcmR1YmljZSByZWdpb24x
GjAYBgNVBAMMEWZ0YXMtcGEuY2VzbmV0LmN6MR8wHQYJKoZIhvcNAQkBFhBrb3Nu
YXJAY2VzbmV0LmN6MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAwsI8
xwLKroINKqWrON+95OfRk0AzJg3mXtFMYteyupfOpRUSa2u+yNHJ0kuJOn9F9tRV
YrLP5LQRrPOnBycg4dEYITEcmadmLme9t/R/abIU78DowN2Ugzb5eLJvmMmy2re9
DbTr9tTBonbjW0ONNmG6KZHAhIdXG98jxS/QdczJhaPgcYna33EJ/YnPrjbws7V6
gdZqkMSMKcwYispdw7QBDXLjETaQq0q6aaYa1WnXprfOqMxUC1QJOJTB315/aaff
ENV+aEkyVKL5Bymt9oJFn7gy2RR+eZUw0+bfnUR5LKvHgIkAnCER5BirzO5FNF/x
ln0sAK4lZpJrNVeKzku5sWG+bsicnr7cXDCmDwR3Q1EtGq+XiCtOOh5neHxIsQ/S
mFKL9Kl6zpxsTn8XVUehtllC9yAvPWa4PQIaOaZQhHc5YEowEo27dswKj0wMEoSE
Fwfzyj1I5KP/uajmzv8F/cpzi9akRPST4tZ7+9bFOL59+ntMKqWNESjL9qDJ8lFz
0rEMyj7jdi8KSzxaAbwBZEc+HO+YvavdWaXmHEXNumK2Wv8RgK16mN5tQsRITYQb
YGcITw/bsxi7iU57+V8kUT9b821T9bucp9DTWo64kmGr/QzIL1CAP8aPo35uUMLS
ezI3bZ2zYqRyTFu+7C4wfan0mR/CsTw7t8wTNfsCAwEAATANBgkqhkiG9w0BAQsF
AAOCAgEACyjT0x1RtLLOqsue7KvOSTKxTMgHay0oAtfa8lEDiEL9qLAZNy56W+9b
7xe1R8/tHLOrmyQH+09ylCssf7LKgRlstmjZIpQj6BDhZ0u8FdIu9fdyWNpb5vBv
zvD5xOLrk5XbfHKGGfnLL/joHYvAl6+hVS0XvYlahES37TyxlhCe7XZpuIggVdGS
RdIQANgv75n/Yozjr5y/sNa6Q/2SPlWd+41tHEYwV0NAvzy9xhqV2NcGTJ3DD3wQ
EC7xgjQOuhNJhRFLSpzcwyY/OLufpiiGtoj5wN2U79YUGYayisUPr3ubQ6shFbVD
XChYp4TkB0pa+DVT7/I8Qw3spOJrlqIcxyC7mOmsImaDxcabtqjD8KNgytLivTHb
47ViIjiZo6Rr1GcvRQmANYSfr2kkgGPHRALzmFMjYkYPPtTE7mFyR+GTNZH4Xd8i
UWZj0j5zSEJST5auQcXR82va/mk4fR/Ak3o658QO8Z8dz/sjTF2ftitIQOk2Orjm
L59Ry60sv7Q9GeGNwsKxsR6hbStUE4HqiLp8Hat/Oeu9Wn8siiArZuL7zBdYf4YH
wYkEA7EmpGgLg5NhWex+2Wpjm5NxEryQPuMoaSaj/0PeLRMa2vVLxO52sZeDJRH2
icPedPJNLoX4IC5Ex3w2+KASveekWh1z5VssqGc87jXjk1V1FSk=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas-ui.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ftas-ui.zcu.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ftas-ui.zcu.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">ftas-ui.zcu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">ftas-ui.zcu.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">ftas-ui.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">ftas-ui.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>ftas-ui.zcu.cz</ds:KeyName>
          <ds:KeyName>https://ftas-ui.zcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ftas-ui.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUTZG4emVLbm0nA9xDdEER9vGx0QgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>ftas-ui.zcu.cz</ds:KeyName>
          <ds:KeyName>https://ftas-ui.zcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ftas-ui.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUQ4q2K5sa3f6Zkz6M0bwk+MLJMi4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ftas-ui.zcu.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">ftas-ui.zcu.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ftas-ui.zcu.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ftas-ui.zcu.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Čepák</md:SurName>
      <md:EmailAddress>mailto:cepakj@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based traffic monitoring.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring provozu na bázi toků.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/sluzby/sitove-sluzby-1/sitovy-monitoring-sledovani-ip-provozu-ftas-34</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/en/services/network-1/network-traffic-monitoring-ftas-34</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/en/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gc1.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas.cesnet.cz/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gc1.cesnet.cz/Shibboleth.sso/Login" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas2.cesnet.cz/Shibboleth.sso/Login" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gc1.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://gc1.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gc1.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHTCCAoWgAwIBAgIUIujHVD8eTPdPdauplqTKxyRep1MwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Flow-based traffic monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring provozu na bázi toků.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Košňar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas.fit.cvut.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ftas.fit.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ftas.fit.cvut.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEmzCCA4OgAwIBAgIRAKovif7NJ2S4neCPUbevAfowDQYJKoZIhvcNAQELBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">FIT CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">FIT ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Information Technology, Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fakulta informačních technologií, České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.fit.cvut.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.fit.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Bílý</md:SurName>
      <md:EmailAddress>bily@fit.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://g3-du.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">G3 system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">G3 system</mdui:DisplayName>
          <mdui:Description xml:lang="en">G3 system - monitoring sitove infrastruktury datovych ulozist</mdui:Description>
          <mdui:Description xml:lang="cs">G3 system - data storages infrastructure network monitoring</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>g3-du.vm.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://g3-du.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=g3-du.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIJALOMPo1pZOxOMA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://g3.bb.ces.net/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET3 backbone - internal monitoring.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET3 páteř - interní monitoring.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Internal backbone monitoring with G3 system.</mdui:Description>
          <mdui:Description xml:lang="cs">Vnitřní monitoring páteře systémem G3.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://g3.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://g3.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://g3.bb.ces.net/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3.bb.ces.net/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>g3.bb.ces.net</ds:KeyName>
          <ds:KeyName>https://g3.bb.ces.net/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=g3.bb.ces.net</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHTCCAoWgAwIBAgIUQKxft19XB9/KmjXS8811cvLA0IUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.bb.ces.net/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">G3 monitoring - CESNET3 backbone.</md:ServiceName>
        <md:ServiceName xml:lang="cs">G3 monitoring - CESNET3 páteř.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Internal backbone monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Vnitřní monitoring páteře.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Košňar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://g3.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">G3 system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">G3 system</mdui:DisplayName>
          <mdui:Description xml:lang="en">G3 system - monitoring site e-infrastruktury</mdui:Description>
          <mdui:Description xml:lang="cs">G3 system - e-infrastrukture network monitoring</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://g3.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>g3.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://g3.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=g3.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUSdyarU2JkIA2Su48N5Ke4xhaFL4wDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAxMMZzMuY2VzbmV0LmN6MB4XDTE5MTAxNTExNDA1N1oXDTM5
MTAxMDExNDA1N1owFzEVMBMGA1UEAxMMZzMuY2VzbmV0LmN6MIIBojANBgkqhkiG
9w0BAQEFAAOCAY8AMIIBigKCAYEAm9pS+cj3vm+Lru8lTYeH7Zk1iwuxorP7XYBZ
3TS4EABUlvBkO3zgwb1qtn7+NugpjfIiYZzZBOhSUwjOjGuH1h42g6Crqj0as7xM
B+0DpITQ/rxs6PL6t2sAdbo0gnVpGAUn+kArp6NF6NNeHnVLEoAKKW4bFvyvN4qC
fuQJz2xLPA00kUa3zNLy/au1nWPyDqt6uhU+NlNqUiEq9jWI0i27HmoM5g8GSPNK
wMYFPKExOCA1oo5fdWGMHxJzWvYsXlZR8k7LHjq/c81vcMV1LLYdRQOHQXFk68r8
TGskk0oob3/5tqNB6bQboRjdtxBiZ/IwNQDJNpvIo9fQYFHrC+fUpQ0bLYbFbNCf
3aL4d7ayMx/F7lz/rKcJUfPHGSPJBEA0DVH16F5ggLyd4m3X1KvvJ6O06NHdRoeB
hjNfEhh4jxckDk8H/7EuEp2pMQw8BfzzMv9rLnQpCkNQya8CQBrPMWhzt0YgK8Jz
l6PYV0rZsQw/hed4hmncQN/+X9crAgMBAAGjWzBZMDgGA1UdEQQxMC+CDGczLmNl
c25ldC5jeoYfaHR0cHM6Ly9nMy5jZXNuZXQuY3ovc2hpYmJvbGV0aDAdBgNVHQ4E
FgQUMJfOfKDCBalw4pVmxcLf0NxEi3wwDQYJKoZIhvcNAQELBQADggGBAGpinkIA
p8J82ZkHOOCr6hVtZ9STRdluwq9cyER4ED1W0HxefVMoafayj0J9GbFRxb5Pz3SB
QTmmHWSPL8AYeb9vLEEBFnmncc2cYlhGdoSY+HCNiRTdhuCmNvxWePpArXTJ8VdJ
3u3ZmTQ+C0OBrNdRcShiTB1aeNCStKCQPltekJcUt+H0XZHJn9YYu1Q8lALhjsAQ
lCm7VTRWwnJsJDXRexcKC2BdNZVeyWY3WcPaYUmrHYnXVNfaqyrDFuoEjInDpbON
LJp10YCER9WJgUSWvykGXzlwmTuybKAdryZDvWKT3dyLW9uz4VADjid6vRjvMUQm
2KdkKDVKccwOVmXg7tlVxhSxisWhFLvL6JeiPEd+/XPwJ8iCsEVIl0Ycs71Y7T5w
GlA86tc/rgGh2ktGlqk9fAYGkwDzTWRO8VT3QrR75MDudwzTXm5BV/GSmmW/vg5/
+65upfFhhKz05wom2YTaNd5t9B2MHbghDh9Qsn241NLK3fnl8apahhrIgA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://galaxy.ceitec.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2018-03-14T16:39:46Z"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Galaxy server</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Galaxy server</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web-based platform for NGS analysis (CEITEC).</mdui:Description>
          <mdui:Description xml:lang="cs">Webove rozhrani pro analyzu NGS dat (CEITEC).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://galaxy.ceitec.muni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://galaxy.ceitec.muni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>galaxy.ceitec.muni.cz</ds:KeyName>
          <ds:KeyName>https://galaxy.ceitec.muni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIJANw7BqtnZ5tYMA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV
BAMTFWdhbGF4eS5jZWl0ZWMubXVuaS5jejAeFw0xODAzMTQxMjAyMzlaFw0yODAz
MTExMjAyMzlaMCAxHjAcBgNVBAMTFWdhbGF4eS5jZWl0ZWMubXVuaS5jejCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMkI6pWLaOs++SE69tYhuwnrp17X
96KbQIPdLlpaw+4i3b4n5QIyipWLHVq8dvjx0OnBL21YLL+in+MIcGmLvE3EMii6
/YN/Y86tVbv7eBAVd/qSAZKhU6HC2wPtnbQcI/hwo8Hw6ysQo7zHyFCLcd3AGU+A
myfMN2tUb7TJc8++EGoAoTpDraBMwp+kJzRSk379rIOg/B/KzXZ3QgtQueqLwNeq
EPfu+ad7D4V9LjQl6mv3mgN/XFye8QQVqzDZ7TsGo7a3QH2uCn/PkgMwl57FnNZf
Re5cc8pUw3m2eoVp/zD8nbvYK06ZbVbUftl+qVTsnkuDRGw8TYFKFXN7lJcCAwEA
AaNtMGswSgYDVR0RBEMwQYIVZ2FsYXh5LmNlaXRlYy5tdW5pLmN6hihodHRwczov
L2dhbGF4eS5jZWl0ZWMubXVuaS5jei9zaGliYm9sZXRoMB0GA1UdDgQWBBQhHPrb
oCL/sAbL/f2eMdrQW2gVoDANBgkqhkiG9w0BAQUFAAOCAQEAPHrnhRC0xdwDvcn7
ZYo0CtRffe/Tm65uk0kfNRZrB00tEwPqQXXJziLVtUP329Fnyiv86EXTf7WLTkjL
/+NmzjupclfYELLr6QOpZDEj11/p805+Abg2h20kzS6hmdnjsOaEHe81fq/Xx1VD
/tQbozhSNUL2hhVw+b5P3hnmLIvyX8hevssUa5n5D2jmIlnF//W+PEhK6F6UT5O6
SEJGSuW8K+WvOxMSZ/8Uog57dkjrak35Xrck46A/mhncSSdTs5BaMgjP+0BFOG+6
Hb4jsfwc48bPvQZLx0KJbB6E56cShxARi2LHoJq/82m8GISgiyBOKwfke9RUkuZV
QymBMQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CEITEC</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CEITEC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CEITEC</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CEITEC</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.ceitec.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.ceitec.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Demko</md:SurName>
      <md:EmailAddress>mailto:xdemko@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gc1.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based traffic monitoring.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring provozu na bázi toků.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/sluzby/sitove-sluzby-1/sitovy-monitoring-sledovani-ip-provozu-ftas-34</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/en/services/network-1/network-traffic-monitoring-ftas-34</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/en/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gc1.vm.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://gc1.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gc1.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUJyfAe/41BpOtxRkARM+lX6ItihwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Flow-based traffic monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring provozu na bázi toků.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Košňar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gc30.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based traffic monitoring.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring provozu na bazi toku.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gc30.cesnet.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gc30.cesnet.cz/Shibboleth.sso/DS" index="4"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gc30.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://gc30.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gc30.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEITCCAomgAwIBAgIUFIvBonGVmnpTR7lkpcqe9Juui5kwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAxMOZ2MzMC5jZXNuZXQuY3owIBcNMjQxMDAzMTI0MTA5WhgP
MjA1NDA5MjYxMjQxMDlaMBkxFzAVBgNVBAMTDmdjMzAuY2VzbmV0LmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAuf7F5Sh53mc/IwjM3Kbf3SP6tAnK
/Qx4Ygcyw35gmXfDn26A1sHKLJI5JdRr55BbJ4WhOyqL185If+PnJjMA9FFgVlDp
4m8MFp8y44h8McNh6DoG5pmcaCNg0WQRtfsu/66ttCyr84vTpMzD8Y8FwgbiEmwy
s+jFHtBztzkhFFnAetTxH0sfkKblVZlNep25Q/1gIPPn+5jICpkTsrSTssbk5G6I
w5r04GtXyTcezDjmQ/byIMbLXTMYWCtauwkgWSbydIOR4SuK8uIvNuNUAgSNj6VP
vPAdvz83+e/YP7iztK6L+dDHG1gMRQftkVHHrvtA6rxJ6XwfCT2fuG6yZB7x1dPq
u7RZBRyzo9l7G7LYhtxqvs/q0e/FEMzysDh1jY13A+lFqs5m1Rn3eHn0N0BCXvut
jwRazQeLpvH9luYfsSRs5oSXfS+/6Q9zOR/jrJuzCoUaHhO4cRWKRAaxHxOo/nkM
zX7T2khMmWOEFbs1i5A+f6YhW0OrlPnXepLzAgMBAAGjXzBdMDwGA1UdEQQ1MDOC
DmdjMzAuY2VzbmV0LmN6hiFodHRwczovL2djMzAuY2VzbmV0LmN6L3NoaWJib2xl
dGgwHQYDVR0OBBYEFGFIJ4stINCkPS78ln5OYzNjkpDQMA0GCSqGSIb3DQEBCwUA
A4IBgQCG791egf96Fn30X9mRB1luix6GxzzuD055lVmOQvj03PT780Rr3wJex3Ye
k9eV7d08KdXsElTCmj+M6tItemDAUH+K5Oyz9vC95UISfNTDsq9DV4Jc3y/hKxGM
wZ9y77FegkeOUo1z+aI/RT4gSJ6rYFRLAUTfnJJ7q2dF8EIQF+A+XbokMX+c+uaH
Ho7Ygc33BBLHz1mHo9vytcmg2CS6O8/cBmnWaW77dVdY+PwBjmzI4vqDNzwI2Wlj
zePNn+g1rwvvM2VzutYjhCQHIW3aL4qOGEACoj2mfrzrBJzyfjgvTcR1EPRUvLW2
WtbLUTuJAJIcC3SVUeE636RKBFjkU3XMSs8EdWdhBqY00sEcHkpNiPE5Rs88Y+pR
UrNU+smslvlgWF4b4dtivekKOkHala7xdQ7qe/ZnfKs+N1qSgQHaPA1BsS1MeOkJ
YGvDOWbDddmL//Uts4RoiaPiF0xANpcbU5nq0VBGGC6/VhewZDEy6+CVcidBW0Ny
aMHDBnM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc30.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="8"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Flow-based network traffic monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring provozu site na bazi toku.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gerrit-2.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Gerrit Code Review</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Gerrit Code Review</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET's Gerrit Code Review</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET's Gerrit Code Review</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://gerrit.cesnet.cz/Documentation/intro-gerrit-walkthrough-github.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://gerrit.cesnet.cz/Documentation/intro-gerrit-walkthrough-github.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>gerrit-2.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gerrit-2.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEETCCAnmgAwIBAgIUXbOXVa1rsd6BPHZsWalRDziJWQMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>gerrit-2.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gerrit-2.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEETCCAnmgAwIBAgIUc9IOTiyqUk2povzg8DBGCCdAa+MwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit-2.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit-2.vm.cesnet.cz/Shibboleth.sso/Login" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Gerrit Code Review</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Gerrit Code Review</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kundrát</md:SurName>
      <md:EmailAddress>mailto:support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gerrit.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gerrit.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gerrit.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID9zCCAl+gAwIBAgIJAJNkrN+ieHJiMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.cesnet.cz/?lang=cs</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Kundrát</SurName>
      <EmailAddress>mailto:jan.kundrat@cesnet.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" cacheDuration="P1D" entityID="https://gradabookporttest.azurewebsites.net/">
    <SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">BOOKPORT-TEST</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">BOOKPORT-TEST</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital library subscription</mdui:Description>
          <mdui:Description xml:lang="cs">On-line knihovna pro každého</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://gradabookporttest.azurewebsites.net/o-sluzbe/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://gradabookporttest.azurewebsites.net/o-sluzbe/</mdui:InformationURL>
          <mdui:Logo height="48" width="300">https://gradabookporttest.azurewebsites.net/Content/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gradabookporttest.azurewebsites.net/AccountSaml/SignIn/" index="0" isDefault="true"/>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIID7jCCAtagAwIBAgIJAOaxj9I1F483MA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejAeFw0xODAxMDkxNjAxNDJaFw0zODAxMDQxNjAxNDJaMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALBdA92fPEK9/S4eWJFqXLlhkmQaLzrd0LCl27FF1AqoD139rPQSHyyfOXg3V/xfUyFin/WTXJswSZ80J2RYhlEvMG2RzHGheGLHI5e8GqPb/4vdHHBbc31DDqQl53hD0buma2/Vi4+aiQlUhwzyni2xffev2ZijXCj6u8n3fKyZyW0dX8UTFQYGK5yZmrXToHfZDyIrl4RlF8ME8ckB/RtWecqIgb5Zcbntgl0fenVyucRnb69weUL6Qvqd5sf5ZWwbG5BuC1Do4CLYlP9a62FOWAPIpH47ZOMM9JSMhmWKMWVgc5xpxIK7U624emd11FufHeVdV1PXviPuePS+h+8CAwEAAaNTMFEwHQYDVR0OBBYEFJSzRnb3AMo/eb94KIYvQVlKVMs2MB8GA1UdIwQYMBaAFJSzRnb3AMo/eb94KIYvQVlKVMs2MA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAFcwzfJgXwthhILWQNnmqIc77mYStLaKV+Wx4HwUFNph7DzDOXFj+C1JDFmus6hQ37BAyQChqD6MND4zj0NEDRS25k75jVMKAwWjIm30oAczXUCKFcHA/AS0X/G3IcGf/yNsRGx+ae5akKBjvPcS7aZ+9IwEveJHypWy+Sx3ca/R08gXz1+C/d89KtQ4D67FBVTkKUAojxC1wT96UhhTzKRfpnMyLLiqM/6GML+lVo23bbSRO5UMLC5Ajzrfr6K0q5eR8HDRiQFQ8LKXh/HI8mhjlCCA1tb5jEatqhsd1R8J5Zr9Dupsn0SKFA3RVxinSjbccKeaUC07wgjCzDmIDxM=</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIID7jCCAtagAwIBAgIJAOaxj9I1F483MA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejAeFw0xODAxMDkxNjAxNDJaFw0zODAxMDQxNjAxNDJaMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALBdA92fPEK9/S4eWJFqXLlhkmQaLzrd0LCl27FF1AqoD139rPQSHyyfOXg3V/xfUyFin/WTXJswSZ80J2RYhlEvMG2RzHGheGLHI5e8GqPb/4vdHHBbc31DDqQl53hD0buma2/Vi4+aiQlUhwzyni2xffev2ZijXCj6u8n3fKyZyW0dX8UTFQYGK5yZmrXToHfZDyIrl4RlF8ME8ckB/RtWecqIgb5Zcbntgl0fenVyucRnb69weUL6Qvqd5sf5ZWwbG5BuC1Do4CLYlP9a62FOWAPIpH47ZOMM9JSMhmWKMWVgc5xpxIK7U624emd11FufHeVdV1PXviPuePS+h+8CAwEAAaNTMFEwHQYDVR0OBBYEFJSzRnb3AMo/eb94KIYvQVlKVMs2MB8GA1UdIwQYMBaAFJSzRnb3AMo/eb94KIYvQVlKVMs2MA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAFcwzfJgXwthhILWQNnmqIc77mYStLaKV+Wx4HwUFNph7DzDOXFj+C1JDFmus6hQ37BAyQChqD6MND4zj0NEDRS25k75jVMKAwWjIm30oAczXUCKFcHA/AS0X/G3IcGf/yNsRGx+ae5akKBjvPcS7aZ+9IwEveJHypWy+Sx3ca/R08gXz1+C/d89KtQ4D67FBVTkKUAojxC1wT96UhhTzKRfpnMyLLiqM/6GML+lVo23bbSRO5UMLC5Ajzrfr6K0q5eR8HDRiQFQ8LKXh/HI8mhjlCCA1tb5jEatqhsd1R8J5Zr9Dupsn0SKFA3RVxinSjbccKeaUC07wgjCzDmIDxM=</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gradabookporttest.azurewebsites.net/saml2/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gradabookporttest.azurewebsites.net/saml2/Logout"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gradabookporttest.azurewebsites.net/saml2/Acs" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gradabookporttest.azurewebsites.net/saml2/Acs" index="1" isDefault="false"/>
      <AttributeConsumingService index="0" isDefault="true">
        <ServiceName xml:lang="en">SP</ServiceName>
        <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="pairwiseID" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="subjectID" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Grada Publishing, a.s.</OrganizationName>
      <OrganizationName xml:lang="cs">Grada Publishing, a.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">BOOKPORT</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">BOOKPORT</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.bookport.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.bookport.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze-test.jcu.cz/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">EPZ-TEST JCU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">EPZ-TEST JCU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Project and Order Management TEST JCU</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence projektů a zakázek TEST JCU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze-test.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze-test.jcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze-test.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze-test.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze-test.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEUzCCArugAwIBAgIUHnPCKE21XLviCUi87m1XXxXlrsUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze-test.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze-test.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze-test.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEUzCCArugAwIBAgIUVSCjz7EoK6EKJuclyfdr8DWltYwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">EPZ TEST JCU</md:ServiceName>
        <md:ServiceName xml:lang="cs">EPZ TEST JCU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Project and Order Management TEST JCU</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence projektů a zakázek TEST JCU</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Roch</md:SurName>
      <md:EmailAddress>mailto:roch@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eduard</md:GivenName>
      <md:SurName>Krlín</md:SurName>
      <md:EmailAddress>mailto:ekrlin@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze-test.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IGA test server UTB</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IGA test server UTB</mdui:DisplayName>
          <mdui:Description xml:lang="en">GRANTOVE SOUTEZE test server UTB</mdui:Description>
          <mdui:Description xml:lang="cs">GRANTOVE SOUTEZE test server UTB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze-test.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze-test.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUEum1vdx1NL+zXpXUMPJboHkvkGowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUQigpC2rlx0r8uOPOv9Sc8NIN2fMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IGA test server UTB</md:ServiceName>
        <md:ServiceName xml:lang="cs">IGA test server UTB</md:ServiceName>
        <md:ServiceDescription xml:lang="en">GRANTOVE SOUTEZE test server UTB</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">GRANTOVE SOUTEZE test server UTB</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze.jcu.cz/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">EPZ JCU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">EPZ JCU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Project and Order Management JCU</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence projektů a zakázek JCU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze.jcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUSDKQLDMuIrXP+iLnllqSrmJN55swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUYsRGK2PoLmcIgEPgWoo+HpYcR7IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">EPZ JCU</md:ServiceName>
        <md:ServiceName xml:lang="cs">EPZ JCU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Project and Order Management JCU</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence projektů a zakázek JCU</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Roch</md:SurName>
      <md:EmailAddress>mailto:roch@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eduard</md:GivenName>
      <md:SurName>Krlín</md:SurName>
      <md:EmailAddress>mailto:ekrlin@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IGA server UTB</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IGA server UTB</mdui:DisplayName>
          <mdui:Description xml:lang="en">GRANTOVE SOUTEZE server UTB</mdui:Description>
          <mdui:Description xml:lang="cs">GRANTOVE SOUTEZE server UTB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUMQJKZThsmY6r2de0kxVu0+d10ccwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUaGGw5HaZ0SeuKUXB9Fz4tQntf1AwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IGA server UTB</md:ServiceName>
        <md:ServiceName xml:lang="cs">IGA server UTB</md:ServiceName>
        <md:ServiceDescription xml:lang="en">GRANTOVE SOUTEZE server UTB</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">GRANTOVE SOUTEZE server UTB</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://granty-test.upol.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">granty-test upol</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">granty-test upol</mdui:DisplayName>
          <mdui:Description xml:lang="en">granty-test upol access</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup do granty-test upol</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://granty-test.upol.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://granty-test.upol.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://granty-test.upol.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://granty-test.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://granty-test.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>granty-test.upol.cz</ds:KeyName>
          <ds:KeyName>https://granty-test.upol.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=granty-test.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUGGQ81zno386950rc9moUxU79kC8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty-test.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">granty-test upol</md:ServiceName>
        <md:ServiceName xml:lang="cs">granty-test upol</md:ServiceName>
        <md:ServiceDescription xml:lang="en">granty-test upol access</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup do granty-test upol</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="username" Name="urn:oid:1.2.840.113556.1.4.656" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc testing</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackého v Olomouci testovací</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc testing</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackého v Olomouci testovací</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Pavlik</md:SurName>
      <md:EmailAddress>mailto:martin.pavlik@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://granty.upol.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">granty upol</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">granty upol</mdui:DisplayName>
          <mdui:Description xml:lang="en">granty upol access</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup do granty upol</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://granty.upol.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://granty.upol.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://granty.upol.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://granty.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://granty.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>granty.upol.cz</ds:KeyName>
          <ds:KeyName>https://granty.upol.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=granty.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUQKtf0Hp2QTUEcP3DkgJv7Bl612QwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://granty.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">granty upol</md:ServiceName>
        <md:ServiceName xml:lang="cs">granty upol</md:ServiceName>
        <md:ServiceDescription xml:lang="en">granty upol access</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup do granty upol</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="username" Name="urn:oid:1.2.840.113556.1.4.656" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackého v Olomouci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackého v Olomouci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Pavlik</md:SurName>
      <md:EmailAddress>mailto:martin.pavlik@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://gryf.mlp.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">mlp.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library of Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Municipal Library of Prague registered users.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro registrované uživatele Městské knihovny v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.mlp.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.mlp.cz/</mdui:InformationURL>
          <mdui:Logo height="300" width="200">https://web2.mlp.cz/logo/200.png</mdui:Logo>
          <mdui:Logo height="600" width="400">https://web2.mlp.cz/logo/400.png</mdui:Logo>
          <mdui:Logo height="1200" width="800">https://web2.mlp.cz/logo/800.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIULkD4pR5Gq0GQDpB++bsqdTilisgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUaAb2SqEwW/Y/eN503hQxIslbDG8wDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLZ3J5Zi5tbHAuY3owHhcNMTUxMDA4MDk1NzE5WhcNMzUx
MDA4MDk1NzE5WjAWMRQwEgYDVQQDDAtncnlmLm1scC5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBANzXzawpuUBshaRS7Cq0kMhCLmFn+IB3qc+TUCIq
kYSI7zVg/gHVAWDksCc8XYK3gPCsIsCGJdte3gj39wb1wVP83EFVXsnpcNpi0dsF
QzDP78+U6pn/7gq4DzW1z7CIA1fCXxfFdmUaW8D67Mfc3dtrdc7EAovOyoCOGtAP
28kLjUkhZ1hNpVpVlO26HWQBSvZHMcTWS4hySWcy3PSxcptiVloRa2lWSX2OciFG
llFsf5yahOdHJZYzMdMHwltKInMJGhC5ygERnwLxuiiRgmdKQa61E0YrQ5yKiRXN
PWZtpdvapayrXf8zqdfxnkLepf71Q2lc37wNWibCFVck4eUCAwEAAaNdMFswHQYD
VR0OBBYEFG1izoDQ0uOhi0/tDEYdqtzK4CVZMDoGA1UdEQQzMDGCC2dyeWYubWxw
LmN6hiJodHRwczovL2dyeWYubWxwLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBAQBxLMizMsn6oDImorAHTEwBgE+eFlaRiF0nZvV4oXDXJ2X8bqOF
w93gVEmMZUDzeBqOlradfii4RhHuE6yKqmV+qBwJ8u853UXRipm3uWqAIVrMkQ3N
84lJjXOUqwAZDbYIbCQa8hqvJX+EVThTD1bd/u4eHOAaGoHCV4i8mn/XEa3NQldP
MyiD99jV3UaujsiD8s/1rfMzhB1oJicLD6YvuwtJ8G+m8Jaq1E3ZEd6ITvUw0SCk
bziSz8fz4BqTH4WJrHUQcJ0YR5P6gBLYM/74QXNjIQfsJ/eLHIZca+hv/XvBbJwW
NA4hwb+zDImzHcZWYUWQXwjkaoAgTKr0HxKr</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAPMLzE5J6rFDrO+XYbHk0xhU1UVpMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://gryf.mlp.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gryf.mlp.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://gryf.mlp.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gryf.mlp.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gryf.mlp.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gryf.mlp.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">mlp.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIULkD4pR5Gq0GQDpB++bsqdTilisgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUaAb2SqEwW/Y/eN503hQxIslbDG8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAPMLzE5J6rFDrO+XYbHk0xhU1UVpMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://gryf.mlp.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Municipal Library of Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Městská knihovna v Praze</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Municipal Library of Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Městská knihovna v Praze</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.mlp.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.mlp.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Vojtěch</GivenName>
      <SurName>Vojtíšek</SurName>
      <EmailAddress>mailto:vojtech.vojtisek@mlp.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gull.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gull.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gull.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Testing CU Digital Repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací digitální repozitář UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing Charles University Digital Repository</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací digitální repozitář Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://gull.is.cuni.cz/?locale-attribute=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://gull.is.cuni.cz/?locale-attribute=cs</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://gull.is.cuni.cz/?locale-attribute=en</mdui:PrivacyStatementURL>
          <mdui:Logo height="425" width="1696">https://gull.is.cuni.cz/themes/Mirage2//images/DRepozitarUK_Helvetica.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>gull.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gull.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDWzCCAkOgAwIBAgIJAJhWSLYQ/2luMA0GCSqGSIb3DQEBCwUAMEQxCzAJBgNV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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gull.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://helium.jcu.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">jcu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of South Bohemia in Ceske Budejovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for SBU in Ceské Budejovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro JČU v Českých Budějovicích</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.jcu.cz/?set_language=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.jcu.cz</mdui:InformationURL>
          <mdui:Logo height="38" width="40">https://helium.jcu.cz/logo-ju-40.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUT352/cuSCyIoBXXvytfYj0l2xeAwDQYJKoZIhvcNAQEF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUT352/cuSCyIoBXXvytfYj0l2xeAwDQYJKoZIhvcNAQEF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUT352/cuSCyIoBXXvytfYj0l2xeAwDQYJKoZIhvcNAQEF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://helium.jcu.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helium.jcu.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://helium.jcu.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helium.jcu.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helium.jcu.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://helium.jcu.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://helium.jcu.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of South Bohemia</OrganizationName>
      <OrganizationName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of South Bohemia</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.jcu.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.jcu.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Marek</SurName>
      <EmailAddress>mailto:jmarek@jcu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hlasovani-test.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso test</mdui:Description>
          <mdui:Description xml:lang="cs">Verso test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility-test.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility-test.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAK8AUVuFqsJ8MA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hlasovani.cesnet.cz/Shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">hlasovani.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">hlasovani.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Hlasovani CESNET</mdui:Description>
          <mdui:Description xml:lang="cs">Hlasovani CESNET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://hlasovani.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://hlasovani.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="65" width="175">https://hlasovani.cesnet.cz/Images/cesnet-logo-inv.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-prod-ext.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-prod-ext.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDDCCAnSgAwIBAgIJAJcEold1DJ9qMA0GCSqGSIb3DQEBCwUAMCIxIDAeBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Dalibor</md:GivenName>
      <md:SurName>Schotli</md:SurName>
      <md:EmailAddress>mailto:dalibor.schotli@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hlasovani.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso</mdui:Description>
          <mdui:Description xml:lang="cs">Verso</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.vscht.cz/about-us/official-board/personal-data-processing-and-protection</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.vscht.cz/uredni-deska/zpracovani-a-ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hlasovani.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hlasovani.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAKJNZSd5rxgqMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://homeproj.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Projects support</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Podpora projektů</mdui:DisplayName>
          <mdui:Description xml:lang="en">A service for projects support (redmine, sympa, git, apt, rpm, tar).</mdui:Description>
          <mdui:Description xml:lang="cs">Služba slouží pro podporu projektů (redmine, sympa, git, apt, rpm, tar).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://homeproj.cesnet..cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://homeproj.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://homeproj.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://homeproj.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>homeproj.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=homeproj.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIC/TCCAeWgAwIBAgIJAPT79xFR8l8gMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://homeproj.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Projects support</md:ServiceName>
        <md:ServiceName xml:lang="cs">Podpora projektů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service for projects support (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba slouží pro podporu projektů (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Mach</md:SurName>
      <md:EmailAddress>mailto:mach@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hugo-mon.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Hugo monitoring</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Přehled Hugo</mdui:DisplayName>
          <mdui:Description xml:lang="en">Hugo honeynet monitporing and administration.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring a správa sítě honeypotů Hugo.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://hugo.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://hugo.cesnet.cz/en</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://hugo.cesnet.cz/_media/site_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>hugo-mon.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=hugo-mon.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIFGzCCAwOgAwIBAgIUTdg0LZHawSDDxOTUSk/C2u4DExEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Hugo monitoring</md:ServiceName>
        <md:ServiceName xml:lang="cs">Přehled Hugo</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Hugo honeynet monitoring and administration.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring a správa sítě honeypotů Hugo.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Studený</md:SurName>
      <md:EmailAddress>mailto:sec-op@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hup.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">HoneyPot GUI</mdui:Description>
          <mdui:Description xml:lang="cs">HoneyPot GUI</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://hup.upce.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://hup.upce.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hup.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hup.upce.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://hup.upce.cz/shibboleth</ds:KeyName>
          <ds:KeyName>hup.upce.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=hup.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUSXTKGNHl7C2hk1dC8GK190aLiMwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hup.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hup.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hup.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hup.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hup.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">HoneyPot</md:ServiceName>
        <md:ServiceName xml:lang="cs">HoneyPot</md:ServiceName>
        <md:ServiceDescription xml:lang="en">HoneyPot GUI</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">HoneyPot GUI</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://id.nm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">nm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National museum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní muzeum</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for National museum employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Národního muzea.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.nm.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.nm.cz</mdui:InformationURL>
          <mdui:Logo height="152" width="331">https://id.nm.cz/nm_logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDCzCCAfOgAwIBAgIUcx5pdv+yEclWfOJtHDZQOIStdf8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDDDCCAfSgAwIBAgIVAP3JhaPpEF0BrKYTS2p6c2w2Fk+IMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDCzCCAfOgAwIBAgIUFifPNBGfAED1XfogUPNTucgBSFgwDQYJKoZIhvcNAQEL
BQAwEzERMA8GA1UEAwwIaWQubm0uY3owHhcNMTUwODEyMDkwNjIwWhcNMzUwODEy
MDkwNjIwWjATMREwDwYDVQQDDAhpZC5ubS5jejCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBAOmd2fmmSnDDeZbYevwxG7nXGIerKmqUzJ1lqRXIEoL73w34
cmuCD/vw5GIWhRajr+FKQvwh2idxNGM5v1hXKfxQML5iyQyaopa5En91OTEpQ6CW
fGLtI31nQfEgq06bhhBSHeZzaH1s6byjRDSlIq1u9ixQlGcMgKwY5BQtqtNtHyjG
4GkRRiFTAruNDHHaWkSVEcZv1qHfMuaeosaaU1IE1janrdFxFI0jVxxMvGGoJ8Zj
gn2ZHzNZcfvSQbY3makFSGlh8VThIfHDU4yMj46uAiyELe7FZNhpZXpieBVLzMZa
zgcgW5wdxz+HWye6leJjP22D3Ln4DwBraGJT31cCAwEAAaNXMFUwHQYDVR0OBBYE
FNeeNtrTK6h7F9ehoc+cZOvdU+H0MDQGA1UdEQQtMCuCCGlkLm5tLmN6hh9odHRw
czovL2lkLm5tLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCo
fDVgl+UnHXixP6aNRu6EqfTlLs/B3exG0CbeFpOkS24RQotBVojohX5v4pjJlShD
T5WKrPYpYtkoXZBofHoDjIjIYj70Z4bncFwML0aW9rzxjl96O4hgwqb0M2CUtFbW
cQpGyihjzk83Uw+axN8Bd5SyjWcFX+h07GNQaVW4B5ur29NM7w60llEr/MbjIRZw
zk38AV2U/3uQ5f6dt7Ev0zUAqKbjI/5z7+JHqhtx1AzdpcLm7k5Ft993deuLcE/U
oneUW6hg54IcnafOx4zPzaBmUmGYnCuxuInEETcT2aNhQ6didXBKjWmGuitt8Inx
WhPVPIpOC+JHh4fEXlXJ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://id.nm.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://id.nm.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://id.nm.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.nm.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://id.nm.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.nm.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nm.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDCzCCAfOgAwIBAgIUcx5pdv+yEclWfOJtHDZQOIStdf8wDQYJKoZIhvcNAQEL
BQAwEzERMA8GA1UEAwwIaWQubm0uY3owHhcNMTUwODEyMDkwNjIxWhcNMzUwODEy
MDkwNjIxWjATMREwDwYDVQQDDAhpZC5ubS5jejCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBANii8xobaa3B48jkFSWwycmd+VNaXJp43yz38bnnqPIHRlRY
Vas1fLFbFCOOm1UtPNLeiTaxex8GJ1xg00K8OWj/JlOGGxmPq1HA755qX3/JFQ34
G/ElpQnNWZxZK1rHQbZXK0hTTPkEMGyH9bPAeKBj3yFfADn/t/6nJE3ZbkR2k/aN
E/CZtEqJhR+cE2dQjCv10Eqjtdu7lxkKLSmb8wWbbmeh0l3Vw0VR/qgyN2008T+n
2mAyvnbLy8m+RuuqyDNpzyq1ko9UfGL/sBSd6778+6WTU/7mSd8FKlv/CAgtvF4L
1DAeLH5LfbMGnYKN6cLd8Wxra2SeLhZIhVrvv6kCAwEAAaNXMFUwHQYDVR0OBBYE
FAzmcggbGYI4cV08pxoVMvJ7eYz0MDQGA1UdEQQtMCuCCGlkLm5tLmN6hh9odHRw
czovL2lkLm5tLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQDT
UgSzQDu/GluifCl9aozt1/NaR490jsF3iO/g/UGH/8JAuQRw5DA4AIiJHqB0Lzd7
4aCu4ukqOSmpRJSJd7tLTATSIR9CCkmh2IjItbwwe1wQ4kSdKAS+epsvlwCruRR8
pMS6jVToTDAGZgE1buMLZIh+g3LcJO1Sw7OTdMgg7YphZYlbPv3VH8AUOWBuAj+8
B4lskQyHLnUSjjYYrztHensi3qkG5IBoomKUvbYjdSQSwzev5hHmPpZOHuThaW/w
/G4E70KE0Nenx3ixozxiljZoUm/V2oZoXq0rd5vqlXIo29EYPLhxBHxWnBkVd9/t
4KY71jhvr41xdmP6t+ur</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDDDCCAfSgAwIBAgIVAP3JhaPpEF0BrKYTS2p6c2w2Fk+IMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDCzCCAfOgAwIBAgIUFifPNBGfAED1XfogUPNTucgBSFgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://id.nm.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National museum</OrganizationName>
      <OrganizationName xml:lang="cs">Národní muzeum</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National museum</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní muzeum</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.nm.cz</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.nm.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jakub</GivenName>
      <SurName>Bělka</SurName>
      <EmailAddress>mailto:jakub_belka@nm.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://id.nudz.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">nudz.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Institute of Mental Health</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní ústav duševního zdraví</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for NIMH employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance NUDZ.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.nudz.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.nudz.cz/</mdui:InformationURL>
          <mdui:Logo height="134" width="245" xml:lang="cs">https://www.nudz.cz/img/logo_cs.png</mdui:Logo>
          <mdui:Logo height="134" width="245" xml:lang="en">https://www.nudz.cz/img/logo_en.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVAKJEauFrNEmNRdkihWiyGCVakYM8MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUO71JMWdtrMl+Qc94qGeAa3JzB7swDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWQubnVkei5jejAeFw0xOTEwMDkwNzIxNDRaFw0zOTEw
MDkwNzIxNDRaMBUxEzARBgNVBAMMCmlkLm51ZHouY3owggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQCOmEOmeIAy/YLzQQ5OQQFYIE5gmYwSUkuTqC0luaay
EI2g2V0DaQkNRbo4iD3CUA6bud2Lngcb/kxCnzU+WTTKHiITT5AJXPerqN68uNYD
QvZSKbifs3fcdIibeSxeImV6Ac497YcTCz61nM5t8Td3ox75v3TUIkS6pr/EfIPO
HPQYPR82QROxqRosPy8dvpe5OGErG/VQvALQsH/lKxWxVTgvC0piGYdo2f+mveN2
8zPVWfQcWDB/hnxi1DbbNAfFeGOQcNsVIwtC1hThvk1m1XuOm39t+IO9FVpzi+cK
sDMz/mQwz8rQze2NYUhEQqnWJEdHfN0GFkUK9nhQ6FrroLbuabkPIaISZo8vWdty
21UM1vDsXVUh17+fwHbR/SXTM1Xaq+rhhaRHvqYTBH9CTS1vosC0+M1IwRxQNF7w
5ywC3/c1KiF4+whWLpFxeCuf8Euym+rCScKmrj1tT1OipRcIrbHrWKKlgPDxT+xn
eHP3+nyhsHFyMvij/klAmfsCAwEAAaNbMFkwHQYDVR0OBBYEFN9vFviw5lt8nnaC
V+mc+A8lcvkVMDgGA1UdEQQxMC+CCmlkLm51ZHouY3qGIWh0dHBzOi8vaWQubnVk
ei5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAZf4eK7QINe8/
acGzrgjzNPUVtdv1wB/pjSnqblJkivYkh/cB9b5vvZv9M0+GujcOEBdDdx23XtNP
C2JyVtmNdQoCXt/ESPX1h41IgPNL3Di9XMq4oCPOtH0C2ESTAvnqAHYcTr0tDt7P
2bRn0QIaJslaAKLAO5WXeo4oFdhKQkZPDfg/rBQSYzDQTbkHtjkViJnb+Svv2ffN
21YIiALZ9lkhm70wuCUvNeIeq0WPDDjjX7eTxoPX/D0Qu7kpiFMMBR+7m5TkYk2c
+ClAgM49WLF5+B02QFjIG23CtjzkeR1Nr6ZUKV++XSPnW9E/taVhufSqaWgLhXBI
0lxqAHAmuBrxMCdK8OggjjzSaPChNapvqpwfx+8ks4xvnNatFGaKilmxXp8hCLz4
HzsbBZhSsKsyhIjfDDaLDXgj9c1GuCtQVO+kf2UufM0MvtlB+KoA5uFwf+Eb9Qtn
knSvo0vZIE2w61/wTbX5fBufzWUJOS4i5xQjljUxFmfiWXogEz76</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.nudz.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.nudz.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://id.nudz.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://id.nudz.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.nudz.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://id.nudz.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.nudz.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Institute of Mental Health</OrganizationName>
      <OrganizationName xml:lang="cs">Národní ústav duševního zdraví</OrganizationName>
      <OrganizationDisplayName xml:lang="en">NATIONAL INSTITUTE OF MENTAL HEALTH</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">NÁRODNÍ ÚSTAV DUŠEVNÍHO ZDRAVÍ</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.nudz.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.nudz.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Mašík</SurName>
      <EmailAddress>mailto:Petr.Masik@nudz.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Budař</SurName>
      <EmailAddress>mailto:Jan.Budar@nudz.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://id.vse.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <md:Extensions>
        <shibmd:Scope regexp="false">vse.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Prague University of Economics and Business</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola ekonomická v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Prague University of Economics and Business.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit (IdP) pro Vysokou školu ekonomickou v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vse.cz/english/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vse.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40" xml:lang="cs">https://id.vse.cz/idp/images/vse-logo-cz_40px.png</mdui:Logo>
          <mdui:Logo height="120" width="120" xml:lang="cs">https://id.vse.cz/idp/images/vse-logo-cz.png</mdui:Logo>
          <mdui:Logo height="120" width="120" xml:lang="en">https://id.vse.cz/idp/images/vse-logo-en.png</mdui:Logo>
          <mdui:Logo height="40" width="40" xml:lang="en">https://id.vse.cz/idp/images/vse-logo-en_40px.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIFEDCCAvigAwIBAgIVAKnDkAW4Iu/rskjOgcYyua94rXv1MA0GCSqGSIb3DQEB
CwUAMBQxEjAQBgNVBAMMCWlkLnZzZS5jejAeFw0yMTAxMjgxMDA5MDlaFw0zMTAx
MjgxMDA5MDlaMBQxEjAQBgNVBAMMCWlkLnZzZS5jejCCAiIwDQYJKoZIhvcNAQEB
BQADggIPADCCAgoCggIBAJ6e7S32mW3Y0hT+I5bh+wHONttactVjXYoqk+KerHlJ
Z2VMm2xvgEjGxEoSotaVUR684GdAxu+WzRsqXWRKo5MER1ywAHqT4rrxFfkxs9mQ
gf024/cEv/omn72k/xQq5KtOvR5yxWMG0G0C7o6OvRT0t9RUCYRHGpD7ERFCcfC1
0wlsMZvUA6jpXd25+zfY7O8PCHEcrqu5EzeMUlTW8tSw4gMrgrDROA++9iPxU1O5
v+GMV4lwCg7KOn/FjkUdbXnQslX4RmG9mCQ5ZlA1WMrrTlia9ThWtjM2SSQrU/0h
v7HGtQyNtr1DtsQDu6NwKIsh6wlj9g8Luj8cgT8iWb6DI0gzLUYEUllG8p7qE4/O
Z/+X5bPbyjNY8NlisCKPlvBExXO4vrZjYF/dbAHBIpd8JibGTamhwJiADI4xeWXz
LMMQGzLeQnXCl0VoBPyZEu0bFB+yVRtZeVmNtWqgCNc1R5KrK0ga0Ygd6WntPNLw
D7vSUtb0ADbOrIHFUNsifVIFNHozTR/XteQidLPrnzSNbDvkqL9Z3Kp4yUSk0hqW
zNyP4vBP6NGpTiP7XMVh9IbWEwWSHXz9sautf8VUbe+rlOKQ3NSiGgd/5hO3vWT4
DFkT+8LoGl7/UPi+y5LLamffgNM6KFeopvz1OsH3qo8k2je8lT9/SvqNsbJyzfnv
AgMBAAGjWTBXMB0GA1UdDgQWBBQQnydrktx/olO4LInKLH4sp2Rl2zA2BgNVHREE
LzAtgglpZC52c2UuY3qGIGh0dHBzOi8vaWQudnNlLmN6L2lkcC9zaGliYm9sZXRo
MA0GCSqGSIb3DQEBCwUAA4ICAQCIixYffz+cULv1bclN7xUAdn9pdSj6eC8/qMu0
cBKkRn2zXcFTPBLyJrWr/Qw/3WGeK13P5cW0kvnlaze7LBySkcTmmIRKk5GARgSK
iU9Y0jlSB8iPR0uvLHV4B/9gvcQzUNMNgagGNLfGYVJMCgx2txeBKDj5evjN+YVn
3zQAjytbe+oYPz349tLYcQ2TySutL9JVFW7VL2DOPi+yHLK3avERMZtTm3o6zEhi
dKeBHU6GP5vYGD27kMFynk6tO1bLpVthckV8ynhLeff1ktCl+ZsMP8Z/5hXhToM7
qG9g+Gu1tUkS43ji310nmZu6OVsW/8riln7m8jewgLhvNv970O6KQeqNXQG12QA9
1q4J54Uej/ymFpeLJG/eOx/mwkXjzdl1QvXjEox6gBz8Y1TUCfrtiu/SBXf05/h+
F0qIU89VlfJ/nfebdMhpMGLG6get9k/LN7q8l1/wjQaer8tQoEK3C2WpHtMhvzTH
I579J2TZNTAaCNgg2AmqIp5HPmLsV0l8JjtW9JUsOqnz2bhDCNxfoq2ZNlcJgQQZ
APiSFtrBpAU//p2wUiE97HjFNimM6xlHcDnRnTk6BBi6q0Fz8Nftm9AiVaQmIKP6
cm7DIpRA1wbozh0l9YgfN0flMPdSz4N4UAkRk+JhXyXbwc+ZTVMtb1QfNPwtp4nh
kSJ/CA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIFEDCCAvigAwIBAgIVAP46dzqId0LmCsETg1R4Nxgw61bHMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://id.vse.cz/idp/profile/Shibboleth/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.vse.cz/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://id.vse.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.vse.cz/idp/profile/SAML2/Redirect/SSO"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoká škola ekonomická v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Prague University of Economics and Business</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola ekonomická v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Prague University of Economics and Business</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vse.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vse.cz/english/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Vadinský</md:SurName>
      <md:EmailAddress>mailto:id@vse.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Pleskač</md:SurName>
      <md:EmailAddress>mailto:id@vse.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Kratochvíl</md:SurName>
      <md:EmailAddress>mailto:id@vse.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idm.ics.muni.cz/shibboleth">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Perun - Masaryk University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Perun - Masarykova univerzita</mdui:DisplayName>
          <mdui:Description xml:lang="en">Perun - Identity and access management system for Masaryk University</mdui:Description>
          <mdui:Description xml:lang="cs">Perun - Systém pro správu uživatelů a přístupů na Masarykově univerzitě</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://idm.ics.muni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://idm.ics.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="85">https://idp2.ics.muni.cz/muni_logo_85x40.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://idm.ics.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://idm.ics.muni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://idm.ics.muni.cz/Shibboleth.sso/edugain"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://idm.ics.muni.cz/Shibboleth.sso/edugain" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://idm.ics.muni.cz/Shibboleth.sso/social"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://idm.ics.muni.cz/Shibboleth.sso/social" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2019</ds:KeyName>
          <ds:KeyName>https://idm.ics.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>idm.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idm.ics.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIJAKnkXq+o+epVMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
BAMTD2lkbS5pY3MubXVuaS5jejAeFw0xOTEwMzAxNTE0MjVaFw0yOTEwMjcxNTE0
MjVaMBoxGDAWBgNVBAMTD2lkbS5pY3MubXVuaS5jejCCAaIwDQYJKoZIhvcNAQEB
BQADggGPADCCAYoCggGBAKZ3oa8bdw6xcZ+4hZ9IgNvqNcv+US3L2jTffp0eP4WT
pPozDp8274T+TU7k3chh5og7AQBq2SP7ie23TSiJmkxvp2vHCY7cb4EjzekmXW6O
DrHEp1xkPHZsdg3vi73plXtKG6nXVPytipgNGmsCVFWzsUr29wl123WiJ0ITFH8l
97sMgvBi+x4NLofA3zQCEpn0g4uNuHdcDsTrdpUgIKJzVZKyWDSBS3tv25bU1AwC
+vyILig/fEw7e57H6Lz/veeiIV5+UprwGNv3ZQhKLwL6yVYUoiKRUvC0bqMWktpM
05uxAtTPPlMGfdG/o4qt7G+OcFRpDibS1q4g67J1jXbH5Kc6vc/G4T3a/qxhei1L
lCPt1wJTbxTejA1aCkSqoRW4tTriNFa9VYY7gZj3HdohU6fN7h+jOCmku/STukOy
3ziCZd33mYcfo6HVWiXwRSm2Bv2e0laeL8CqI50zsi+KkT544SMhiVbiPRbNYpWQ
kt9xEaJaL9osWsR2wM1/SwIDAQABo2EwXzA+BgNVHREENzA1gg9pZG0uaWNzLm11
bmkuY3qGImh0dHBzOi8vaWRtLmljcy5tdW5pLmN6L3NoaWJib2xldGgwHQYDVR0O
BBYEFD16RuTB35uxmjlqQyijqG62AVR/MA0GCSqGSIb3DQEBCwUAA4IBgQAfoPLn
O/VFA9qutQeVSbngs8RLUVziIjeaLQ0Cw1fEmt9myyDpYKFfbmvsUrcdluusmE99
WNEJKlXDNAkk0PyF8QvTk6oRdykJwPm2s6qMOfy39UWDA3z3CP63PmWnNWG833VG
eu/W3zvA3EzjXoCwqYhwLkJW8pTtCOLGhlhatl5R4Bp/X1OuYZrQV8y3xJ/XFxIF
BtAjPIoFcCQEQHrkGkECIyQwjsO2jaLmx1A5vfM29A9sIKQyA5+L4aIZUi+ktPm/
Wz+mTSi7+WO/hzDnbZ0Mq7/spCYEKr3unkLqT3eR6bXqnDB3UI0Tqk3HMGvncOVz
OiPc1Es8Zntvr/zRq+NYVWa/2jcRfSE9zK2xgMF4ph97fu2v0wCBWMs8uuFdp6tM
eqfmb0KmtBV+qkytCxfaSHYOVtZfJJuFVx7QOmeUBYqgeoDNt8XKoT/lNiZhNZP2
8YVox8FlCvECKk1BkAliHdiuExbO97m+qEO7TiFvNkv8K3ME7pYLo0iv+5c=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idm.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Perun - Masaryk University</md:ServiceName>
        <md:ServiceName xml:lang="cs">Perun - Masarykova univerzita</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Perun - Identity and access management system for Masaryk University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Perun - Systém pro správu uživatelů a přístupů na Masarykově univerzitě</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Kuba</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Prochazka</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idm.kntb.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">kntb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Tomas Bata Regional Hospital</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Krajská nemocnice T. Bati, a. s.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Tomas Bata Regional Hospital employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance KNTB ve Zlíně.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kntb.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kntb.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="255">https://idm.kntb.cz/idp/images/logoh40.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAPisoz68G+TBSGi16O/8olm5WuO9MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUJX0WLzPeJnL5Wi6uhY2iMba8c9gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUM0j04oRuplM/TD2E4R9X3HLgzgQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idm.kntb.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idm.kntb.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idm.kntb.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idm.kntb.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idm.kntb.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idm.kntb.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">kntb.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAPisoz68G+TBSGi16O/8olm5WuO9MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUJX0WLzPeJnL5Wi6uhY2iMba8c9gwDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLaWRtLmtudGIuY3owHhcNMTgwMzIwMTM0MzMwWhcNMzgw
MzIwMTM0MzMwWjAWMRQwEgYDVQQDDAtpZG0ua250Yi5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBAIVrZMJCDGqGwqQWpMolJ+5oA0XwKTfr9mSKSy4o
ngLQng7O8d4cTWv0CEwWertEdR5xfhr5Iv07De1y/a8VKv8KO6OG/iNLtT/XFPWD
jp55Oq+lHjKOcle2A5RJbj2QwAAcqUweuMnsJHNIdJm3vIkvIzW0m28td5S68+my
XHQJLvoyMtH5RU7c4Fwql1yhvs04AUGxus399rOPe1LRvm342+BZYOpVtllBBhQs
jAb6evfvgXqoweM+PJiBG89N1Ii1P0LND0geoijuVMAFWlk0hVSnp5FA44a4Efax
oPS4VcHqt8+1UwsOZ0WTQTD+TlR7p8xrjsIrdB06GDXRILcCAwEAAaNdMFswHQYD
VR0OBBYEFHtkQ0ggqBvWvMedSgBVUCUkCuW/MDoGA1UdEQQzMDGCC2lkbS5rbnRi
LmN6hiJodHRwczovL2lkbS5rbnRiLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBAQAfH0Xl+czpq0ay9WEI1zJBDuwudTE2M7aKRtAsU2rweYtoV4LE
r9UzlrMLNldLUwWYXa+XMeWIeJQmdAbYOs5iau/spxqwnbgTfmv4YTLbVzJSUeSc
X/Ki8CiLYXiX1wbTOZSQLnanB1M0Ir5cn5JNmwcV2Sa54pk/m3XC9jLr+t1BdmDf
hyXfYR+I2bZZWp0dy/nTeQjdxjbf4v5MDDkHZaALu8jEXSKzyRxUfooNabyrlGE5
5LvXW/IdrxanrpZCYwzSHq6oFH6X43PLuEAd0NFK4l4ImI+1TmAwGhcjR4IEmP3j
EczUT+vyIYYjFXmHPA5lOC9tNZqP0tWpu4sm</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUM0j04oRuplM/TD2E4R9X3HLgzgQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idm.kntb.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Tomas Bata Regional Hospital</OrganizationName>
      <OrganizationName xml:lang="cs">Krajská nemocnice T. Bati, a. s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">TOMAS BATA REGIONAL HOSPITAL</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">KRAJSKÁ NEMOCNICE T. BATI</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.kntb.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.kntb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Esterka</SurName>
      <EmailAddress>mailto:jan.esterka@bnzlin.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idm.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Usermanagement</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Usermanagement</mdui:DisplayName>
          <mdui:Description xml:lang="en">Management user account</mdui:Description>
          <mdui:Description xml:lang="cs">Správa uživatelských kont</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://idm.zcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://idm.zcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://helios.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://idm.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>idm.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idm.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUcwrUXgIkZrjVZHpFG6nQQhr8d98wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://idm.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>idm.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idm.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUUfkDa6HQU9XUjooz7vqR93JVdc8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.idm.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://profile.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.profile.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="4"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.registrace.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="5"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="6"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="7"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://profile.zcu.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://profile.zcu.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/ECP" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML/POST" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML/Artifact" index="24"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/POST" index="25"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="26"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="27"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/ECP" index="28"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML/POST" index="29"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML/Artifact" index="30"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST" index="31"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="32"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="33"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/ECP" index="34"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/POST" index="35"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/Artifact" index="36"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST" index="37"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="38"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="39"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/ECP" index="40"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/POST" index="41"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/Artifact" index="42"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Usermanagement</md:ServiceName>
        <md:ServiceName xml:lang="cs">Usermanagement</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Management user account</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Správa uživatelských kont</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:aaa@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp-cro.slu.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">slu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Silesian University in Opava</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Slezská univerzita v Opavě</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and students of the Silesian University in Opava</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a studenty Slezské univerzity v Opavě</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.slu.cz/slu/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.slu.cz/slu/cz/</mdui:InformationURL>
          <mdui:Logo height="200" width="200">https://uit.opf.slu.cz/_media/slu-znacka-hlavni-200.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://uit.opf.slu.cz/_media/slu-znacka-hlavni-400.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAL3gk4kllTneZBd1cQdt7j2XjlTWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDEzCCAfugAwIBAgIUSJLyuUvpTxU+Vblhr3WRfkE/Fk0wDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLnNsdS5jejAeFw0xNzA5MTQwNjU1MDJaFw0zNzA5
MTQwNjU1MDJaMBUxEzARBgNVBAMMCmlkcC5zbHUuY3owggEiMA0GCSqGSIb3DQEB
AQUAA4IBDwAwggEKAoIBAQCpWnFy91UEu8SGMu3VwdG9pgQunF9HP3c/MWADJ9ln
f5amPeh1hRhJoi7mqOsDL/HAb4W1Vsz6XIUbRowRggX9MHEEpTk1ciQ8JrkIW9ZE
x8p70cO/DrZac/A01rosBLvEXQyuRWMIqo0NhsFD+JkvS/oR/Km0R9D/JtTAJyg1
A0swMUH8pAvs6kUr37I8utnnUZrA9g0ncCdXk+ONNbm1COMbGJGao/sGC68t/IsH
rnT2aJpK0G1WjtUK1Jyie6boeRmxoYCv57gHxrQ8xymmlg2qWzZxXZbsU0tO/Sh8
fOkCvVScbVfMb9ToVy6kSmINjBtXw8800e2bhMudxjg5AgMBAAGjWzBZMB0GA1Ud
DgQWBBSfhRIKbB+Ypx88Y+wvQgQQ+Kv8azA4BgNVHREEMTAvggppZHAuc2x1LmN6
hiFodHRwczovL2lkcC5zbHUuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL
BQADggEBAJ0B+DYofui6aYq2aLuGG9KrraGc56OeH93VnWqRB3kWiSkIObYCA1C3
QkoLQEWPpqfYodLstUBlggCa/Kxoxe8h+S1H/t4aqzFJxiECUP98px9YOrl5uhJB
JToPCQKxwzqD/7ymS5nPRiH9Kx9w3dGwah3UUVyXsQKfVHwkZ3rCr0oXDaplK2rS
u3QphVplXRSxZpLY/FR1CBx9clL8tUIPwq3TwvEICrMq9OwSDSjFlSPnWV71AR3e
teGPEzBdZg7ALFTxZQHYehOz+kJ5UIev9mJrUm9pHUZNKASI8TjN6jItPaL135Rf
qtwdm8DlFnyRZJ3nqy2PlgzN508yEvk=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDEzCCAfugAwIBAgIUNkBRBa5hNN9y0tGmIcjnJM+zwGYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-cro.slu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-cro.slu.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp-cro.slu.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-cro.slu.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Silesian University in Opava</OrganizationName>
      <OrganizationName xml:lang="cs">Slezská univerzita v Opavě</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Silesian University in Opava</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Slezská univerzita v Opavě</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.slu.cz/slu/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.slu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jakub</GivenName>
      <SurName>Jezisek</SurName>
      <EmailAddress>mailto:jezisek@opf.slu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp-famo.filmovka.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>https://myacademicid.org/entity-categories/esi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">idp-famo.filmovka.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">International Film Studies Písek</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Filmová akademie Miroslava Ondříčka v Písku</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for Internaltional Film Studies Písek.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro studenty a zaměstnance Filmové akademie Miroslava Ondříčka v Písku.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.filmovka.cz/en/ifs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.filmovka.cz/cs/famo</mdui:InformationURL>
          <mdui:Logo height="104" width="133">https://idp-famo.filmovka.cz/idp/images/idp-famo.filmovka.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUcajYbzKARnsCPUqFJXtqSby4EggwDQYJKoZIhvcNAQEL BQAwHzEdMBsGA1UEAwwUaWRwLWZhbW8uZmlsbW92a2EuY3owHhcNMjUwMzI2MDkz MjMzWhcNNDUwMzI2MDgzMjMzWjAfMR0wGwYDVQQDDBRpZHAtZmFtby5maWxtb3Zr YS5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAM/DnwviU3LMRVGg wdigQClFs4ZomWo/WdSOqo/z5BheRgmaFDFnADpji+X/xTXcrqlz36hseHIjx2z/ 42ADrvxXUDf2UUSDh8qD/Jn0NSg+njSc++KZR6ts8rLUhHF9HphLbxjB9nH1W7KG VdTQhauvwjSPufDa0kp2cThCspw01mof5kWWaVg/IaSI/eSCMc8N0eQPm8RT5XZD AN2cgQMi2JKlgozeXn20AF7ZwyjUN8vASNCS+h3BPEb82IOxNMhMHsnXsYoOCKHF Au71vJv8dMZUVcz1mUCpFWO0HLu1aE98V76fvm9QgWxqTRL3mPWATiwoFasZzpjL dMncUcW4ahpUGJ7RyjoQsjfhA0f32MreBIg45ZC7/1F14MtbF6dOHLy4yQjqLw7i sj1ylZia6PmcsvwfdxyVTh7s6grevoUfR0Rk3ObgEVb8BQiiEn2mDvXmj1y3xwj+ 09XZ9DufZjkUEuH0CYl+QmYqg+81PUQRTZ5NHveepbyUnPF7JwIDAQABo28wbTAd BgNVHQ4EFgQU4EkVj4mS27au7/PSbP4F1Grrt+swTAYDVR0RBEUwQ4IUaWRwLWZh bW8uZmlsbW92a2EuY3qGK2h0dHBzOi8vaWRwLWZhbW8uZmlsbW92a2EuY3ovaWRw L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBAAKax+9F8HjtAWe+CZck8EeE wXSx0ASRzki18m77PcUnmjAZurR47eXIQdOLKbllKSdaNqAk0+2HEEdCMxY/we6X SKZVbCptFEeq4lsPjBjh/Vky9gRtmcBPKC+aphX0jJW0Q81WGrI8rW93qesgtQsY 6qcoZphYYodJV5rN5t+VKOWyJihQeY3U84Wr4xXYiNyA1HoU6GxVLxP9vtTACsCB 4SDMdYrygyVxQ00Xx3sIjQAocd7vBsxwtzxtmAYefqEAKhQHRRbs2ccQdGPq2+N0 zTy29agn2ATQh3GNd2fOvcc5hysa5+n129CC+6KPnUo+7dJFE5x7rDdWAJQNK821 GCiqVAWhRs53apVCaIgdlF8aZNyvmc1BCxQEUObHtf+j3RS593i7nPvdfh9cNM0s x760qGM/QBxbz7wyw2ZSRHz/XkpHyWsu1tZ3Z5SpEB5k2y1BG42wyBDaVVdDPrEC aN/xe0jFU3HFE1MkoRD+ZubwWKJuPqJ9kNzyYoKLow==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEPDCCAqSgAwIBAgIVAMiphJAzjXrN3KQhF8QAbfkswQiDMA0GCSqGSIb3DQEB CwUAMB8xHTAbBgNVBAMMFGlkcC1mYW1vLmZpbG1vdmthLmN6MB4XDTI1MDMyNjA5 MzIzMVoXDTQ1MDMyNjA4MzIzMVowHzEdMBsGA1UEAwwUaWRwLWZhbW8uZmlsbW92 a2EuY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCfuewAGUWukxBQ t2xAZp9wJSk3gWCGoSFcF+BQltr1KumLqIMIOpY7oI+75DUHJ5zKsUrezmQMC2JN UP2iW23xi1U8AJteLJzuP64vnWsFzye4OmT31tz8EWoLcwmcpax6YdPpGH2FKfpw IrJ6c8SELFXWwEycnNbkZuQmCI6rTFoEALPZ+N9+NjVpvHzSENlaXo9tgHki+k7a TjxB5NHfj8LABfPOb2Ywm8C1ao00S4g1V+Gw7IwBJx8aHbaAo8nByziMEBPhjSxA 5snis2+ZPv6SXG1BLFlBIAS224X/Vr/iTSDEp3jEdQmN+SyyhZNzL4WB7GQoE4aU EUVeoqwZXPCcQbcKg9EApAxtDU8RDxNqDBNLhrbEj8qJE23maCv3ZsSWH8r2jgHs vH19BkcMRJ4AjV1ukhNrbrjeJsMoEMpW0irrMvLUsWZG1K57y6l22zQYtZyiIuZn qZe6dF+jQnh09mHSt7fNqrP669F4YTGf4cpjtKEpX0BVUqpViusCAwEAAaNvMG0w HQYDVR0OBBYEFH5Dxc9BjzlYjM49VXpMY5z43zdxMEwGA1UdEQRFMEOCFGlkcC1m YW1vLmZpbG1vdmthLmN6hitodHRwczovL2lkcC1mYW1vLmZpbG1vdmthLmN6L2lk cC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQASl39E3N3ZLgZX1OHsTYg5 1zCxMEwdWpxP8TU1chvKMHKp5xihGX7GbHw8LYRAdgW3Fpjka8PILVIUo4NKiSw8 6GK/t7pyVQBwR5MXcxiApLFwDTF3iFzLmF9w+0+1pLfRsnfVNBFdp16Vp5BcSE13 2Yvw3NiUDshCJWBRxtLEoPhVJNzFUW1nWzCj3gjhRtflJRse69scrfQcxvzbk/Kx LH25CvyhkjtxMoQPBPjN+VnVFzbzkLCSvtucsfqnpFI82AJUL2W0Fh2e4xd3/l7J yz5JJyjr0ym/dz2kiY1P1GqoPXt813Qrg0l7JeS0WJIJG7Ae6TaaIH4e8O7WBzmb qF2nZ3PhYPwjndG+hUlWdCVvTbCLDu/IZo5NGIr/CNliRn3Dr7iy/1OaHaAzNxPZ Y978AaKXsiR11k4El0wWBH/ezauzIGIs1XyK6GvztrMbMxIBhDlO6llC+S7qmq2j ghPRaOjmosu4hSX2VLVyPFkKH+5tAZO4QEMGkBopunY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-famo.filmovka.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-famo.filmovka.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp-famo.filmovka.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">International Film Studies Písek</OrganizationName>
      <OrganizationName xml:lang="cs">Filmová akademie Miroslava Ondříčka v Písku</OrganizationName>
      <OrganizationDisplayName xml:lang="en">International Film Studies Písek</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Filmová akademie Miroslava Ondříčka v Písku</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.filmovka.cz/en/ifs</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.filmovka.cz/cs/famo</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.aauni.edu/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">aauni.edu</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Anglo-american University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Anglo-americká vysoká škola, z.ú.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Anglo-american University's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Anglo-americkou vysokou školu, z.ú.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.aauni.edu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.aauni.edu/</mdui:InformationURL>
          <mdui:Logo height="72" width="352">https://res.cloudinary.com/aauni/w_352,h_72,c_fill,q_auto:best,f_auto/web/2020/04/aau-logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUJq5jdA3qonpY2edSyNl197V4aWcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIULPZ/zqLHIdi5L8KXgCmNNnuSL5cwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUBWSa+PI046GSl6lU42HDknIaOJAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.aauni.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.aauni.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.aauni.edu/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.aauni.edu/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.aauni.edu/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.aauni.edu/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">aauni.edu</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUJq5jdA3qonpY2edSyNl197V4aWcwDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAwwNaWRwLmFhdW5pLmVkdTAeFw0yMTAyMDIxMzAyMThaFw00
MTAyMDIxMzAyMThaMBgxFjAUBgNVBAMMDWlkcC5hYXVuaS5lZHUwggGiMA0GCSqG
SIb3DQEBAQUAA4IBjwAwggGKAoIBgQDr1SWR9LfHV7VPUI5oIvCPtlLylCdg4rk8
nN05kqaoBCB4Ow/jFNyhuSfXhAOnZYSjULgo3V4pCT84r0BNtIve8pQLXPK4F1n6
on1qn2UAlNYoF0bfWN9h9OsdcYjKw8MnZpPSUE1kPHckMMzE7DO2DMBht2i9dlER
7pQwOiNlDtIKKryGsugnPSArd0NlTaMkMeI9Px6MuDJpZwxnBHkw3D/e/KYBtYtj
zBKBq2Fs1kFT+Wev7g2hSvoBEmsVVCJWQvDyk++02/k+O7Hqgkxj90NP7a9LFCzB
k36smSKDrwIdCGnY0zBxf0U35fOxTQ95VomJ++7dKHOr5d6mvrMPb9gMyn4MQSGU
FDElKBQnZSoY2I6zDRLJ8g06VmpMlFAG7sFkGulHH7ec9qkUHtXC6LpgyqCYg0Yg
BR1C9eRrds1rTb4gvwdQQ2R++rEcMBT8s98wJuLuXDAdBJ1ZPXljtgZK+saZ0Qxx
gzbYTv4GS9AeGHa2IkkaOc6MtnIWkDsCAwEAAaNhMF8wHQYDVR0OBBYEFLyJa+Cb
6v9QbvKqwgevZHOT1IXxMD4GA1UdEQQ3MDWCDWlkcC5hYXVuaS5lZHWGJGh0dHBz
Oi8vaWRwLmFhdW5pLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC
AYEAZlA7+5mz1jVkWPAW+UO+DH9CvsR71coBG/+97UQbG9o+5VbnBo01VQsBwIks
i9X222nmUbZx9Y3x8pzIiLRx/hLGFMYrW6hv895iq/uf90XNsGCAyVdqamM6Iuic
FBrQh0a2DA/BK4hbQMBfwIh3C0EuML9PWCmQn1d6q7lv8lu2s65CdF5rrQsCq9P8
OtmHOaj0QPZaXBw3S55y06GHHc5ARL7zfBJiBrp2Vq2VUu8aBPFpV0uv3CznRJgt
rvzv5KeQlfk4Y2zzMQp4yY9YvHt4VJD7XDeB/dZX2n5sRtYc6UjWjCO/iskdE8ur
KQEJzydrGW+vfrxEyxqbMTYyPFWHZeMRsPuVN0AFctcsEelufVNpmIuN9XhhN1eO
T5SKgSq4Ptn6ULyKaet05Unpm4TqAbpIjJQaIsnMRDVs7TDaPDt6sL0m91wDJjIV
J+StGcMwgWfdT8M8DUa8lglBZIRSKtJKqLEkvNouXTVw0cQRu+yGJR9VCmNuduR0
QPLt</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIULPZ/zqLHIdi5L8KXgCmNNnuSL5cwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUBWSa+PI046GSl6lU42HDknIaOJAwDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAwwNaWRwLmFhdW5pLmVkdTAeFw0yMTAyMDIxMzAwMjdaFw00
MTAyMDIxMzAwMjdaMBgxFjAUBgNVBAMMDWlkcC5hYXVuaS5lZHUwggGiMA0GCSqG
SIb3DQEBAQUAA4IBjwAwggGKAoIBgQCLjl1/L3A7eQjgohbeGIrhkmoLLgHChLBv
/3FTLCw7imZTGWH3mjRwalzIMNQF8GGtYKv4rq35RrXyYiDezXrpZg8W+oJoZf32
AIV80X1PqULrVyLqi6LeHDIWH85x9SwmBH3YidwlhDB3xxn3zK73wQuMqaUco/eF
9NRlajJeAsTG4vgeHpyBQAkMSbec7PWPik+1VlVeco/UZOhvBzs6sUWG8a8jQGO9
EDuTJ5u9Zbr0TXQKoVWlpIH7Xvho5uB0wVCEaF17KLHvegud1d6kO516SK69U3Sq
STFNj+WuOMG6u2ONO8xfbBiE0Bi3BAD6+qL93fqdqzjZPu2HvNWMdHGE+xLJsQab
mhEWBJ7WGWJrcNbZ/Av+l6m7A0rGhq3Ece/0Rpz8fZhTNkaKBOxUrtOzMLa63cvX
UxYMnR0VdUHNpMx1tRAxFfLqDmxZVEwcSnOy8DSSJMqfHJXzZPhpPcI0GmdyA7XG
n22XatBLgnBuJj8bOv+uQKiauL7yFEMCAwEAAaNhMF8wHQYDVR0OBBYEFHijVxn5
wmU2BWTQk/zhF+oYQgsAMD4GA1UdEQQ3MDWCDWlkcC5hYXVuaS5lZHWGJGh0dHBz
Oi8vaWRwLmFhdW5pLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC
AYEAJpYI+Hg75fUbH97AwU4cKJ64NCDnRCFt2kfJuBC8h9DUnkhNcTYmc0L4LYTi
52yb/Uc2cYdbs3UR6eqPGWAMwD1Df+muSbQ/cOZHUa0QFxveebVgtu1fyA01+oUA
8wLNsIAdGSEoHr+w5p3n8E8tSQ0UsMcrRChjlw19BI8udjzbdDYcQqjQWyykV48+
OT73ZuUCY2KOO29ebNnzDM6qAriK7pewP7Cw2TEytE82Ba2HNDop1WaBFE7FwaZZ
W5caJAqVRdm74e++3GAqlmRIXFVd2yTvW9WnJ43dxPrEQcTNJYaAbwVmwQ7HjjzM
N+bEDVj+YCmRLhI4nky5SJUkL9Pt0KMUXg0uNHv14XTgZ3B9oqRAF/pn3c4kRiy9
0ZhlBExI/uL5bFmwnA3/uhwm8W8B8ITZ673q47a8Ovb2lOEdd1tmQambsStiYDXK
unUaZuKkvXeecO82w4BPkndiCQMgLVnG5ULyKgd+WaseJvN/sNidHww2Xd3mFKEu
7WZv</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.aauni.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Anglo-american University</OrganizationName>
      <OrganizationName xml:lang="cs">Anglo-americká vysoká škola, z.ú.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">AAU</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">AAVŠ</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.aauni.edu/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.aauni.edu/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Milan</GivenName>
      <SurName>Fučík</SurName>
      <EmailAddress>mailto:it@aauni.edu</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.alvel.eu/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">alvel.eu</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">ALVEL</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ALVEL</mdui:DisplayName>
          <mdui:Description xml:lang="en">ALVEL's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro ALVEL.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.alvel.eu/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.alvel.eu/</mdui:InformationURL>
          <mdui:Logo height="1134" width="2245">https://www.alvel.cz/download/ALVEL_logo_new.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAK7E4/0wd1FMDrALmgrnrvgd/lVrMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAJSIRv9SIaDpBN7RMoAJ0KMzDwNYMA0GCSqGSIb3DQEB
CwUAMBcxFTATBgNVBAMMDGlkcC5hbHZlbC5ldTAeFw0yMzEyMTYxNTM5MDVaFw00
MzEyMTYxNTM5MDVaMBcxFTATBgNVBAMMDGlkcC5hbHZlbC5ldTCCAaIwDQYJKoZI
hvcNAQEBBQADggGPADCCAYoCggGBAIXVtIEj9cE15SVlqsjvYhOUfjyR8iI9pKV9
mcT7Z9pQLedqkZI77O/TYs0WxxzKWQ9Ljw7hFVAlquTbyjoqXczo0RsoHL9Txdo9
5VJ2mliTmRVPaO+pGz6ctJMCukHNOiZsYLNyiNNLLYSXy+aolBDmBtGa5BZw1P3A
+nPfUi79+OzBWTg8sGQF+O8EVYwmvhn7vnQRXYOfKtTlSwSwN6obnW2mVNIanm6a
VTv+uCM8J6RF49ObLRs+DU9iQDPT98dq4BhW/2verkh/fRKTgPIQ9X5EX28WfWpX
es0m7A0GB6x8faLl7ur4vJ+XjvUhzjeQ9X7w69ETyQzYfyCWb8wGNySlbAH0qWZ5
2LfBnT/2YYmrsmkyTm+XIzvbxJBCve3/LOEfnkz7Njfn28kR6XBrWTBSMPUTfsbm
Bjvt0MysJ1aYRk5COAvONDq1zWkeHUw31WCKRjHr0GEdjSvPi7mPvJq+p4h2Qi6B
Liuuo0Qt634BLxpTtKHPv0YRTELBkQIDAQABo18wXTAdBgNVHQ4EFgQU3Xkp01DF
v56tUMCa+BL71vKe890wPAYDVR0RBDUwM4IMaWRwLmFsdmVsLmV1hiNodHRwczov
L2lkcC5hbHZlbC5ldS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEA
HqOAWMvPIsy7u1mOOdOSlkur6XYTK/D5bxDD96MK9ZcUBXbaVOMTLDiOOWLmcXNE
qQdthnEMUsv+gLPOgweh08YisIYhnoZ3t98pfldocdk5ZV08qxzH+p3ip5s3W15F
6BusS8c4nWJQDcvIIy9/q3tzAYctTSY/5/aKKVzet762oWr5K6uruy4plJYywyHu
VwBmig+f916ZTBJNxtpWPH4Qyt97/BFIMiK/kyyd3kvJAXiDrc7obFv0pbnoBo0s
ET925dkLcLRIavLNgDmssKU2O6YKp3FDTSyhwNGf18Ynv5V+rfVlLI9N9Fvsu1PM
nx3kk9Igcw0sobPtei5WM0FLhzET1W5BTe+Dp9l02SekwMGNadhIOXpffDfJU01n
Dsel7tqmj70uUEN6Yl1e9mnIr7te6d5GrMtM3OgQDA1YP7ArfmFy+UeiUfkdrKdx
dobIU7QB5j/n9s9IDpGkmdwQ+7qJAtTrDSlU6A92cXrs1s1io01uE00qWxyu4txm</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVALmVYqklwZO9fZCMuCTlt8x5LoPkMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.alvel.eu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.alvel.eu/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.alvel.eu/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.alvel.eu/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">ALVEL, a.s.</OrganizationName>
      <OrganizationName xml:lang="cs">ALVEL, a.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">ALVEL</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">ALVEL</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.alvel.eu/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.alvel.eu/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Simsik</SurName>
      <EmailAddress>mailto:ondrej.simsik@alvel.eu</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ambis.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">ambis.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Ambis University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ambis Univerzita</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for AMBIS University staff and students.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance a studenty Ambis Univerzity.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ambisuniversity.com/eduid</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ambis.cz/eduid</mdui:InformationURL>
          <mdui:Logo height="586" width="586">https://www.ambis.cz/files/ambis-symbol-clr.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVANWu+dPQJL7uMdh62i6/yt20wlf5MA0GCSqGSIb3DQEBCwUAMBcxFTAT
BgNVBAMMDGlkcC5hbWJpcy5jejAeFw0yNDA1MDUxNDIwMjhaFw00NDA1MDUxNDIwMjhaMBcxFTAT
BgNVBAMMDGlkcC5hbWJpcy5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAMn02hPw
ibHRRHIi8EnUo19mwTH0FpZSVsNxY9jI/mb8D1CVr13+ZnTbKrDpENYxqfs+nKlc5Xw7Aow39BN1
bhS2O9ptyBQfWbaJlg+7KotV2mTN+niSas5AdrIx5MzcjF4WxeZonPH54N3dTb18LSW0bywqkCfV
p9wbgaPxRD+A9v4xr/o0WigmM1cyWQiYg8h5zpbImxU2OGt336S18mMd73Lc2L3SVbsXuL+wn4a4
XqzXkVcbE5Xshax2Ds9UYrVKJ8SjH2YGgV4hou/S/J2SRzvasyqbR6B13vaV2a5lwHVb1EFAb3dk
MJud1Cxt14h50jGk2ghA5B6PYpq/bmsX8FfT4knepW9t8ioBu5g7TxkV17YhViR/HfHa9MJk1Da7
9xZ/96uMfn8ekMn7VcD02pGowVIUZoOJhS+91lCdDFMQRnPCApGIWTSRKbKvTOuvSQlCqodMQatR
xqLJOHhdaOk6LryXeQa+NocQakj1a86GyDEO31EqVgLxOadiuQIDAQABo18wXTAdBgNVHQ4EFgQU
txjMXZ0FZYU1HoLu+MdFz6bzQAowPAYDVR0RBDUwM4IMaWRwLmFtYmlzLmN6hiNodHRwczovL2lk
cC5hbWJpcy5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAj2MG6Yf8P5QMMMnR
GQuUqkRqdmlFnW4W8w0M72jjiPyY2sTn0b56rZ9DA1ikbLWpVgc4hG8u/jMpV3I9ohJAnPNoKF5I
2FT1BJgDZ+9+j33M6Amhvc9WaLQndylgWnFq/fm0f5GRoHkGfk9wxh5XFbKHxZgT/OjuFTdMZOv0
kgPAln3SQ3lXlji9C/1Q2R3w5amYRqmabhzYmD6WvZECP/Y0fMD//CLGfxx+cPlOeAjv3FNUjdX3
p18KbMmONIwk34QdX3xVqoBPSwhAc3dNr0Yx+cCd6khgKtk6n9t9eeJhE3Tuow45ntF82bTjatKk
quTLM9G3G8G+QPygOMQTsCMCWilQ+CUd5lHdokSJ+gEtIL1aZkudytRBNb0E1fmwjSEJk2A5iBQh
17j223qD95G+0ZtwfmIjtDh8Pd+HK/Asa1tMetQy8l37IeejbZRdu14HUA23Q91hvLZZUKp7eC/V
qJkKPajiGIFiM5SepKBCE2zGKZbtNtyADD9ypbXg</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAKxSQEAiB7ZKMb0bjqoER5nC81JkMA0GCSqGSIb3DQEBCwUAMBcxFTAT
BgNVBAMMDGlkcC5hbWJpcy5jejAeFw0yNDA1MDUxNDIwMjZaFw00NDA1MDUxNDIwMjZaMBcxFTAT
BgNVBAMMDGlkcC5hbWJpcy5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAMbUYBwh
adNCXtU5Chs8EQptf6XmHFqMbXl2KnhdGnVsj3PRBGs2bJ0XAIi4hLhfqD7zadEW175Lx10NV33g
lrA8KgVV4NGgttJpEuqF0FrhAX+7usPw5hYtxJthBrJKsLeMbi/o/4qnrrWK5B50tcq9y3LCFU3c
gNgXA2fXZzq6zSZnZwlNYoV/WeIwxVe0aLDkS96cCGYlC9/CjIxQxwpv6YfQ2tKqDSFC8NDqEOX+
l11slG6oOsGvl4Fl3kOGUXY15HHOaORKEyhkZc6k4gNxs0KNmGXWJ9UGNQGhf2KZnGjeN6O0GuYr
XJzwESmC7ejjFCIJBW+0IeYXoe/gNlAkNmgH3icm3Wt+FPqVkNlEgPNYfgSTeImiacFmIjksCRyj
DdGUHR/boz9MFeeUZUpfF6pxza5S/4mIazm9P8x96ZQ6z0rjKWSw3pOxDbk5SkxGR5HF/uin+Fg9
yATjlxfzPcI/CdcurWdOs+Js3q1eAnLTZeXrxHF0ZYdtdhGaVwIDAQABo18wXTAdBgNVHQ4EFgQU
hrgmcpz5UA0fEbzp9BlUuEt4gIgwPAYDVR0RBDUwM4IMaWRwLmFtYmlzLmN6hiNodHRwczovL2lk
cC5hbWJpcy5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAb+tlgtXidygfBYD5
eTz+o1iYIOMpquOSeHbnXdEXztdOwR5PyHzpBBjMCgN8DUr2Q7yI89B9yTXCws0AJPx7IPjBoGfC
4/e/qfxkXAalYZZFajDYF3nF3dkBZ8yX1hJEuRnQhCkxDIhjNKZmAylBOuU5rBuh+gskoQcsBQ1q
ohn198BlPJs50mBarJt41tTa2Eryc8wU14Aanmb3SdJ8w4caitVyr9UJwaaKSclCbvcagSohNSJ5
AqouI6XEPYr5Rm7Kg5rWeej9n0FXmOXrvZ3HRIocN9AzfKYHJiCOj8jBC6PbQpSEjJUXVEh4l1i3
7HYo8FHVGqlR/mn0GKJB2/CQHEgX28QYgvwx0YsUx8XXt4xk/iDT7yf4qI4fnOi/3z5QXSuQ8LLp
cyh5e+jHV0GXQvVI/v9ORKQMFiERQ4GfhWKilt7ai7FfvK8n868uxPH+o49dyKnNCE8en4QI3bBg
pzhESfuddUBVT9j0bN5kvpiVDBD6sjwrHRBfW08C</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUaCPMJaluJm6QzU3iSCPnM9RZn8QwDQYJKoZIhvcNAQELBQAwFzEVMBMG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ambis.cz/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ambis.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ambis.cz/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ambis.cz/idp/profile/SAML2/POST/SSO"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Ambis Univeristy</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ambis Univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Ambis University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ambis Univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ambisuniversity.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ambis.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Josef</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:provoz@ambis.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.amu.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">amu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Academy of Performing Arts in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Akademie múzických umění v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and students of the Academy of Performing Arts in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a studenty Akademie múzických umění v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.amu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.amu.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="52">https://idp.amu.cz/idp/images/amu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="262">https://idp.amu.cz/idp/images/amu_logo_200px.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUcXnvXj8gWdslBmqmyE9w/Xv/wcIwDQYJKoZIhvcNAQEL BQAwFTETMBEGA1UEAwwKaWRwLmFtdS5jejAeFw0yMDA2MzAwNzE2MDBaFw00MDA2 MzAwNzE2MDBaMBUxEzARBgNVBAMMCmlkcC5hbXUuY3owggGiMA0GCSqGSIb3DQEB AQUAA4IBjwAwggGKAoIBgQCdiqmZIf/X1EfQ1UhDkZZwhd5RTXgyITbbjJ1L/j2s t8sffRpTliIyK597FU6l4J0366BxvTCRstLYJeGmZw2Qu/5bl1RDqxzIpbIOHwJl 3uSJCTkHjbQ8MsOpZATLtiTCy5CtTlBNZudBtS/vWDiPQkzJXQW1g3AEgggS1dw7 /gTQTUjUW95tJR1J93LA09voTZ1OZKiViyndw+LYl3xtxhjccKGpRXseDxghG/LS S+U7nwvbyRqX2CNynz4LNexx3GAQjFTPnqjG4YyQJdm1CQH9RqdfZb3Uq13Z1iOV 1FME4PJvSnmbH/zDLOPbEny+aMUIxPDXPZaSmGhcfN6g+a/pzbCpfzqbaagqK91Y CAbRCtGAyd0xMNDPOSi5DACilObSfR1PJJIyQZv5Uc3jxpDw6niXN/aeZQIJ22eB Ksf7c6u1mGkL2SxQr2wwcbpv67a0yYnGc9xLBIlyyhPbMT5oLgnhLJq+/+HQwgvX P3qERHGqHq8cSCTkpSwW3e0CAwEAAaNbMFkwHQYDVR0OBBYEFLAraEmBYOY71uYb DRiYgumiN4gCMDgGA1UdEQQxMC+CCmlkcC5hbXUuY3qGIWh0dHBzOi8vaWRwLmFt dS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAdUyeqcQXwhfB 7UCDzFx7Yp2TTZf5Ircpa3bo6U+QU+ru2gu9fzegmAsSm2yI8A2Cdcrddj/py7xK VuBTAa7lnuTplPBBoG+ZuXibT6TZjCGEdyq6jeQiJzp0mhSXI+EzBBMVX1+J4zC+ tITkJI0JYv+tbTFOELM0tj/hTdQElBUvU2WB5utrQXIN2uL/W4p3ZKw2n64SBd0z EMT9PUv2DNTDV+qBW+pBCHrZr/JIcStk0oorYSbfgbHJmpxkkEniuYw9SPdnW4ww IPjMLxIqA1aFQrwq7qSY++pzjmYPyBYvS0J+GBQ3iFEu65xxIxITXLVH20PEzgd1 E+OG5sLyuqZ3etLQBP2CyKlvobUAH/DtISy88Ewb0FHlO/29EBXtncOZh9xpoNlz 9niDq5Nd048VdduVsryojAFkA3okd6knDE2grctgKhVUeJAHXyWbUyGNZCw9dXAy FzlLYRZKjvSCvLMevUVMuCpHAZOC2l9YxlbeIKhL/L3DB5o2WLoy</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUeeWkJnzdzFidqc5N8h66aqKdgZkwDQYJKoZIhvcNAQEL BQAwFTETMBEGA1UEAwwKaWRwLmFtdS5jejAeFw0yMDA2MzAwNzE2MDFaFw00MDA2 MzAwNzE2MDFaMBUxEzARBgNVBAMMCmlkcC5hbXUuY3owggGiMA0GCSqGSIb3DQEB AQUAA4IBjwAwggGKAoIBgQC3rZ2bhUdvN+TxTgDRXVm64KdcPAAZ1PX2VfHQ/C63 58I1YkKSXP9EbDzEjddDrO34JQjByg7+230sd2ZX88JawcytQMhnkzAa/e7o6fOA hEmmUXdQuMj6DbtR0rGr1vyZch7t1XQVwMId3EHoUAVBAGlELuCSmT00PbslZPyY o35+tjEOs6HYwQdLmD6sCy1nLaETHtqshD5vAh2o7KagYwQJIB0Rh4VenpZHjDoq xDboNZ2D+mac6DnJUF4jGuFwT3T2uweE6atyb/PfPxjhGPIhSHBefPoPiRU0Kt9E UFqCWIc+RS9eCjU789vvS39Eu8r4+5zNIUDX/KkEEofSulr5D/3J2ePTum5dQsU3 9MqUFG9shj+XzAU9RnVf7rd0/oqhihBNqJjH5cZhBM2kxFrBQ3KBQJMmF1b+u4IG s0LbzH1vXkFN8QVzOOJDnSzWjY+uQRPI4a0EbwwXpVZTebhwlZs/Je9Kfc16W1xP KwLDWbybtB0Tjdqs+2SLYosCAwEAAaNbMFkwHQYDVR0OBBYEFBLL0LfSlDijFcym YF802orcouJgMDgGA1UdEQQxMC+CCmlkcC5hbXUuY3qGIWh0dHBzOi8vaWRwLmFt dS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAb1HMyhTzrRbC Dy2Ye7PouXWsNTeDpa5445mDB9lvVyIIJFK36ro+vsZWkwVNCBpKK1a1ocaipxFE tkolzPLW+CcZwhj/JSQrCUxpCMTBxoRM9N6O3snyoa6x1MMEPFBllZeEEw7RIBKy svHzZpn4LN03KkEoian9nATXvf8a5A166y+PWDVgAXVXHP0HwRNxW4He41CaobJw fdhXgEofT/meV4ZRI9oyjEfD8TejcLfJFZX6j+oOFK6GCYodPdWtA51gG7ii7mLL /KXAP9CisHlzYuh/3YpCPTrpQ+0heD5XT0Uhcw/9+KXI/tMoV67MjMwaRafCQgDQ 15fprdoFWwYAeYn+U0v677BonPoPJz+LrGiIE3L1NZTJa5+aT2UVXwyAV1elL7lb 1Fl8wpUbk4pewh9XxFoaDbhzWtFJn5e2m9hjfUt0xoR0IhVGLdwU9xLiX3DftYdE 8HoJ3o1BZPJUOq2VOpX7RS+htt4SGIZY5NViu7UTNmiasMwTvAtE</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.amu.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.amu.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.amu.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.amu.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.amu.cz/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.amu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.amu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.amu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Academy of Performing Arts in Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Akademie múzických umění v Praze</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Academy of Performing Arts in Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Akademie múzických umění v Praze</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.amu.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.amu.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Tomas</GivenName>
      <SurName>Jungwirth</SurName>
      <EmailAddress>mailto:tomas.jungwirth@amu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Holy</SurName>
      <EmailAddress>mailto:ondrej.holy@amu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.arub.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">arub.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Archeology of the Czech Academy of Sciences, Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Archeologický ústav AV ČR, Brno</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider ARÚB AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance IARB AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://arub.avcr.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://arub.avcr.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="46">https://gedeon.cas.cz/loga/logo-arub-44.png</mdui:Logo>
          <mdui:Logo height="300" width="311">https://gedeon.cas.cz/loga/logo-arub-300.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAN+Amq/UUz7qYHOPPxq92T7Xpxj5MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAP0N7he3i0ct6UmSL0Eem2aPMIGIMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUD48iFPkV7a1ESBEQyVd41Df1a/kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.arub.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.arub.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.arub.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.arub.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IARB AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">ARÚB AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">nstitute of Archeology of the Czech Academy of Sciences, Brno</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Archeologický ústav AV ČR, Brno</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://arub.avcr.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://arub.avcr.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.arup.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">arup.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Archaeology of the CAS, Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Archeologický ústav AV ČR, Praha</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IACASP AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ARÚP AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.arup.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.arup.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="48">https://gedeon.cas.cz/loga/logo-arup-44.png</mdui:Logo>
          <mdui:Logo height="100" width="110">https://gedeon.cas.cz/loga/logo-arup-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUGGjdRJ73fQt/3YXT1wr9ACt3PwswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAKVP9XnbH0y6NtH1eKwKOsYfDNEtMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUd3HzvRQVhqZ7n6cCMjOEOqLV+hAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.arup.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.arup.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.arup.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.arup.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IACASP AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">ARÚP AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Archaeology of the CAS, Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Archeologický ústav AV ČR, Praha</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.arup.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.arup.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.asu.cas.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi2</saml:AttributeValue>
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">asu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Astronomical Institute of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Astronomický ústav Akademie věd České Republiky</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees of Astronomical Institute of the Czech Academy of Sciences.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Astronomického ústavu Akademie věd České Republiky.</mdui:Description>
          <mdui:Logo height="40" width="99">https://idp.asu.cas.cz/logo-asu_99_40.png</mdui:Logo>
          <mdui:Logo height="76" width="187">https://idp.asu.cas.cz/logo-asu_187_76.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.asu.cas.cz/en/about/about-the-institute</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.asu.cas.cz/cz/asu/predstavujeme-se</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANrv5WGUsquQhfjq0eTxVi20NsReMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAJdNb/Rhko4nwYw+ygi1hua8ErgsMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5hc3UuY2FzLmN6MB4XDTE1MDcyMzA5MDgzMVoX
DTM1MDcyMzA5MDgzMVowGTEXMBUGA1UEAwwOaWRwLmFzdS5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC9FHZ+PdNss6t/V4/KurzMsMHp1Zoq
l07jPffg5B8B1NqlLacljuvRFS8B+sGZeQQWa9HtDzxBSrlemoc9EdmC3N5QQ5+F
1giiFJosgEd0in3h5NilYEfmovc+SLoPoLfQj21kAGLP0bMMW3wa8rl3oGTtPmJ8
9jAc1FX6u6p3g61jeREidhMylO6GtbREhL6hXKqiyglR0zWjZCYfQCzF392lyyeQ
nMJqI4oKREGSN27MX1YIhplnkV3amGcH/sqMjdStcYFqJc5+h/6X9iFWHFohqLpF
rIYeVePQhbj1VDPIPUqyVBeGlsk+xpzKnSnbDsaYh/MhFJXnmn6rEbTvAgMBAAGj
YzBhMB0GA1UdDgQWBBRWbgeUKb4C9ZnYCV4qpFnILVSyHjBABgNVHREEOTA3gg5p
ZHAuYXN1LmNhcy5jeoYlaHR0cHM6Ly9pZHAuYXN1LmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAJd0Z2rahGuNgnK/+H3ohx7fLvpGeW2ne
BhSVrBFTr5zVHOrfkrZvdnpV0CI65T00lYRWpIkqAN8aEJujjJXsE0kEagFM/ap8
mQB9CZwbEKXCU7vGyoRcegrZZl3srZ62YwxfLRJjAK3DSgKM0BtMSff1rJE2K8+L
VQqEbFfPqunsbacUA1zF4HZ3ceJQNKzIFYuFTpp+1i5RZN/+28zwNQj1XlCJ8+fN
5KC/z5C4Kfg6PKnx5A0EJAr6Dk8afdoj6UO92/t+GF7Devsohpe2excLJ3zVJKWN
0mIfCxb1hPlXsnaFfv/ekGZcz+JHqpHyEAXEUwLhqy97bRlPjKMFSQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUHD3PnOGmtImskndM+6f3qKBHwkUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.asu.cas.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.asu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.asu.cas.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.asu.cas.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.asu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.asu.cas.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.asu.cas.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.asu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.asu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.asu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">asu.cas.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANrv5WGUsquQhfjq0eTxVi20NsReMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAJdNb/Rhko4nwYw+ygi1hua8ErgsMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUHD3PnOGmtImskndM+6f3qKBHwkUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.asu.cas.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.asu.cas.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Astronomical Institute of the CAS</OrganizationName>
      <OrganizationName xml:lang="cs">Astronomický ústav AVČR, v.v.i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Astronomical institute of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Astronomický ústav Akademie věd České republiky</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.asu.cas.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.asu.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Ryšavý</SurName>
      <EmailAddress>mailto:petr.rysavy@asu.cas.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>ASU admin</GivenName>
      <EmailAddress>mailto:admin@asu.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.bbmri-eric.eu/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">bbmri-eric.eu</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">BBMRI-ERIC</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">BBMRI-ERIC</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for BBMRI-ERIC</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider BBMRI-ERIC</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.bbmri-eric.eu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.bbmri-eric.eu/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://web.bbmri-eric.eu/Policies/BBMRI-ERIC-AAI-Privacy-Policy.pdf</mdui:PrivacyStatementURL>
          <mdui:Logo height="176" width="568">https://idp.bbmri-eric.eu/idp/images/BBMRI-ERIC_3lines.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAItr4H0b26J+BZNSg6o1nw3b7SBZMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWlkcC5iYm1yaS1lcmljLmV1MB4XDTE1MDkxNzEzNDc0
M1oXDTM1MDkxNzEzNDc0M1owHDEaMBgGA1UEAwwRaWRwLmJibXJpLWVyaWMuZXUw
ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCiUBpLbWqjyjRh/ga8bSYo
6kV+GZm3QieBLmWY7eB2S4yNzAp2oA7bAq/3Gpqs7/+T2rRtDXbwQrOnCfVobevh
ALWLZ3ZpY0WmGDJIQizXHFe4pv05BKVxXg1loBJxHyYC87YmZdKtar7gXcOGOG66
+fEWuUz0VRZc+hnamkguKYFg/45ZMs6neblBdeYc01qj18LdkGS/VRWoK2zCvqPI
WW72/VJt2+SvnIMX0JIeeIJUz/zk3Ay1p/LP53IlhLaGY5k0vbN3G1K8vCbaV3Uv
CfyEXRUfG4FxULQk48Iy30dJMdoV44BJqQnQvJErXko0523c9BQAe7VEnFX7ZF6p
AgMBAAGjaTBnMB0GA1UdDgQWBBQr1SV/uokWTbctT6SrOjrSqBDaizBGBgNVHREE
PzA9ghFpZHAuYmJtcmktZXJpYy5ldYYoaHR0cHM6Ly9pZHAuYmJtcmktZXJpYy5l
dS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAQetx10CWgE5kitDC
wVpIzugr7OUcyweNhXj42doeC7rFcoqc4ejUvJmq9sVxHLNTAktJ8+r/gr03MLEP
ToLY1llky7TfJhKcZ/p8mfIurVXxQKlGlXbsiYWm4APDntUWi6OzRI9yslTBTI6d
ZN5qf7OxYnXaRAhfxQT51DfpBdjUhxDGC2Z+VnTVYSmNItRxX24mW5LN6ik0ZEis
Ls/XqOydBMvp9i4A5kYYXXCT/TMVoaTbPFOqq2F6yFVzuUeTtToB4aCBEnNqL+ps
xovLThSc13PPlfcRv72JKYFcO6pabOeMJwwhQ/p5WMILbSl+sPlscEW0c+7oJXvz
cnEwlw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVANM3aONpPS/BDOU54pnvNyySwvuOMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUdIWoF+CL+1dNJmpv1Np09b5b45kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.bbmri-eric.eu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.bbmri-eric.eu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.bbmri-eric.eu/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.bbmri-eric.eu/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.bbmri-eric.eu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.bbmri-eric.eu/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">bbmri-eric.eu</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAItr4H0b26J+BZNSg6o1nw3b7SBZMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVANM3aONpPS/BDOU54pnvNyySwvuOMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWlkcC5iYm1yaS1lcmljLmV1MB4XDTE1MDkxNzEzNDcz
N1oXDTM1MDkxNzEzNDczN1owHDEaMBgGA1UEAwwRaWRwLmJibXJpLWVyaWMuZXUw
ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCHm/dRHIesayMcqVEcNvZZ
KRaJH4ZbOwp9j+d9hqQcagnS9XV11UmqVxsES12M++h9NzfRZhWdU54TYVL+FqR8
MU74L0q4IFKrXMwsGzXHbvFCdMBKYM0P04PkbH9E6b/yG/kpeSpFZoLPXCaB1omB
qFLW/gCEhGUTt2XgsMLmtArI9aF05M45k99bMHJaDC3xGKztU7J8OmjfGT/nIEfz
pfgI2kAlmZlXjSuWRdLlJjE5K1asTUK8SfqEAs3XiiXoBwa2ZDyWf78tq3Eop2Rv
auYJV+rG07whtPNrU1KSJdfjq6eRfR6eGfY5i8nOGIJhYZyYzOeXboX+FAdqx2r1
AgMBAAGjaTBnMB0GA1UdDgQWBBQZqO66zPnH8lTjRTAYWlXRK0djLzBGBgNVHREE
PzA9ghFpZHAuYmJtcmktZXJpYy5ldYYoaHR0cHM6Ly9pZHAuYmJtcmktZXJpYy5l
dS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAUY3QXtVsLwRMkm7m
etZ6o8imeKTvMKs2u41mvrLl6YscRZf2CqRYTLdrd1i5SKpCaIynSBqXIED7QtlW
ubcp85iTjgRMBR/KvzS3augBlGiPiNvsGBHUoMMixeDIRsArtHgM7s3STtor6suU
SjaGOGvYOQg4olR947pzjB7E0eAGAzdfT8xHQkjysyeADPx/G/lUux1WfIcbA4BC
NyXyU13Jj+eQlD4g/kNDlLG4cG0wg1RN9czgI6kKsI4Pn2qspOjzSwDHQ7bdcMRV
0QbS/x2x/DAgBV0b1RKGTWHh+bokeB5IG3Il4pUs+4yVEihFgnzaQo96Pd5nOv+S
p6gqsg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUdIWoF+CL+1dNJmpv1Np09b5b45kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.bbmri-eric.eu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">BBMRI-ERIC</OrganizationName>
      <OrganizationName xml:lang="cs">BBMRI-ERIC</OrganizationName>
      <OrganizationDisplayName xml:lang="en">BBMRI-ERIC</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">BBMRI-ERIC</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.bbmri-eric.eu/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.bbmri-eric.eu/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Holub</SurName>
      <EmailAddress>mailto:petr.holub@bbmri-eric.eu</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.bc.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">bc.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Biology Centre AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Biologické centrum AV ČR, AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider  BC AS CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance BC AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.bc.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.bc.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="123">https://gedeon.cas.cz/loga/logo-bc-44.png</mdui:Logo>
          <mdui:Logo height="255" width="715">https://gedeon.cas.cz/loga/logo-bc-255.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUL9oUG3svbVeWPjLgXtLsphWkc9gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAJy23DXe4E5iXDD/Nc0txhbw/bX/MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAOtcfIiW1arseRTtj/eHq66d+e4VMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.bc.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.bc.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.bc.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.bc.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Biology Centre AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Biologické centrum AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Biology Centre AS CR</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Biologické centrum AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.bc.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.bc.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.carc.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">carc.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech Agrifood Research Center</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní centrum zemědělského a potravinářského výzkumu, v.v.i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for the Czech Agrifood Research Center</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance Národního centra zemědělského a potravinářského výzkumu, v.v.i.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.carc.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.carc.cz</mdui:InformationURL>
          <mdui:Logo height="709" width="2222">https://idp.carc.cz/idp/images/idp.carc.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIjCCAoqgAwIBAgIUEFFb9yqAT7+Mvqt6+c6QAi+gp0EwDQYJKoZIhvcNAQEL BQAwFjEUMBIGA1UEAwwLaWRwLmNhcmMuY3owHhcNMjUxMjA4MTg1MTI4WhcNNDUx MjA4MTg1MTI4WjAWMRQwEgYDVQQDDAtpZHAuY2FyYy5jejCCAaIwDQYJKoZIhvcN AQEBBQADggGPADCCAYoCggGBALoPhuKLE4zYNBN/bNhbitxUx4fS0Q9cZB0d2uY7 DyfnskmDtk9oLWeP7fgrPzphkShiZZ3rKs3vX9uiju5ds5xAlYSTBu6DiJmbdVEG /dMbOsl6t6CxJDyERxC4m4peHaiVZdiDyRbwVxqwnOJqEnfvmcJ3RiWzZjBm5BQJ PtXrt/QpV5kDLJasbohYZY2aglRMiTIMnBmBkNXGoHlgOBHMfqrZxPgg+Vynbx9C SMHsdoCp4N2kNPBmhxiTbCF+uaUdfHvEptfqbZ1+lTCrLitkiK2BR6iyA8plpK6X 4rjuT6XP70kH1o3gceEQ6YklyJG5NgraEveC9absCXimlVk73pSILyZv4ym+BvZG 3LTkVTb/UOpbYB5qs5OJrq84K3Tug7uDTT9XxY8fRN68XYD0jsgY5rW8+vg078qU jWQV0KOns2ZjVF4GcKTg0tpkW9Vb4IISOumnwwDc2Zhu9gHEkVUy+kTHyjcKQXLg tefuMdM3AHiCQRlLCMxAOixFTwIDAQABo2gwZjAdBgNVHQ4EFgQU/qflY13USn6v i7zutXjfULAiBAwwOgYDVR0RBDMwMYILaWRwLmNhcmMuY3qGImh0dHBzOi8vaWRw LmNhcmMuY3ovaWRwL3NoaWJib2xldGgwCQYDVR0TBAIwADANBgkqhkiG9w0BAQsF AAOCAYEAWUg8Qx7z+2xFdr5HSMcetCn+l9KyadiiKOITfCPwWe0lzWl26+5fK50r 3qW7OgfquCKs6/u22cyz6q5x9I3P43uvwDRM2i9t2/eLaI00P5fju3q+MgC9TVzh ElQyfRIDn9Sh/NOp2NU4uphKXE/dpr7orK1iMfkSMP2thAaeTLknhEF5KsEkBMSK 4v2M7w9s+JympMSaW+19ycee4KMHjopN+aUBnB1DcmxRnDaOFIOZeQZgID6PG+tP Ls4Czz4O68cQgWPz4Dyy5hbQJ5MEbMEovIi6yG3vcLw/pbJ7mOH4K8aP4te2iy6m DmWS6j/9YQ0hy2pdqQ5QvjzJ5tUdGRQbOpxePF9aU0HT9PYSITGfBq/9KFWEH/E2 qXUmLhtmOIBrTmOiE3wlrOZ/9Vzn5F1zXlV2WEAWTW4WUnf6Y089FSClMog2ETlX 09kQ8ptwRNYj+jdOb6r+IGkd4/buYgLIoJlaFMdn32MQvHm6nmUdEI4aGUOQueEw lCMqFsV/</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIjCCAoqgAwIBAgIUJKDNSSRDG9TGiF1mJ6ko8p6lt0QwDQYJKoZIhvcNAQEL BQAwFjEUMBIGA1UEAwwLaWRwLmNhcmMuY3owHhcNMjUxMjA4MTg1MTI5WhcNNDUx MjA4MTg1MTI5WjAWMRQwEgYDVQQDDAtpZHAuY2FyYy5jejCCAaIwDQYJKoZIhvcN AQEBBQADggGPADCCAYoCggGBAPmivzWJx9Egm12kfbf44PNqKlDJVViD6SrevGRP +TMWfXu5BjfDoFkqO8xABAPvA1NPsz7CiCL4UrumZM81mEIgqNvq58dgaTytMJ7R 4Aoop4vCGIS9toF2CYw1cHWuX88xKAE7iFu1/+tI5oDKW3jC7ONDVsswC5q08RmK AJGD8+kLYk9vF4JTFrNtYibCKSAoZvxGmwfvJdmhL546oEGKvlS+QhoxyNGCo0ys 9Mzpd5Ilw+UM2jsbOI5DskPFUcsmla2eKtNn6onEDWDmr0Kp9GkOCtHJxlTqdfMP BSbzZalCm7/iO5YdKH5CQ2fPXuhK8SdJUKvUOqQAsoXFFajvvRAaYZLeOUbtYCRI A/9Zz+R/RMdRCX10FGgi8B5kCEn53G3A2DOnN/FC+m2awxKggRVkWcjpoiExfdYK 9Bh8IVbquZPP95DryHmggHJ7rKNlE28+tjAZ/DiviR8UdHKA1D2hdd1DxpP7R0FB kbsoJrZu0Va026D6Bz4/ZAe7BQIDAQABo2gwZjAdBgNVHQ4EFgQU3qUO3tcrXLAk PV+qW6oEeen1b3cwOgYDVR0RBDMwMYILaWRwLmNhcmMuY3qGImh0dHBzOi8vaWRw LmNhcmMuY3ovaWRwL3NoaWJib2xldGgwCQYDVR0TBAIwADANBgkqhkiG9w0BAQsF AAOCAYEA411JIHexe7PJDHlYhNPB/WRk2RYb4Ko1+KRRNmq0hfxRAinfA4Pzee7b n9jnR004erP7ZZarUH06Z8SYax1dhE5d+QW6aSC6IYhgzNvIN+Dy5MSJfj7fQeTQ UB1qw4IVHxcv+Yq+RslnPRgEqk4QvDRKtiCyGzxwqJoaGxOL7ZFTZRG88LUi7ST5 h9YT/3qrY66GhUuA43iFr5532i6UW7SDe/iGpTaPnO4CI57wGg2RgXhjlbK1TwWu huFp9l8yg4mgAI2DkPvaDVdYVCL13F6uS0qvshVJCAn60ZTvEt0h7lRT/FOIxgke LkCOkDVByujz9wxwyWG8+XVAB5muZuhCk8eWoEXkWDwIbSQt6nhMZcBT50SdH8hK UZc/kkUn+9WxzKUBkZYHo6rtPRUZlpBHNOaWlGdFs8BtxEowUmpFxp6ZzvqmKOlW JwLMFMBR7CaHDw8KGyvGbVAS2dqXJjM+d+yXyhSVapb3CyuMwjeodf8VtIEbFs2F 2qnoZUCo</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.carc.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.carc.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.carc.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Czech Agrifood Research Center</OrganizationName>
      <OrganizationName xml:lang="cs">Národní centrum zemědělského a potravinářského výzkumu, v.v.i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Czech Agrifood Research Center</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní centrum zemědělského a potravinářského výzkumu, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.carc.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.carc.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://idp.comtesfht.cz/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2019-05-02T08:09:48Z"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <md:Extensions>
        <shibmd:Scope regexp="false">comtesfht.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">COMTES FHT a.s.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">COMTES FHT a.s.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for COMTES FHT a.s. employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance COMTES FHT a.s..</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.comtesfht.com/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.comtesfht.cz/</mdui:InformationURL>
          <mdui:Logo height="200" width="200">https://www.comtesfht.cz/media/image/comtes_fht_prvek_cmyk_200.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://www.comtesfht.cz/media/image/comtes_fht_prvek_cmyk_400.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUP7ZDtrb5kgym1UbtXgVKbxAOTrEwDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAwwQaWRwLmNvbXRlc2ZodC5jejAeFw0xOTA0MzAwNzI2NTJa
Fw0zOTA0MzAwNzI2NTJaMBsxGTAXBgNVBAMMEGlkcC5jb210ZXNmaHQuY3owggGi
MA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQC38+VPcMQqWfDWnkg7xSsrMU+4
HZZP7e5iTAmnfatycseZbHSo65j2JFjoB025kG1EX6+Oi496xl9lGYqIaEMUXNDs
wKTvNYg1/SEsPUwNyo2/Gei4koNt4b6UQ4HwXkGW7jjyOphkbYr5RPzD5CUnOTdl
k0h/cdpA/ZpFhG71H/NJlXXH2Ow04wKvxud1+tQePVtkK4vb5MycBMc51ZK5qnR5
+dVSUgjaasIYfUSAOADcOKhznIqDsiFhTyAsm2ULS+OX7YW9s7dt7bdoSEg8eXMq
PkhhzphsB7yhK2vT8ZxRK70/0NyuIvdEXfdVYjPySNhx1MhITbrjTfeTkgs3ZfCc
31+9xMr1Pe4PaMbwjmr61RR1Z03rrJE65CDKQ5etpVGYjhshv7gkH2PLVoj26wPJ
dZtXzI3u8J0d3PbM3RxxC/fQoovW9UC34GZFpYNuXQo37RpWrwLTpMx+WoeQNsVj
FxPdB5IW6ujgmSe57S27JkqzRgSvKAk3YTrfNLsCAwEAAaNnMGUwHQYDVR0OBBYE
FMLBSTwW1X5+kGxTWMjUt8EHqP0AMEQGA1UdEQQ9MDuCEGlkcC5jb210ZXNmaHQu
Y3qGJ2h0dHBzOi8vaWRwLmNvbXRlc2ZodC5jei9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAYEARRYPmf+oHyNEETB3k6QkFyaEX2sqmdZ9q+0r2OEL6IqI
z2ZMcSKzfhOrxGWdhgmugkO9DcGaX/tFXb/67aSVSqHPcgETa6K195DUf34O9ZM+
U0PFvirlrHibvEaG2s5QKaJQOX1E7OFigIOo7wp3HbsK78XW5gwesixu/y3/3u3L
sZ6MQbq0fwjfcxMeMnVx7FzKSM0XmcNZSNl7V+WNGYBcewIRVCj6DV1EbCNWu7Yl
jESvN6wioL488YWITI8YMpK7vgV6LaMRFniUbLflEViLL1qef9phyuOaWCWcow4z
cz+Ss7P3Eb85Xf0kog8Yt3gcbaiEXbpR0lZhiavRGz57LsDEOzLN8A7KlmdpDzze
v1HOe0jlhV+folXTthD29z/4iiHhMGCpCByDvACboeCkHP0AUzsEDt/mdTdmJiLB
rHeb9WFqB97M/8Bkdb0ZQqIEvvjQ3proSJH+q5x+Yb4bBJwZ/cTvFxgj99HhTkc3
6eNa6ZhgC4HTfS9G+EE9</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUf013STOxQRF6HjIJUCylJjNHAtwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUBlEd2FuTePaPxNZWqOTuJUEDJJEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.comtesfht.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.comtesfht.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.comtesfht.cz/idp/profile/Shibboleth/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.comtesfht.cz/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.comtesfht.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.comtesfht.cz/idp/profile/SAML2/Redirect/SSO"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">comtesfht.cz</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUP7ZDtrb5kgym1UbtXgVKbxAOTrEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUf013STOxQRF6HjIJUCylJjNHAtwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUBlEd2FuTePaPxNZWqOTuJUEDJJEwDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAwwQaWRwLmNvbXRlc2ZodC5jejAeFw0xOTA0MzAwNzI2NTJa
Fw0zOTA0MzAwNzI2NTJaMBsxGTAXBgNVBAMMEGlkcC5jb210ZXNmaHQuY3owggGi
MA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCe3YM5WBWrH/e9aqwtDtY+BSn0
K/s3osgF0yoCb/AaEefrRP3EHCBLvKi2VblxhoCs9RL8JcmSCT0QrVNd1J2/bvRk
D4Q7PGG9aGG5FrOhOnNsQUVZ0pxA2870K4CFrBdHfSKSP0MkJyaRtYtiyn9pXHzH
07QBDe+r3xwG/DhRMvI+ddsJG9mfX2+dOWi7Z3QRF3yOkGgKv73C0moOIQ3Ty84y
r+sA1NW4zB2vTm7wxzHwRdxIoBgZAzBJAQo92q7Blwz9RtAiRc0uOcMzMJTDgIp5
BVTJSBE+xELbKZZkLqy2d0vlY8AQbLq6GCjG0K//JDRenOIpaL3c/8WJBEu8MFXW
OPvs5DoQlP7/T+hPdRMbkfOu8SZ7pnNmdmvlXjULsgdzbkzDzIh5qqxRJkrh1pR0
d2Uy13ih7La9o+lTd0wWBp99bRj0Qwb17rlReqpgcD4Va5UfhM9Di+GK0YN3s8Pi
KI/BX6OOgiuco2ScZ3UDVpDZoRNcIEBFD3VQpA8CAwEAAaNnMGUwHQYDVR0OBBYE
FPI8+K/UWZUFzTmLLIBrMu/KoGL3MEQGA1UdEQQ9MDuCEGlkcC5jb210ZXNmaHQu
Y3qGJ2h0dHBzOi8vaWRwLmNvbXRlc2ZodC5jei9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAYEAYLIEsSGkg4t81Xl1d7Xk76faI1+CZ0SJP3Hx6yanAiAI
UkGC7iLxBB5Ngr7cVgEpSp+Upc7wmr856PuBdp/Eda05TKVlsW1+rVAJHk+IWHwZ
FjmrET4CFe65iFm1SENJh+wqXnwY6LYvBfUORZKe4gWpfEGi+IpczJ/m5kk1tg9W
hS7R+xcJCMEVyMWcb3hGeM8GmmTgOS30+41IncV9Vgqh1dBBt0wnn5tk2ln7NwQn
LietJ0RpBzADmSnBkz0AOCMmzwjwDuPVAD//rlUgcGOyKD2A33fLbodi8z+bT8oh
3tkND5aZv33TYSRKb+7Kb/zTJGaniB6sijMpOZ08LNsmWVRoVLITIQvwn7u4qd34
7JJCJ1+ZPbkp7IyIKIXJlD/O696Z0y1lic9jRGXcTt/dtbBoS2jCHjNa+L4RU6Fh
NsQaed/NYBChc4gdaGQ3xrds4WCuqxBurKWh5e7w6WYwmdHeqRGZCOHAsb7T8sT3
FraXLOh7j4bjlUUaQaKl</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.comtesfht.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">COMTES FHT a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">COMTES FHT a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">COMTES FHT a.s.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">COMTES FHT a.s.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.comtesfht.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.comtesfht.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vít</md:GivenName>
      <md:SurName>Novák</md:SurName>
      <md:EmailAddress>mailto:vit.novak@comtesfht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.cs.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">cs.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Computer Science AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav informatiky AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider ICS AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance UI AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ustavinformatiky.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ustavinformatiky.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="50">https://gedeon.cas.cz/loga/logo-ui-44.png</mdui:Logo>
          <mdui:Logo height="400" width="450">https://gedeon.cas.cz/loga/logo-ui-400.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVALjzW6d4AOXvqbXrwDGaXZBmJm1BMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAIhZSp2q3a52WY2gY9VlWG6EYXktMA0GCSqGSIb3DQEB
CwUAMBgxFjAUBgNVBAMMDWlkcC5jcy5jYXMuY3owHhcNMTYxMTAxMDgzOTA0WhcN
MzYxMTAxMDgzOTA0WjAYMRYwFAYDVQQDDA1pZHAuY3MuY2FzLmN6MIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzL738b1KAq811hHbXpDayOK1cOlVOCx1
z2UaJWvIAUpSJgsr5KFkMRnenCLD1bwx2K2hYuZ7Q9U3rSPdUIwK06MLKhqhxE6L
96+12S8LBNtd2S6lTQiSVMYUnSs9JSZd7SX1oROau9YxmPwxMvrlQ25KE/dhXlZH
UCbsy/+mL78I9mJ5a/sT/9Q3d9QJpXdxbX4V0BE5FnEnWtXaGb3tolMYl65LwFru
zRf4YFNU7YbSkycO3QlgP2EJkymdT1v8YBRsgLI1k45md+384h+MHE7tAZWxZCC6
XAfO3FbCEOBIzqB9HZEGRBZKlFNd5/4ShM+gZELe278B2MNP2pBzXwIDAQABo2Ew
XzAdBgNVHQ4EFgQUDpyxW3BCCDr851AMi7MmBW5L1z4wPgYDVR0RBDcwNYINaWRw
LmNzLmNhcy5jeoYkaHR0cHM6Ly9pZHAuY3MuY2FzLmN6L2lkcC9zaGliYm9sZXRo
MA0GCSqGSIb3DQEBCwUAA4IBAQBm0sF4QcUpu3gumPCyLrru4GKsV/yD2dfbNEBx
Knnoqpwb4coWyCdMrKmjugnTPc9S62sWcM1tBsTQWn9xfZmV5QGQQfOtDu9Xsd9F
4uFkO03WaW3ilLclTQeVZKiFEHW1eymow/Z4kUQE0yBRU3FdY3joVoLt2yvGrPBL
5gGdUHrn9lETAO9A/1WAGeWZqp61NdfcbKsqGxGYt1JEO5zAOaZ58CaBD/BTeyYn
VFpSQ2LmGZlNPxy1ZQ5H66GQi+uAUygw9Ij/zGQxVeLYZoDOVSbcDuwBal/AjpYG
92oRAL/5BKD4AghX0S/OpgXimsMvfz+1aNH+Gr9IyVpWjKL0</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUOSnW/fo0SH30kHQ0Zd3BMUxwmtEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cs.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cs.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.cs.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cs.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Computer Science Academy</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav informatiky AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Computer Science Academy of Sciences of the Czech Republic</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav informatiky AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ustavinformatiky.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ustavinformatiky.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.czechglobe.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">czechglobe.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Global Change Research Institute CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav výzkumu globální změny AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider GCRI AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚVGZ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.czechglobe.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.czechglobe.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="347" width="800">https://www.czechglobe.cz/media/cg-white-cs.png</mdui:Logo>
          <mdui:Logo height="347" width="800">https://www.czechglobe.cz/media/cg-white-cs.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAPfOT5FLDTRDN0awXPPoLvN3b1aWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAKuaicitg3ACx6NQfLt/8QRocW8XMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWlkcC5jemVjaGdsb2JlLmN6MB4XDTIxMDcyNzExMDM1
MVoXDTQxMDcyNzExMDM1MVowHDEaMBgGA1UEAwwRaWRwLmN6ZWNoZ2xvYmUuY3ow
ggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCJL/KuCH8nIDD0G7F/1tiP
kgLmmLL+GMbretJgJrD5jaR5zLGgTooaabHF2TnHTAp65ePtNZPuTlXXSZqKpUEZ
BCNEaeIZNcq2cMFNMOnpK4r7E4rL6SVbx4b+j6DtjPZCZ2/yg4xL1CiiYsdpGCPa
LT+dYjZeTzvRA+QyA4bXRr8ETwuK0rqXcof29NKq8lKvW+anwEMQWtKDbuT21dxJ
w7Ey8dNdZ/vxAx2IHAIciSApeGkhs5NgHuIR5PLgDSaxj9ZwX70AkyNt2lfAoU8W
6YoZZuFyafk6g1qp0cAf2A2LQl7S9DJocgquwrMgv/cP5eQfx4YO3sgFWfvqW4Q9
zo2JMogeyfDpIz6GqRlKQl8inx5cl+XbSq59fKecjvkBFjzmMEpDiBpW1L23th5I
v1VZwvocdqvJXCf2Ea03cRCMnioZIwCrVMqKFzy/GYJdballJ1K14lD5tk+VucCh
gDCl06fy7LAnfWv0TrszK26zCycwVKE0DlPdvLL1N0MCAwEAAaNpMGcwHQYDVR0O
BBYEFPLy0j8096+ne5oeAmnESg5RX49KMEYGA1UdEQQ/MD2CEWlkcC5jemVjaGds
b2JlLmN6hihodHRwczovL2lkcC5jemVjaGdsb2JlLmN6L2lkcC9zaGliYm9sZXRo
MA0GCSqGSIb3DQEBCwUAA4IBgQBJy3VVntw4yHS2Bc0Gn+CX6L/DCjIKbHaDX3nI
2zumq7NMe9/xOPS9OMLOASF0Ji/b3FR/SsqqLiaR894EjqD5b7wP25+2mSCvK4U8
xOGebOy2y0T8BOjLsnjAQJCjmihNEUI7MrOVu0xxHrYwKk4uBkVNaxD4Pu//Avh1
5qi6qK3KZLlE6rYz0ZZaQeC5HpAjtaHGuNrlGgLfC53zNOtnqZG/+fb2a+KO6BQD
gr6TLF7dN0kz9ziEo2tl+fjfZNQB2IVMoYzQnMjQi4yQgWekuB6sJDoo9DX3W5QF
5Gw+vdsqCyHfgQupaAXkGAre2NGCg6xy6j0yZiIU06Y/oZX4NJMcxaRvL6FA1p3A
/uFGYtXVJCvWlZfQ+gvLaFRDFoa09mrgDxqz/AQQ+6f8BdlmOFKpfobJuCxafvUT
tMgPmgmUKnmqnea7K5WOU2CaZQFW6SEuGRAE+13H47rIjSVngPkEgj9yMEtH94vk
7Z8ZCupte3iopdho7E1VJ9IPjC0=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUYtPDsxo0Yq0VG4cebAdiEtLOKZgwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAwwRaWRwLmN6ZWNoZ2xvYmUuY3owHhcNMjEwNzI3MTEwMzUy
WhcNNDEwNzI3MTEwMzUyWjAcMRowGAYDVQQDDBFpZHAuY3plY2hnbG9iZS5jejCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKfFiOckM253lRk3Im8eKgrr
YTQGCWTNm/Lug80lvICaq4Vx9Ec9HDHZJ3u4U+MfzW5AlbhfaZ6oNAwE20KdtgfR
cN51G09/geusyuIOEDYwyG1RcYTBaAbS57h7ZvnZ8Y2Nr+z3/hdVOY/DKjY/40Qn
ZSXijnicwAD7+VP/LbQKbywfka2j6EjFCzo5LrkqDSnCXtGKlIzXOgUdRr7VhKG9
OwPLlxVqLv/Hf6p1aFiB+vJm3e/V5bZcK9K8Eosm0GdDq/FZfanW+vF/OnktNB3H
rFdROQxTMJC07x0OpvjGEP44ERlOudvv3J/z7gKYs+kQTKdGTz0LzJbG7FUWiLCE
TUb/oo3mx9qSzXKNZ730mHWG21r2xpAKUr546pvCTySoEVAudaVrkmEnIVDxYEiN
XG/AcoYCQ8DOxs5ZFQZ0dMI71pjQAROGKyGZ/H0XzSobM6NdFnmiJblHbz7kOC7M
sTD+vcnubTiSDz+mRzkL84Zcfsav3f69dSO7FnjAKwIDAQABo2kwZzAdBgNVHQ4E
FgQUSgURQhpwTHSbr2Fhu59M8ybc60cwRgYDVR0RBD8wPYIRaWRwLmN6ZWNoZ2xv
YmUuY3qGKGh0dHBzOi8vaWRwLmN6ZWNoZ2xvYmUuY3ovaWRwL3NoaWJib2xldGgw
DQYJKoZIhvcNAQELBQADggGBAJzy/ZRJl6mRzY2FRtjHqb4wMkranDv4S2FtAlpi
Yl5eap1bRre8xsRZ1wsC4kRjmMbC6QZoAIK6ev2jFG1Qml5SyuwBWFxecNJApvnY
SraRbN43UvHuXF6AfDY4zycZWvQQaUaGEEcSEPeFt0UzkkIBS5ZlAJeD8dchEW/P
cQG6iSpRqrQDBY8p8bi01mSOF6LqN+5GFYgi/08LX9nZo57prInOGXhWUQsVRMWf
z01pVj2m6PIej47g/D+RLCwPV+06AY/a49vpVVYV1GG+62p0NoI2b9oCQNnCxUKe
PDpGg3JR5qkKIwyESN36xoaIrIYlaAOt+FT4QXteRDKlW2G0AEjwh/+QRH71ONr1
dLHXVkwB1HmaHl9PjdpugOrICnCr/MGsE6T7oRUO8aaWeO3ilTbiPwQc7mL+51GW
D57oGxZ/iJEc+n0FKKnevyNKav0rPWgRvsEty+AK87Tzj7oDcdSkFnqsoGovmzWm
fcqtGFEEQlnnGq7Wpq0WlcE/3g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.czechglobe.cz/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.czechglobe.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.czechglobe.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.czechglobe.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.czechglobe.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.czechglobe.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Global Change Research Institute CAS</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav výzkumu globální změny AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Global Change Research Institute CAS, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav výzkumu globální změny AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.czechglobe.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.czechglobe.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Petrilak</SurName>
      <EmailAddress>mailto:petrilak.m@czechglobe.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.eli-beams.eu/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">eli-beams.eu</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">ELI BEAMLINES</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ELI BEAMLINES</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider  ELI BEAMLINES employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ELI BEAMLINES</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.eli-beams.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.eli-beams.eu/cs</mdui:InformationURL>
          <mdui:Logo height="100" width="205">https://idp.eli-beams.eu/loga/logo-eli-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIVAPzMcTWi+Puf0Q4BlubyGsptLH/bMA0GCSqGSIb3DQEB
CwUAMBsxGTAXBgNVBAMMEGlkcC5lbGktYmVhbXMuZXUwHhcNMjIxMjE5MTM0NzIx
WhcNNDIxMjE5MTM0NzIxWjAbMRkwFwYDVQQDDBBpZHAuZWxpLWJlYW1zLmV1MIIB
ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEArB+b8ma6UME7KRLS4LOHW9hd
mB/euLIisEw+mojaX5ccio12kSw06Ays0BZOfGqdPVXSKvmM96DZuaq5nFSIH1ll
TTTynDsV3iG2dlH90U1cmjZwsIWKRZada5UB4A3s5e08Q1GNwfeNV050dwvozhk2
oyQ5qQOAOgX3eHhT2kfHlOaC07wxGa4Ke+IvFtEVYq/OJSJzqO3Hzm+d4dSOJNzf
rPUWja/oE5amFOy/X1nLPZ2ChxgvqiOqtcCIkxucBBogfx1wqQYYMpPzR7c81E9N
auozzOlNYQKrxVyEOLJXLeUJMqRmxtsI/l+FkxhRH6CdMf6DOcqK2n7nOwR+X7E6
d0Od5/Pf1lgu4Pl693Vm57h3c4UfeqchkjUHqhkc8q/3INCAFl30PBSzL5Y63wLk
Aajll0AI4o7vNAQCxDri2bpSVsKoCO/Ed9dElv/vvMiZ9QXl648/Gjyzp+8tIJQ9
N51NCuzWNHv6KzY4zm28TKeBWF4gLxvZtwjaw5QLAgMBAAGjZzBlMB0GA1UdDgQW
BBSk8AmXpp/7iG2XsZ290wG+aAKzpzBEBgNVHREEPTA7ghBpZHAuZWxpLWJlYW1z
LmV1hidodHRwczovL2lkcC5lbGktYmVhbXMuZXUvaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQELBQADggGBAJzw3QDWKdVI2auOjwPnn8dPpVZvXdjZi70D3p2cBGVS
Aih5iHViYDKVdZJY47tL4HIKXKEcyAdXu/ZM5QGJB5MTQ9kxTxBWINA7hYdJSlF2
lvrcoaIeTQXTpgVLqzwYWx638fxcOxZiKn/pDkSDmxo7e5EGErzzuog40AR0S7XI
1g+bkJlt6dbr2tRq7o7/fqjNkCHveXXeAFu1L1jCoD7t4pPnWcpL4IOMx3OSUeLc
N8ZGvZoSDz/+vQOHIvCq+/VN5Pmyy7LWvjK6v3tBwKivRMb1a/lFqGOitZGqYHSD
FHlLtbPUXMT3QZMKLbWTX3fradpN7ssdJXZ8ytbR4cZj/AXd1C0z6IoyxjLwjo9m
k7QyPu9wTLS/qvYma8Lme1AwW7kQyRBbW3HKOXlNT2jL6egjSnERxx4hNdBwIbTd
6xcLvulnhEeiALCfy4v2A2CinpflZnxxMbUZriIEFNmG65P+V7BNcrPJMAC1jnBb
VawMzLurDJurM67JCqWlPg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUXS19JlvQJi66zLDlRE6jHq12Hp0wDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAwwQaWRwLmVsaS1iZWFtcy5ldTAeFw0yMjEyMTkxMzQ3MTRa
Fw00MjEyMTkxMzQ3MTRaMBsxGTAXBgNVBAMMEGlkcC5lbGktYmVhbXMuZXUwggGi
MA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCdvKfJsyqK42OMlj9+VUbjNK+X
1j6Mc8WXmOWwd2iYFwf4syHJrfhK5xmzuGzHbOJ2ozDGob33Q4gsxvW966/9feF7
2SzQqH3ufdtnfSJuvWEW5HucPGTMGz1QH1QX6pPnc+6D+6uTgutrTZSwlkdh8Jvb
WFHIBlnWI7l2jX83fjl8I3JoQVRNYBPZaEl+9b6b7DhZMmEj+4wF6IbNSsavPrkM
u+ZwP13p/wr0gLLqN1AW4UWN8AABHs9i3yIj851sojDlPE5GtqxfWjZ/HQAW5rnS
sOmbsO2ArElJgxkFJOgU1Y0rM7rStuJMex1E3wR9vgGb36P4ICOrfzuXPe1JERZY
I/XaO3iv42v0hGixe1eR3gyEnDeXCeslCk3OafwsNuTx4hkhrucOtMG05PSiAqbv
7wOFBdrX7irmxIihJo0kOZFwu/wyml/JQG4Niiraiwk/OM734PnI5nuiv8grk/nt
st0/zSd17f1TaT/lJHLa7MeQ5HXu75m5Lk2bCTkCAwEAAaNnMGUwHQYDVR0OBBYE
FEwjOrktNhwhxyJj/wJ2XrNFV9FnMEQGA1UdEQQ9MDuCEGlkcC5lbGktYmVhbXMu
ZXWGJ2h0dHBzOi8vaWRwLmVsaS1iZWFtcy5ldS9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAYEAgh/f1NfINP8RhLPwK6yL4vgY5cMdkM2HlOLxo+WFuq5+
94+ae6GO7Jgmgz/otlfS05d/YB9t19K3Wqtn3FNYqNPuKp9eZMDXaWx0F6Exfna/
cF2pGkoBHCH5JqkGEBfumIOdOHjot2KAlZiqTwJPbtW6I9iaHKi7LPzFf3ZZtLto
6ksJlQADXHzQdoAg/ELwotK84KOBJqORTlF6k9VpB3bL5ntOh11skQavCzWJK6cC
wwQIVS1YmV8xKL0Aa00a8NYKS13D3nAmjJjxyE0oWgW6z07eEEBs7WK1Dkmsp0Z5
zkvDiJv7lAtYa6XtEm2xbv14ht7809xygu/HSnb6Ug+oyT4g0I6+NBEDVTmCPzCo
LmtMRUxDuEzmQAGm5fqjUUezAybkJjvYPBrotnn2bCc3y8vQ7GzUZTLraCuJpRdS
sZ9OtZZfmYDaIrwFngXQ2QIDYIWXID8aJcC+Skw2596UNWT9HlH7Uetji3DN2p+h
nJczvz4ilsPpGIOniVNq</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIVAKuz4oh27wc99ZCLSUGCeRiGHkOmMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.eli-beams.eu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.eli-beams.eu/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.eli-beams.eu/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.eli-beams.eu/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">ELI BEAMLINES</OrganizationName>
      <OrganizationName xml:lang="cs">ELI BEAMLINES</OrganizationName>
      <OrganizationDisplayName xml:lang="en">ELI BEAMLINES</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">ELI BEAMLINES</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.eli-beams.eu</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.eli-beams.eu/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.eu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">eu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Institute of Ethnology of the Czech Academy of Sciences, v. v. i.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Etnologický ústav AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IE AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance EÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.eu.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.eu.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="113">https://gedeon.cas.cz/loga/logo-eu-44.png</mdui:Logo>
          <mdui:Logo height="100" width="256">https://gedeon.cas.cz/loga/logo-eu-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVANBKu4lPcmkt8PzlI6MUsHkCiwf0MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUVQdwkEXBP44xtrGDnEyXmG5gKCIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAPPjjYs9bVj173busSLbsWnwRdufMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.eu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.eu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.eu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.eu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IE AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">EÚ AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The Institute of Ethnology of the Czech Academy of Sciences, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Etnologický ústav AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.eu.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.eu.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.fgu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">fgu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Physiology AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fyziologický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider  IOP AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance FGÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.fgu.cas.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.fgu.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="282">https://gedeon.cas.cz/loga/logo-fgu-44.png</mdui:Logo>
          <mdui:Logo height="153" width="980">https://gedeon.cas.cz/loga/logo-fgu-153.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUSojJVee+LoPFNvrmH17QNEv2I+IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUdpiXLEakrA0WQZ/od3JWOm6fkBkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANmqHMV/X2VSbBAzc2gNIPk0f2ZHMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.fgu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.fgu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.fgu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.fgu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Physiology</OrganizationName>
      <OrganizationName xml:lang="cs">Fyziologický ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Physiology, Public Research Institution</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Fyziologický ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.fgu.cas.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.fgu.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.flu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">flu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Philosophy AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Filosofický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IPL CAS employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance FLU AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.flu.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.flu.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="41">https://gedeon.cas.cz/loga/logoflu-44.png</mdui:Logo>
          <mdui:Logo height="138" width="130">https://gedeon.cas.cz/loga/logoflu.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUcFu3so/KF+dtiIYvWR2+TjRmMnMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAP068s+4gV7EBnvVaoglx5OWH0g9MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUIna0fDsh1fzMjJxBQIzuljLc02owDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLmZsdS5jYXMuY3owHhcNMTgwNTA5MTUyMzU1WhcN
MzgwNTA5MTUyMzU1WjAZMRcwFQYDVQQDDA5pZHAuZmx1LmNhcy5jejCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAIi6wOolb2doQrWgTZ96lzyZ6GT5cskD
oEXZj71o7V68L5wIVO6ahX/tOp0ufao13iQfO2Jr/CwdoPa3cku5mhMP8bTW+8VU
pLQXw41VdPaS58WERFLpQuXusjhTibUDOcflUCBam86HQ0DIzldrIThqGYIPqgeP
5F7N/GfRKkuHu7/u1QN0P0RBORGfdJO+IMYa2QT/+jCfdSeaQxO5JCgnNoihfB6N
QhFsJbjui6p0x8saR1Zmcjr6oNutZBjmy1pQxtyN+i8MHrZ/ZPy4cmIggUSS6rsu
9ohAXo/EH+A/SO/jllo1xYMWXJfKwjZE4tym8MgzRLG8yhIp4KlfM00CAwEAAaNj
MGEwHQYDVR0OBBYEFJ5awwfLFT0jB7Vhvp064qH2iS43MEAGA1UdEQQ5MDeCDmlk
cC5mbHUuY2FzLmN6hiVodHRwczovL2lkcC5mbHUuY2FzLmN6L2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBgSp9FRvmo43wBGVirQKmDX3yVSYsnMknp
Q9n/Eo47MwpsCoUO46a/xWSsqfK2zg8BcWOcWPYSipp/hvfw2xAkmDPA2cIf4KON
O1wwIIOQiQU59IlZlJTPChkeH5GScdcmzaQ9061st/z/C76dp/XY7SbhHJ3kfPD2
pMKAWnsrQ950ZibECb+hh7/MUSk7dbv0e++UyeZDwr7hzd0ZuNoNz6Qsq2TKGjIb
CgvW5//vdCdli9qvioyiHXRHUNRx4LGDMEQNDwMcoXdyhPqEIwdTD4BxBtcx+yDh
9zVtVuf3zptNj7hXL8rKdAVOgvVnClRM5DijysFOB+AetyfO96nZ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.flu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.flu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.flu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.flu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IPL CAS</OrganizationName>
      <OrganizationName xml:lang="cs">FLU AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Philosophy</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Filosofický ústav AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.flu.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.flu.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.fnplzen.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">fnplzen.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Fakultní nemocnice Plzeň</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Faculty hospital Plzeň</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Fakultní nemocnice Plzeň.</mdui:Description>
          <mdui:Description xml:lang="en">Identity Provider for employees of the Faculty hospital Plzeň.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">http://www.fnplzen.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">http://www.fnplzen.cz/</mdui:InformationURL>
          <mdui:Logo height="86" width="138">https://www.eduid.cz/idp-loga/fnp.jpg</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVALkYKjiKzJZ0uBK7HysBrywSAWZyMA0GCSqGSIb3DQEBCwUAMBkxFzAV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUFdd8pIJFKKJJ/EayPdX3bF8D6o8wDQYJKoZIhvcNAQELBQAwGTEXMBUG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAKoNt5AZXz9ltLIPCnxOVjqdzpw/MA0GCSqGSIb3DQEBCwUAMBkxFzAV
BgNVBAMMDmlkcC5mbnBsemVuLmN6MB4XDTI1MDIxMTEyMjAzNVoXDTQ1MDIxMTEyMjAzNVowGTEX
MBUGA1UEAwwOaWRwLmZucGx6ZW4uY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDE
QX3L0CG+zC4Wmqd2hITgF+BYoQEZAip0WbuWX995oM+gTZH97Ww6N4EYxMFis0uiZ+LlibV+Gu0x
KMvQ47mRRBFT/C8ostT9JKmncaJKid6LSmcqcJYo9DHurBsWtVOkfztCklEjEm6ZSlWK1jZpzdFz
kJRFsR3g9Hn3qEqPyRvpSyxtqscScKyuSCZlZHlpCdfOx6MogYMGVjrWrPMWjNcFk7wveUtIkOEc
hfunTXeSTR/FKgp5s68EzUBW8Qg+QJxqvGqrue8mc4fLT2rkNReeMgDNUK9aAtLqmfWBJueiuw6U
SK9d+bGelk32Ht3Mj/jb8fCPE6KoH0oNOP/QJqEGGtb7fmQ00ShexV14xFmIL+/PdUpFZvhN43ud
QAO/gBUIngDklNJDXQBFqGaUvg8JUQPO/GgQKAOcspSgPav1WBbrhkAKcHeetM+HT+ZHLwqvbTsw
qucRqQCTdcvmXPtshK9Kua1tSSEBtIP1OKhhEIUEtJ7YW821y2u2cVUCAwEAAaNjMGEwHQYDVR0O
BBYEFECNq9BzWHPSBC1PqQApwe3m3WkrMEAGA1UdEQQ5MDeCDmlkcC5mbnBsemVuLmN6hiVodHRw
czovL2lkcC5mbnBsemVuLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQA6gzT6
vWYFPlr9JxJqsx4f56IPNsg3X8SiZB89HMBrsROSl4FfkPoaUza4w7f3+1ZceWte9iFXLHpl53ii
gv/NrV84+6STpnALCDfGZkAZ61+26Gx0XfPOKDeYN7nKYBRjReFiVwj++6tZFK5kCU9ljSZRWlZs
ysFyySqQVVinOU3wMuam/2q6SI15tCc4UrPUT8z42mvecIUGWlmqckMr7BkRKI47/Zetji2TDmwA
JhGorvBYvAgJrDK5xj3WTAMJ5lTgz9tNbMz7llqaH2AuMFPjjqLsnTTZ9B4S6fOEl2A5usJKMaGI
mXUf0oiYlDmqkSDr7KmoQzk0/O2BlbMcMcVBO3ZQTtBsLdYAvu8tBGOFAu+oN3DJHe4cWasgM6bS
A+jDk+YWHd3S6K9ENj1c2OC57J45vv96wu77NsE9PBKrYGU3nJauaIGp7dmEA03u2RNZLD5CM1H3
qSr3UxNeX6TFT9auS92Y3jRglqIdd9DbWVxX64XeFSS3NTUnh/Q=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.fnplzen.cz/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.fnplzen.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.fnplzen.cz/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.fnplzen.cz/idp/profile/SAML2/POST/SSO"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">FN Plzen</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">FN Plzeň</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">FN Plzen</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">FN Plzeň</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.fnplzen.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.fnplzen.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Milos</md:GivenName>
      <md:SurName>Wimmer</md:SurName>
      <md:EmailAddress>mailto:wimmer@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.fnusa.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">fnusa.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">St.Anne's University Hospital Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fakultní nemocnice u sv.Anny v Brně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for St.Anne's University Hospital Brno.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Fakultní nemocnice u sv.Anny v Brně.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://iweb3.fnusa.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://iweb3.fnusa.cz/?lang=cz</mdui:InformationURL>
          <mdui:Logo height="137" width="300">https://idp.fnusa.cz/images/logo_fnusa_300.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUVAzrBfUW2tB5x5Az3Stf6zNFK8IwDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAwwMaWRwLmZudXNhLmN6MB4XDTE4MTExMjA3MjYzMloXDTM4
MTExMjA3MjYzMlowFzEVMBMGA1UEAwwMaWRwLmZudXNhLmN6MIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0FG3w/RtXXcYTGqOeZlvvmLGq0/F/EVGS1c7
1iGPnT+vkNG4t+3568nyo6ghcA2n2YRqz15eWgRFw2K25eTlmH8bfnO+tatQeZwU
kZz14vFF6noq854T+2jE94q2EbbFSMOjihIdpAYLNRJi0uymgJ/Z401qoOS1mdW+
PFrun0BOqlUYk4BlraA9/6p3FjQwBMY6FqvnRU+mqW7tQyx0q2tt/eoiHej/0vUO
0Oqp4Tqhm3fy+RZSeFsOJzcsnvjiJUu+O8o6bVE0iLkyHZHmJS9Z2PmsLxXoTR1q
y/2/BAdQQ8u0oLJSm509gOpdc6Wdi1nRrpMO8m+eXhPamnCUvwIDAQABo18wXTAd
BgNVHQ4EFgQU3366wlXFQwDZ6oKy5zi1/smi3HwwPAYDVR0RBDUwM4IMaWRwLmZu
dXNhLmN6hiNodHRwczovL2lkcC5mbnVzYS5jei9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAQEAUmAotG6vDlvQDxsxnGHP4nE194O3iiXDcd9/bFs6WLUg
fCYkVn9hvlE4d9TgBjGxLaAtxSbEBNV8+iCcuV0VKJJb11ZGJhViHO+Q2+43D59+
BHcMUCCCbK5QvS2/nlJcjA+GPvX61Rs/EbpjiaCGURryse8X6bjJNh6gJQVTQ6AE
dsWNZai/ind5Zni1cdJOURcG/excb1o5pbDoKwNFGb4zFj98jRzTaXhaoRsyygq2
2xC0m3aPxWT9MS5S0J+ZTXcb4w25nkxNK+r0K2HERRRnwdl0Z2HPZ9Y2uh6TDpDr
gf1xlPMOQHtr+h8jQ8Cvb4Vhqff2T0ck80R2PKgZSQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIVAJD7ePoirhrwR9PKudqilmI0ZQCpMA0GCSqGSIb3DQEB
CwUAMBcxFTATBgNVBAMMDGlkcC5mbnVzYS5jejAeFw0xODExMTIwNzI2MzFaFw0z
ODExMTIwNzI2MzFaMBcxFTATBgNVBAMMDGlkcC5mbnVzYS5jejCCASIwDQYJKoZI
hvcNAQEBBQADggEPADCCAQoCggEBAI76EJbiMvWlrXvzM9YBOBYjXK35PueiwZ+3
32Fo89UaWBuGuocv2Po8b/jYZ1A0rYNuuBwhtdhdg9srj0KnXGrTy3dHJ2a+sAIZ
PcKYh3xY6kFYg62HqxT9omYrGyJKlowW9PoclJxligAovOViv3YkKtJZqI9wVjc0
kv0q/c9MQEysF2ha+lZqiNQ1mXvc9W/5D1Worw2o4eOmtGACPjZe9pCxgHlp9jPe
0/Sb4QBAtAd5sr2xAzvBRQAp3nus0d3G1WyKQYV/qCFvnt3WbKJpHyNLMff/uS2R
Rh+do2ZArcyGVbdYhSxBb8yi7Fv4Hz5mz1S4FAIPS0IiBOzwX6ECAwEAAaNfMF0w
HQYDVR0OBBYEFFRglpR/XCrXNIpivCvC3b0F9b1sMDwGA1UdEQQ1MDOCDGlkcC5m
bnVzYS5jeoYjaHR0cHM6Ly9pZHAuZm51c2EuY3ovaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQELBQADggEBAA1oqqaZgcGmqCDgslZ9cfstCAgNraD7Z2zTozC0JnK1
PizCqDQ1XssCpjkO5g/H/gkYHmc43Ni5F4b+ymN6JMbMO62sVTJN5texgbx+xowM
58EaDxiJynA7R6QmNZYYxismo6SYBud1DuAcXvsgbl3kk7/6Wuc4qoMbbiIcX1N9
9tLJI8Z0RNRDhzSm5gOw03kU67fG8EY0dG0ZmZ1OjrhD1p5/ERcNB5qKqQIC7y5x
oUWGOep88vn9B+jvhyxI7QI0GtbzTSDISJGGcPViiiV0oOiBkZUpfYDeJfeVzsXf
wOMbYwRnrbVRCr7HDTDyT2qBriXYcGD1kHcDwmq8xP4=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUfm1+TnpnSMCsSF7tKaSwFW8v6+EwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.fnusa.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.fnusa.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.fnusa.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.fnusa.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">St.Anne's University Hospital Brno</OrganizationName>
      <OrganizationName xml:lang="cs">Fakultní nemocnice u sv.Anny v Brně</OrganizationName>
      <OrganizationDisplayName xml:lang="en">St.Anne's University Hospital Brno</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Fakultní nemocnice u sv.Anny v Brně</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://iweb3.fnusa.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://iweb3.fnusa.cz/?lang=cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Žingor</SurName>
      <EmailAddress>mailto:martin.zingor@fnusa.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.fzu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">fzu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Physics AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fyzikální ústav Akademie věd ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider FZU AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance FZÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.fzu.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.fzu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://gedeon.cas.cz/loga/logo-fzu-40.png</mdui:Logo>
          <mdui:Logo height="100" width="100">https://gedeon.cas.cz/loga/logo-fzu-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAKTCptM8I8hwyciH6caOktVJ2lymMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUceeOflgBfeYX50uxxdO9OJNYoJgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUNayIhKsMDS2nzyKKgYWP7P9BKIowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.fzu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.fzu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.fzu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.fzu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Physics AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Fyzikální ústav Akademie věd ČR, v.v.i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Physics AS CR</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Fyzikální ústav Akademie věd ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.fzu.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.fzu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.gli.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">gli.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Geology AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Geologický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider GLI AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance GLÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.gli.cas.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.gli.cas.cz</mdui:InformationURL>
          <mdui:Logo height="44" width="82">https://idp.asuch.cas.cz/loga/logo-gli-44.png</mdui:Logo>
          <mdui:Logo height="633" width="1168">https://idp.asuch.cas.cz/loga/logo-gli-633.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAKqgftNk319u0XnJ4W4dgfZCVoGAMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUevldiF5phyXGw5ENTVdaToDQhwQwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLmdsaS5jYXMuY3owHhcNMjAwMTE4MTUyNzEzWhcN
NDAwMTE4MTUyNzEzWjAZMRcwFQYDVQQDDA5pZHAuZ2xpLmNhcy5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBALSDD2ojxKh66xxlZMscGSVtobp4l6dc
Y3mRYwniCyw8GZ+RFXlf8eCGNuhXFIJTzhtbMRhoxeG48t3THoqX70I476cmOHnh
4phsXBqVdVIb+I7+jz8Y9dwqvnuvI+xIaMM70lIC33Z5oBd/Wbj+VE2E6y9jqx7w
w62rPHyXVfL1T0pzgnfrFew9wVCLltFRu4YIW6KlPEVauBS6Hfdppv9UBq5g79fg
VMjobS1tzBbMwGD7jhMMDQSj3USfIfIanVxzH+aQaAiynyfcC9SOZjpSMBHESFfz
TntqyS4uWOsZJ0me+cUvLDmRVA4tI86nw2pTWyQz3iaYDpNuzhigYvq3qXT2XEWc
fNRnwtrVwwCQTEFJ0RHHrl/O+xdFtZ81vXfz7fVJSgBDKvmeLgNbgS2IrNHnbJq3
lIkPTU7Uk1/1KyuTBxCf4aaA1kQKPKYKKLLdnXtmvVGZaxEgCRuprj3ibvfxda+z
XHUpZyIeYMrBZsdaVT7vwL28jIOGs00GlwIDAQABo2MwYTAdBgNVHQ4EFgQUtKRy
+X4r3CSf5e7CnSUluOxOSXgwQAYDVR0RBDkwN4IOaWRwLmdsaS5jYXMuY3qGJWh0
dHBzOi8vaWRwLmdsaS5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL
BQADggGBAA3+zLzW2mx2HMlW+zPa7K+QCZEpa5F/sByajOuHL5uTtoxD/CJOz8B7
BpDZxhZwE++3wKMfTSdF3mG1cFNS0EaTfKbIsHfoDUEBU9xFYJB+3SzRxP3lmbm0
A4PKYoqeHjerOjbeN69rZ5c0dYvtaJQdWWI/BXifPeNZprGXcs3oen3BIpBFH0pp
W5/dJPF6n0rVzIFw9Gm8nIX9KBXhns5qcmXIZeZ462KsXpEEFNSySOjjiuX32m1a
tM6UMAs88402XzrzEGF7e/8oNFDZCDxgyaV/YoV2whIUyDzwvwJaii8z4mC2Imi7
vfa3xjUjUuD/Fmd8B2OYAY+t9OLy8iRe2+mHYxwi/6lB34HLbgummOiDhv4UGNr0
qticuvH56Iksj3P6e+bXgINH12CBYcVnKeUAtlOTXuIwfJt2UH74rK4R5ZWiaVkT
HMeYP0h4bG1t5+ID02QhvL7GYrELNPW4pNka2H6mZY0YBSVl+tk/dpC3bR3AJuzo
xwSCZWtSvA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUYGgDKm+uGByXKKBfK6u11loWWYowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.gli.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.gli.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.gli.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.gli.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Geology AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Geologický ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Geology AS CR, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Geologický ústav AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.gli.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.gli.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.hiu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">hiu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of History of the ASCR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Historický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IH AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance HÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.hiu.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.hiu.cas.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="44" width="61">https://gedeon.cas.cz/loga/logo-hiu-44.png</mdui:Logo>
          <mdui:Logo height="530" width="740">https://gedeon.cas.cz/loga/logo-hiu-530.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVALlNR2fZYGd7AEb5CrjzyXBoSLq3MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUaNX+PQdKqwOssrKtTjwbqegfoeYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAJB880J3XRhlu9x3eP1NkWPBei/eMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.hiu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.hiu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.hiu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.hiu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of History of the ASCR</OrganizationName>
      <OrganizationName xml:lang="cs">Historický ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of History of the ASCR, Public Research Institution</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Historický ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.hiu.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.hiu.cas.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.iapg.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">iapg.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Animal Physiology and Genetics AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav živočišné fyziologie a genetiky AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IAPG AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚŽFG AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.iapg.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.iapg.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="44">https://gedeon.cas.cz/loga/logo-iapg-44.png</mdui:Logo>
          <mdui:Logo height="3809" width="3814">https://gedeon.cas.cz/loga/logo-iapg-3809.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAJgOOVNq7ZeDQ/A1Xi75q1QBnx3AMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUcLYzhySbvRQQqv4WljnW9emgbrAwDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAwwPaWRwLmlhcGcuY2FzLmN6MB4XDTE2MTEwODA2NTUyMVoX
DTM2MTEwODA2NTUyMVowGjEYMBYGA1UEAwwPaWRwLmlhcGcuY2FzLmN6MIIBIjAN
BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApFY8LfedH+MUZsjs7Nfv7x7tKQqq
OCxm/rCQPFpkjHBpO1G1nd+ahs4JfIi7AwyuqcRUBCv75A+XKAheNKarvUhyhuNL
gZfcoB72E7Y3xEMA7Y6h5/F+E7UyaSG5ABVf4EWU8Bu7cdE/lFt6HnfmcPMHfhvz
2rApvmdfab6pOUAuFG8sTm2+K3Ifmzv6TS+AEwXtXqh3cn/IoX56INilpUOTzCOD
P9FbSL1V3EF9FL1U8IR1t8NFhWm3ZEi+hdcrvtnjC2tvvMTIZZOZF8AYcJZFEfAe
1UKuUo4mFLiRzsUaO2hE2Ifkb9+Wuif7A7SFLPvtq7RUEAzIi3vOAmsEwwIDAQAB
o2UwYzAdBgNVHQ4EFgQUiBoebeXQyr6HRqUu0mmznG9YPSwwQgYDVR0RBDswOYIP
aWRwLmlhcGcuY2FzLmN6hiZodHRwczovL2lkcC5pYXBnLmNhcy5jei9pZHAvc2hp
YmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAMCbLiM+hfd5XECDeh34LZVl4MnWx
9BHefcwTcteUjSR5Bl/rKgoRxBzuUWQpH5p8zraQ7FQk5Zx9h2QHBjc1eY0N62qP
kAHLMlQ1F/owjfaOPDExFDnVvXI/0bvQJGa9vwLx1Pmdckpam2p1/7rHmVQJtkLg
aZ3OMlElTYAX8Ho3meEPcGY4lQE2sUNscCZERmXEoWW49PpYYtI9sXZwGvewc+f6
yCbqnsJyTOCW2yNTrrMC8L0iHStzWJchFdk9Go1ifHSCgLWXxvCSL4bfxJpAOOPY
rPJvJUhdANJFBnOIM/Wo3ZGNlqZ3KwIpLFNLu7L96jfWD1EfAl3q3AEoFg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANR5sKBdONhdoof54cc1AeT1rFxRMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.iapg.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.iapg.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.iapg.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.iapg.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Animal Physiology and Genetics</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav živočišné fyziologie a genetiky AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Animal Physiology and Genetics AS CR, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav živočišné fyziologie a genetiky AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.iapg.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.iapg.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ibot.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ibot.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Botany of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Botanický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IBOT AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance BÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ibot.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ibot.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="123">https://gedeon.cas.cz/loga/logo-bu-44.png</mdui:Logo>
          <mdui:Logo height="284" width="796">https://gedeon.cas.cz/loga/logo-bu-284.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAMiwMX3eli23G681tLf1Mu0en4BWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAM9euSmM13kX6008dyQo6e5HKSH3MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIULL+OMh7G8Ea1WA1U0Udg4BExbB0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ibot.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ibot.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ibot.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ibot.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Botany of the Czech Academy of Sciences</OrganizationName>
      <OrganizationName xml:lang="cs">Botanický ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Botany of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Botanický ústav AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ibot.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ibot.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ibp.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ibp.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Biophysics AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Biofyzikální ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IBP AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance BFÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ibp.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ibp.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="81">https://gedeon.cas.cz/loga/logo-ibp-44.png</mdui:Logo>
          <mdui:Logo height="65" width="120">https://gedeon.cas.cz/loga/logo-ibp-65.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVALEjVvCxdsfePWcvjZPDbg9hF5PyMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5pYnAuY2FzLmN6MB4XDTE2MTEwNzEzNTMzOFoX
DTM2MTEwNzEzNTMzOFowGTEXMBUGA1UEAwwOaWRwLmlicC5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDLKSKAd+w2T7AmqXgq7Xf5eHL2m1am
58L3pIIELhOC7Qq5YM5a5tLun7UUri9MNCbwIWMQr9VZItviAbMg9boSWQzpTT1a
9sJfDDtz03QuMd/f53YOOXMdWLI2XiPYPIKix2jo7bl8odFO/nQ14qpkCZDTebJk
eBKU+H+E/K9SGDM1Jii3axTibYbOTqkSPEELTUWjL1ad1Nnm4ZYnZfliwmJKkVdx
dl5zHDrXKiChJNjo96FdhcVS70kFCGKf39OVvHwJZ2FFH+xdaNE5gU/3C6ogO6ZV
/el89C3OrZI0nSeKUWY8oyaNM5n8z0FXEXVxOhdkdfLPwmuP7EmrL7VZAgMBAAGj
YzBhMB0GA1UdDgQWBBS7iEEy3Y6sDme5eGpBFEFduoAv1jBABgNVHREEOTA3gg5p
ZHAuaWJwLmNhcy5jeoYlaHR0cHM6Ly9pZHAuaWJwLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAakoiXhvJ0CnQZM8e+Ni+1MqT49VbqQ8J
QIKXM7+dDT4FOKc20OO8NZGFTVGo7Fo+Iojz3EJdZxPQN/MN6G3Zy4hO9QnyBroT
BYHp72aQyUaR5wUeaTEtB0sb+i95m7PSNfZvMLvYd+FQ4voFFrlJF0PqL5Ii/vSF
NwOD9O5ZvJazB1t6/S/ombc4JE8x0sCMZqA4YKCjcfsl7F0ULAh2ey3Wx8Hpz2oI
qMaXb1pWMMoxanrKpLeyx8TbVx6Nu2KKevgnnxnfUEi+it6rP+JLUv7e1ARzB+Ia
lUH/kv22Wz8PFpC/H94JQeykwIgUfo9k3B9tib5P6CfOn/pd7sF/Xw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAOdJzwOybLJ18ET2RnWnsSGjpSG6MA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5pYnAuY2FzLmN6MB4XDTE2MTEwNzEzNTMzN1oX
DTM2MTEwNzEzNTMzN1owGTEXMBUGA1UEAwwOaWRwLmlicC5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCQyjq78WqnRSwp0UsqVxhCjHexDnRc
BtwkWrAKgnS2aPYwuAJisNNWcrLssn9lUFx2cVffLxHqJ8fJva3DqUE06fPtBWUf
4V82nJfnkypkDaVfFYLOl6nC298hrGJo8CKVnrHfB6HunMGhY2NMaoDHLgkB1xqL
lSOjfE4KS6Gm8QB+7cHLc8SzJNRrVUKk8vSgcjyoNVWtfi2A+ZtIOHFIA5fQ6K2R
VrF8ToeRRmBF+JHiH3WpBgmzCbV5IB5mHc6itnRIjdvX1nzA1XYl3o6WULQ9P1NT
wVPNBGoVxPjYjFv303HxUtNZ8CkGui3YV6hEgPFX4bmDxiMBpnvLMIYXAgMBAAGj
YzBhMB0GA1UdDgQWBBTgU5vqs9nGmN/S3wJTUja67cDkWTBABgNVHREEOTA3gg5p
ZHAuaWJwLmNhcy5jeoYlaHR0cHM6Ly9pZHAuaWJwLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAKdiwfR4af88g1qBNUQdAA15zRbM7jpXm
mGbBNDyDsa+FwF1RP+7TnUiwEgR59Xv81RBwEY9Trn68Cao/6GrquafsA6g4QWm2
Xu/kAagSsWkQprpdJXpJodnZlMGKYnB+5psD4tFWJQ3GkvCr+WJuJMAqIqGBK6AY
Q9ANzTqXTDGA7s6AEAxVsi7w1mD53AfygHvxvgLA7EeD9RzVbPGqzVu+340CL/Uw
P921n5Lc7gdOg8cA4n938cbUYUAAPzSY8YLMz05MFuqV/Xyn7Ls6J2hLcI29WOKk
uxhQLhLTlIdrcKpuVEdlXaWwa75GtS/SPaUU7WLpXjl5r+zSASmufg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUbDOQS2HPG94xERT2u6lyjvcR5pUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ibp.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ibp.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ibp.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ibp.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Biophysics AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Biofyzikální ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Biophysics AS CR, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Biofyzikální ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ibp.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ibp.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ibt.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ibt.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Biotechnology CAS, v.v.i.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Biotechnologický ústav AV ČR, v.v.i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IBT AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance BTÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ibt.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ibt.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="63">https://gedeon.cas.cz/loga/logo-btu-44.png</mdui:Logo>
          <mdui:Logo height="366" width="524">https://gedeon.cas.cz/loga/logo-btu-366.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAPKHsso4A8D+6XjgvJQs+cFAO61hMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAN2lfsD9WZirHM2htr3ey+nTJ+CmMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANn8hH0rP1toNipGSDrI6cLOAfpVMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ibt.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ibt.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ibt.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ibt.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Biotechnology CAS</OrganizationName>
      <OrganizationName xml:lang="cs">Biotechnologický ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Biotechnology CAS, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Biotechnologický ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ibt.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ibt.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.icpf.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">icpf.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Chemical Process Fundamentals of the AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav chemických procesů AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider ICPF AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚCHP AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.icpf.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.icpf.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="44">https://idp.icpf.cas.cz/loga/logo-icpf-44.png</mdui:Logo>
          <mdui:Logo height="514" width="514">https://idp.icpf.cas.cz/loga/logo-icpf-514.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUA3pMETtq2bDrYs6HNgFk+L7pm+AwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUcscIKKi5q0Gj8p5UNzRB+ESIReMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUC0UmuReZLgHH1e3cszU4FcrJGAQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.icpf.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.icpf.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.icpf.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.icpf.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Chemical Process Fundamentals of the ASCR</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav chemických procesů AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Chemical Process Fundamentals of the ASCR</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav chemických procesů AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.icpf.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.icpf.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.iem.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">iem.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Experimental Medicine CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav experimentální medicíny AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IEM AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚEM AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.iem.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.iem.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="44">https://gedeon.cas.cz/loga/logo-iem-44.png</mdui:Logo>
          <mdui:Logo height="100" width="100">https://gedeon.cas.cz/loga/logo-iem-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAO+N7JalBC1OnO3gnBvLaSpAwhdOMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANu6bSFOgTbuBoEXcSyPZJlGYJRnMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAPpRpbqeqaT5zvQdCwbndgChnhO+MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.iem.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.iem.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.iem.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.iem.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IEM AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">ÚEM AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Experimental Medicine of the CAS</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav experimentální medicíny AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.iem.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.iem.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ig.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ig.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Geophysics of the CAS, v.v.i.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Geofyzikální ústav AV ČR, v.v.i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IG AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance GFÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ig.cas.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ig.cas.cz</mdui:InformationURL>
          <mdui:Logo height="44" width="30">https://gedeon.cas.cz/loga/logo-gfu-44.png</mdui:Logo>
          <mdui:Logo height="146" width="100">https://gedeon.cas.cz/loga/logo-gfu-146.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVANr1F5WWKu6MkZD2HYaqAH0Woc4kMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAN9CTQ1zDbyNoBLxlMrG/RK5Q9qYMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAJZkyt0MKDcZqHkS3a2i37IhmkodMA0GCSqGSIb3DQEB
CwUAMBgxFjAUBgNVBAMMDWlkcC5pZy5jYXMuY3owHhcNMTYxMDE0MTE0NjIzWhcN
MzYxMDE0MTE0NjIzWjAYMRYwFAYDVQQDDA1pZHAuaWcuY2FzLmN6MIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw031VGst65tCnSAvdfDclIIylzeJoAMf
DO8F3GDo2GzoMjMYuKPWpOyuI2A5LBaze3bop4oJVIATYy9Xvkv42KWRShrpkM2F
Ze6wO8wRrgkB2degEOxpmn4+8E93YE5OhC8IlFPDwRFyd+BFGjSnwUqIZEnEKk0b
tJEKkma1XVpZlhzcnOuagP0olMF8KdcWJ/0qXVI6CQnXjb6RGD57Qb5+YCkiYOat
3bARKDgIZpI9g3aekJ1uBHoVNoum23Fdd/56EF+l+atheNyr+fQ4QIrfsI+bIsQ/
4kfagyM32dqG3QClvb3kvmKHdN44SMIR9a34Ru6X5LNFT8ZRRTF9IwIDAQABo2Ew
XzAdBgNVHQ4EFgQUuuOinOrqhJN1xpsCk8epj5KxaOAwPgYDVR0RBDcwNYINaWRw
LmlnLmNhcy5jeoYkaHR0cHM6Ly9pZHAuaWcuY2FzLmN6L2lkcC9zaGliYm9sZXRo
MA0GCSqGSIb3DQEBCwUAA4IBAQBQEb87SuEW96mgwx+CczMBZUUJOF934+46Ptkj
65LdX/HLg+0HN4OKDwO05ptR2hUHe4EyrSARzeyRjFvvXwpXtTmanDl6NJdWW7Cj
0Pux2/KU6G36BHmNb83uLNRhuqsczYO5rWm3w+ttr2FjIiihWna0aItZHm25CPgA
uhCrQkI8TpJUPtFCHRfKuOHBNmbqPHF5laEbtMCsbx6ouOF53CPewMKj7Lr6Bj9M
t9kzm9s4u1wfLVJFCvL0QG91oo0UAJ0xJRbE1J/zRHlnZ5M8hw6BJNMNnMky9x2d
fJt4zNYTWwMgxeTPxJ5cHhrg4a4A5T7+E1cyY2AMZ+6CfFf2</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ig.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ig.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ig.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ig.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Geophysics of the CAS</OrganizationName>
      <OrganizationName xml:lang="cs">Geofyzikální ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Geophysics of the CAS, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Geofyzikální ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ig.cas.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ig.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ih.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">ih.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Hydrology of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Hydrologický ústav AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IH employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance HLÚ</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ih.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ih.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="44">https://idp.ih.cas.cz/loga/logoih44.png</mdui:Logo>
          <mdui:Logo height="477" width="530">https://idp.ih.cas.cz/loga/logoih530.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKjCCApKgAwIBAgIUZfZHKgNJoRF8MFPIJVBwKfLytK0wDQYJKoZIhvcNAQELBQAwGDEWMBQG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKjCCApKgAwIBAgIUXJfKDW+hmKyzcJBHEqsQQSxxC0MwDQYJKoZIhvcNAQELBQAwGDEWMBQG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKjCCApKgAwIBAgIULN6jbu+dvAsmabIhf70dcFp/GEYwDQYJKoZIhvcNAQELBQAwGDEWMBQG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ih.cas.cz/idp/profile/SAML2/SOAP/Redirect/SLO"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ih.cas.cz/idp/profile/SAML2/POST/SLO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ih.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ih.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ih.cas.cz/idp/profile/SAML2/POST/SSO"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Hydrology of the Czech Academy of Sciences</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Hydrologický ústav AV ČR, v. v. i.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Hydrology of the Czech Academy of Sciences</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Hydrologický ústav AV ČR, v. v. i.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ih.cas.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.ih.cas.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Vaníček</md:SurName>
      <md:EmailAddress>mailto:vanicekp@utia.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.iic.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">iic.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Inorganic chemistry of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav anorganické chemie AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IIC AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance UACH AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.iic.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.iic.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="64">https://gedeon.cas.cz/loga/logo-iic-44.png</mdui:Logo>
          <mdui:Logo height="700" width="1024">https://gedeon.cas.cz/loga/logo-iic-700.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIURTndhRG1dpHDKtjhJ2TOJBgRH/QwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUCVmtfMDSW5ByfL6HV/37wYfvU7wwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIHQSZavvhDj6U8aT7dcU1Ede3tJMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.iic.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.iic.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.iic.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.iic.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IIC AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">UACH AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Inorganic chemistry of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav anorganické chemie AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.iic.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.iic.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ilaw.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ilaw.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of State and Law of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav státu a práva AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider ILAW AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚSP AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ilaw.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ilaw.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="120">https://gedeon.cas.cz/loga/logo-usp-44.png</mdui:Logo>
          <mdui:Logo height="189" width="516">https://gedeon.cas.cz/loga/logo-usp-189.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUGdS2uL0evoTbFKVIhj6D/MkkVJgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUb6WQT/v6BDLA/JpIGQhH5e7Vsc0wDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAwwPaWRwLmlsYXcuY2FzLmN6MB4XDTIwMTIwMjE1Mjk1NFoX
DTQwMTIwMjE1Mjk1NFowGjEYMBYGA1UEAwwPaWRwLmlsYXcuY2FzLmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAij5p59cL9QUTC1XCWAV4Pb9rveDx
rcVn4Xc7ICbkANzYixmB3dtKmOlsYa2ip2eMnKWNNIKWaG1jSGTo1nj4Q4AGIqnd
oOm9van+prbWpjMF4EKH6+osoJxqdzlsLo3Z5JK0AwwfZg1bi6bLldW1G2gMsK2b
h8GV59zkAvnnR8xErn+jfp6vpwe2aNlBc8WYenYW7FOoLmoSOk1LmW16obvf8qD5
DxPBJ0ve+K6OA8kcDONEiBkYmPw5QJPD9aMP2Qgqu+R4s9HM97AsfcdeVxJmR1zP
PViufdJ9deW50jL8OoM4YVUnitPhRF6xZVueSh6F3S2I2IjuZLyV9V8SrIj6ye9E
DIWdvd4eRyHcVy91XvLGErsEGp2CxbVQ+KeHr1G9Ebyl+xe1WPWNgH0D1E2n3gBU
mWJklbUXfFj+x1kE14Rbe2Lm33at9ZE5Q7ktqE3S++hJsMVenBnPd/ZkWYgGciiJ
jQDXV5FQNk89sNBowG4x9T608fUIGXecvIqdAgMBAAGjZTBjMB0GA1UdDgQWBBQ+
KZeCRVcZB/qjILVj4bcmdBecDDBCBgNVHREEOzA5gg9pZHAuaWxhdy5jYXMuY3qG
Jmh0dHBzOi8vaWRwLmlsYXcuY2FzLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBgQAz06epPcz7/55m4DlD0fzF9nwmKyEzvA0BOFJmmgcJ22PuPwcy
OwwSe+WzWNR7M0x4NHlylH435h/DA7KillZR6bDp+JiDVW2FYe01vY6CESlE6/C+
wH+ZNIFLKFpbvbmhNtapV077KukqPOCqbJvkT4qFVWmrSFEe38ogXSx2ghdY0kGH
c9tG4gKnG8FCMquplwdqgnrYxyjZ/ptisLoW0BG8x27+8MYgTbJUBOtP5fKTP1gT
q2XiwOFWwWhEjk42GgLdgdjEfPYGG1IbxANN3iuMVdT8dZeODOeGFEIEAna4jwa7
Tsmz3Bd2dfSZp/SsoDqoaUeDHCMyx5oWmhp6u3I3CQx8TSNhQ5HlP1xBEP9bh1MG
aGBdereqUpuIOs4rQg7BXn7MEZFHoZ7w1wNYXSt74pwSSAph2xBNsRoasdUxAXld
3uwFO/AA3tUcnlS9Hh3mTolA7BpBLd91s5pJhct73ALfEhm4dc5jpGBqvfpPF8vP
i9YgMB40RTY/tXM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUG+Vn9SnVcXanuhgjuwEewwVOe58wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ilaw.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ilaw.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ilaw.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ilaw.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">ILAW</OrganizationName>
      <OrganizationName xml:lang="cs">ÚSP AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of State and Law of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav státu a práva AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.ilaw.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.ilaw.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.imc.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">imc.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Macromolecular Chemistry CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav makromolekulární chemie AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Institute of Macromolecular Chemistry CAS Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro ÚMCH AV ČR.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.imc.cas.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.imc.cas.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="113" width="100">https://gedeon.cas.cz/loga/logo-imc-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIURirHAe9fyZeJbQACEHzd1QgJRbcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAOeSkVESyziOEdK0SUiyhCSk/nigMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAIn+Y5wNDhOFSckKL/ixvNpamd4kMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.imc.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.imc.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.imc.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.imc.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Macromolecular Chemistry CAS</OrganizationName>
      <OrganizationName xml:lang="cs">ÚMCH AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Macromolecular Chemistry of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav makromolekulární chemie AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.imc.cas.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.imc.cas.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.img.cas.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
          <saml:AttributeValue>https://refeds.org/sirtfi2</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">img.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Molecular Genetics of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav molekulární genetiky AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity provider for IMG employees</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro zaměstnance ÚMG AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.img.cas.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.img.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="104">https://idp.img.cas.cz/images/img_logo_small.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAPH1jffpoY1P09PSPn2C5FEqRR0aMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5pbWcuY2FzLmN6MB4XDTE2MDUwMzA5NDg0MloX
DTM2MDUwMzA5NDg0MlowGTEXMBUGA1UEAwwOaWRwLmltZy5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDb6SeFAqC2Md+NNMRmby1KHpMEM6l+
YEwSb3EoK/SzHhXvBJMeGRGqRBJ2DbPuMzG/7z2aThdxGPFSpmi1GVShz1eS8iFU
8EOeDm/LjcUGNuEPKBVnJli8rByzt/WXB/Diu1Otkucond+FjTbVP7M0qd+4nECD
i5NLDRl6HccksU2x8NL9R3km/ot/vI6c55OFUJHkm6TUhj6/coNJiHHccKrI5SwA
uaROLSU73kAIYleS9/XiliRWwUHiHJXR1kHtU1Tup2i3VBs20Mflcz67bnZkoznb
m7Syt+QPlUNEqlJEbTsp29xM/W93DfTZ5Ucm7fiWu9QeAu9oN8l4M8oLAgMBAAGj
YzBhMB0GA1UdDgQWBBRjsLlNRicstFKjWlcteE9Xj6XvSTBABgNVHREEOTA3gg5p
ZHAuaW1nLmNhcy5jeoYlaHR0cHM6Ly9pZHAuaW1nLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAIlwjoPX/D4Xry/0oNXUEJIylqfPIUfTz
EqFbEfwp3zH03lZrJ/dscjTkS5h921f6dTUh2jLjx6TJORSHtCv+XY3SNDYNlkY/
pGVOF0uL/IMiiqcnO8SLyPnlu1vd+RPtrfvFXof9cRmT+jkn0OUyfxrBABMtDz/q
tOMzFdtQpHjcvBg4E+boy9D2ouYtEMriUUkXwA8/6xo/tCxZ2yrrRARKJ6k1XuYQ
OjUAFH7HUxuAasYo2VtlT0zFzN9v7+js0TRzIYFtr96d9O/TxiMbmPymwMMw3lcn
s3BGFyiU3PuUOF/0edoSgNgbTYAfKlr6zMkfRwawvwug2ZLplWcCJw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIOCNOvl2AO6vqxEbpoyEwFrR9RfMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5pbWcuY2FzLmN6MB4XDTE2MDUwMzA5NDg0MloX
DTM2MDUwMzA5NDg0MlowGTEXMBUGA1UEAwwOaWRwLmltZy5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCmdpSrqFw4iW3M6Wm7SzmSGj/0P0p+
RbMNJhuJZuwH3GahCD9O2AX9nvo8DMxrQsWAacV74SRt47XABBa1ouI5nFmN/sWN
7XA3cSRk9QFfKfKPnHJD/7ULulOdmHqbrjv++YpSO51ShnjofEu9o1v+FhX9lE3w
HE7QQZhd1ZxLqSVV1urlbmtjEeo2essDbd6BZWEgsScSguGxRqQLBtY4aQPPrNtC
hcIF9yMLvJfZvdI++DFLf1lOEZ/55wi8obaIWPZexnO1l3xaaw1S+Oqoveon88+j
PVn1gjOR4Ygbjk47hmhsA5XWP6G7LLkRYBAAlEbTcmVNyg2wSP2ksPqPAgMBAAGj
YzBhMB0GA1UdDgQWBBSfccIQC2plGjGzNYowaMIUg+yrojBABgNVHREEOTA3gg5p
ZHAuaW1nLmNhcy5jeoYlaHR0cHM6Ly9pZHAuaW1nLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAJXrsY+vBVBj9Zh+m81Cbqb+0h0NZcYCE
YslVQtxylRadPXXUZoaymaA4qfIQ975hbGAuL73jbfz9D+i1r7P9gMMDuxeCyVqb
FewfvPl3+F0aY6v96dnz52s+777M2UbdiVNvnEIFvMQpmcXQA6Ya4quKdk4pcyEK
n0YUu/NzcRU+OjQTQmJ5+tVfVPaW2+UColH2n/iyjfLj15FUUK/CxPiBXwlarpVp
LXu3SILGjAvAWaxNE5BbdkeSGwLjgyBnRO2U9m2T4hBW3AwIWwivK00QsnxRJc8D
RPOCRujFQFIDaowMdBOOlBmUKqKYAvxj6KaXlX+Bkh4rglUd6DYh0Q==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAO8xd776uz+lDpWqdZ9Gm3yEmHLSMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.img.cas.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.img.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.img.cas.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.img.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.img.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.img.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">img.cas.cz</shibmd:Scope>
        <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
          <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
        </eduidmd:RepublishRequest>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAPH1jffpoY1P09PSPn2C5FEqRR0aMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIOCNOvl2AO6vqxEbpoyEwFrR9RfMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAO8xd776uz+lDpWqdZ9Gm3yEmHLSMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.img.cas.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IMG</OrganizationName>
      <OrganizationName xml:lang="cs">ÚMG</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Molecular Genetics of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav molekulární genetiky AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.img.cas.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.img.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Novotny</SurName>
      <EmailAddress>mailto:michal.novotny@img.cas.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Petr</GivenName>
      <SurName>Divina</SurName>
      <EmailAddress>mailto:petr.divina@img.cas.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Novotny</SurName>
      <EmailAddress>mailto:michal.novotny@img.cas.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Zacek</SurName>
      <EmailAddress>mailto:michal.zacek@img.cas.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jiri</GivenName>
      <SurName>Ruzicka</SurName>
      <EmailAddress>mailto:jiri.ruzicka@img.cas.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Divina</SurName>
      <EmailAddress>mailto:petr.divina@img.cas.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>IMG IT Team</GivenName>
      <EmailAddress>mailto:report@img.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ipm.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ipm.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Physics of Materials of the AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav fyziky materiálů AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IPM AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚFM AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ipm.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ipm.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="68">https://idp.ipm.cas.cz/loga/logo-ipm-44.png</mdui:Logo>
          <mdui:Logo height="129" width="200">https://idp.ipm.cas.cz/loga/logo-ipm-129.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAI5Z2sXLvxeRx6G2UOgpSbyr71g7MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUUB+WlLyDz8idfTrBkvoA/0rcvjgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUMMz8R/YZ0FeWZHfI6UNAihk0UXMwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLmlwbS5jYXMuY3owHhcNMTkwMjI1MTg0MTMwWhcN
MzkwMjI1MTg0MTMwWjAZMRcwFQYDVQQDDA5pZHAuaXBtLmNhcy5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBAKa81ry0dhn++hfcSX5COh/1yZ+E65I0
sWr5M4z4L34RZTl/4Wa9TmwrL1L3CKeIhuQm1ZaZ4vVimzeKNbQ8YrgGqIyjBk2+
xG4Pa4+riOKE0vYhQNRgzh2xIS+x49z6ESRS1Pz6mUCYuOdq9x0cr46CML8UAYGp
RWolgsiMzgDOTx6oyxVnLW2LrZmqU5KToHHdIvUaoQORs1A7gWb/B/0LNTyM4V6w
lAsqEOAHIl7aVKUsp9BpYFChrg2YnUQ0t0xQbd1Zy6iwDtDEkyAX5GqpWhidD+u6
5EZndoyrryEMoterkIiqZu+zkMvlWMs1G5bJ8PfJqmp+HGg9lsgNwjkjSpKb+5JL
N6YoAyhAYVVFtpme84ZShuHF40moaLotB+Wd2tFfgqCwLfoWWsQPx+uq5CL3GN6Z
rOH1AMiMJt7sY9w7Oj/TjbLQGwnCyaEApXvAgdJeO0LFQS5zvkEiiwjWovnQ5FI7
n/zxxfjJgA9poLQ9Sox6qDA+yq2O+mHlTQIDAQABo2MwYTAdBgNVHQ4EFgQUKkZl
NneBh29Hw9WZD+ViT1Gm8P0wQAYDVR0RBDkwN4IOaWRwLmlwbS5jYXMuY3qGJWh0
dHBzOi8vaWRwLmlwbS5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL
BQADggGBACG0c5ThAqZTmp8MM4VluSPRyYbmTw30oYUJIAK+EC/8RHqkb62gQ6Jo
OcrK28v9Tbv2oxsO2ZajB9TonFb0pU7R5etAQ3Vms0yeIUY47DjEeL3clc60PuYi
pNt1iACKYh3RRclYY5xbvK34wUtHgu6jhgU35FJzKooCDe+NRamG9jLoNPD+rXb5
olWiT47BE40huTyQxj+ZzRMJ+o77b5dO/bXk0J8K6WLjrexaOUEy2dwkg0ZRkFBF
FDQJzqICNUyEgiYTiuc+u6m0fC/k8mI4kIItlfNIF6Sy3RBHetP9pkUCB8zqRXLu
rRq30peHy1mOeDqUgvXi7xATALr73qAY0TWunE+/thjERKCjRPpseJffJnszQ9te
elTFXdf4bDSczRerC+3BkHdfnl9UN0C2xO6rEAcNB1sl32lyteimfdp4dqaAwSo8
utA7LR9WtUoJ3aLQl2nssT2/TiadCO6PONiLp9J2CexdTBjqTw/3cKIHdDIrH0yN
zI+BVvdlQQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ipm.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ipm.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ipm.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ipm.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Physics of Materials</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav fyziky materiálů Akademie věd České republiky</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Physics of Materials of the Academy of Sciences of the Czech Republic, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav fyziky materiálů Akademie věd České republiky, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ipm.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ipm.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ipp.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ipp.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Plasma Physics AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav fyziky plazmatu AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IPP AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚFP AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ipp.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ipp.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="91">https://gedeon.cas.cz/loga/logo-ipp-44.png</mdui:Logo>
          <mdui:Logo height="136" width="282">https://gedeon.cas.cz/loga/logo-ipp-136.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUFJV5ndrplb8CMlqsolLU+ZWz/iYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUfzPVHf1Cp55nDUrfahFCH/+UgzYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAKIg6IV0PorBMpU+ilbnwbhy8KwJMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ipp.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ipp.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ipp.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ipp.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Plasma Physics</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav fyziky plazmatu AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Plasma Physics AS CR, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav fyziky plazmatu AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ipp.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ipp.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.isibrno.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">isibrno.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Scientific Instruments of the ASCR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav přístrojové techniky AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider ISI ASCR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚPT AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.isibrno.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.isibrno.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="54">https://gedeon.cas.cz/loga/logo-upt-44.png</mdui:Logo>
          <mdui:Logo height="90" width="110">https://gedeon.cas.cz/loga/logo-upt-90.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUWPg9V6mlGwU//CvoNOuoAMa7uCgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNDCCAhygAwIBAgIVAMR78bPwPl+VO0UMzOtmGpQFKO2JMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNDCCAhygAwIBAgIVAPTQ0XQXRxxIrQewbPzaywIUhQ3UMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.isibrno.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.isibrno.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.isibrno.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.isibrno.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Scientific Instruments of the ASCR</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav přístrojové techniky AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Scientific Instruments of the ASCR, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav přístrojové techniky AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.isibrno.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.isibrno.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.it.cas.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">it.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Thermomechanics of the CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav termomechaniky AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for Institute of Thermomechanics of the CAS.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Ústavu termomechaniky AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.it.cas.cz/en/homepage-en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.it.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="287" width="1140">https://idp.it.cas.cz/idp/images/idp.it.cas.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAJOmUmeVV7zPxfjQRgBA6Or6E54TMA0GCSqGSIb3DQEB CwUAMBgxFjAUBgNVBAMMDWlkcC5pdC5jYXMuY3owHhcNMjUwMjI3MTAzOTMyWhcN NDUwMjI3MTAzOTMyWjAYMRYwFAYDVQQDDA1pZHAuaXQuY2FzLmN6MIIBojANBgkq hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAlCXtf4qalPZ1DkfKnVVEZwCuvV/FOU00 m5CCQ3M77GPCYtnQs3lFG8fJ0B7poepROpvMZ9dxjAnFT4bVYrG7INmtGwEujiC1 sU7lP0rLb2b55skiX7t7cjg2rY8lmDZE4cSEknmvBp7I6lQiWySTLIVjnLq/oM1h +tI8vv1UTWgdaXRHf6uSHeg7isTbBNF1mkFW9Ag55jPul6kIsX81TmqB9fBzoOHS C8R5xRxYU+5v6e/wywh8MThw5BznG/yrltskuVZqPMM27Fg+5/H6segv4NSjwcLG LNX4D2eVr8rLhDGkhFq41y0TfHcE3USdreNUA1JrXRgI95708AHCF+GAKFtkypwm jgEUB13OYXIEfvdJqcvL5r1GO/9kZqDPSLDLkQNKhubkCGkP9ph0UegOSaTDq2jF p1AS0qtE5KbEQ2YVIWd0UBeeNqyAXDPtlNGPrmvugyvHywfP8S8ozajyVVZgg+Sr 2pOB6lNlqN2nGnPbYRFm19DM+sAkC5nFAgMBAAGjYTBfMB0GA1UdDgQWBBSKQNLS gQJqVQYcDIEVNvT9C3I6XTA+BgNVHREENzA1gg1pZHAuaXQuY2FzLmN6hiRodHRw czovL2lkcC5pdC5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD ggGBAGE4R6DvU4qarDVwHl1qtK64F5vsuwI5S7p9RObMrMHANoO0gy1W+zRTv+Ga iQOXPMRYfAQtXNp+4ntsNOjjApxMJSwAE/VaqEXNrKUE8/0+XunWy5CitZPt6cTw MvCIAceXMgS9tYATA50HooR33JfMBGxnZFgYrJpLYFVtCiWIuddJuV2OgDbPQ+q1 gJATwG0hOry3bx5WHhBrBBMTccTu52ZENgYvajTL1NyJ2qEyXloZUK3mYGmy6I7X u3YUcvNeMTnTShVGlSoaI/rxBDofyl8RSWbbc5fhQXyxna4Bv+98MobNG6hViNvw CKRsWS231O9n0gz3MVRQ2i1mFpdLg/LUThNxg4/y8P0gCuT8EOPiiuGls+T2vQry uv0MHXQs/smNIjlipcPEXo2ULWqkLt0jOphMyS8BKdEHfHiyzjXSU/uFXnQi6Vas 0nDzye3Gyh52GtcB1W0xnpAkyRu4Y2GDslvo2c3pORCQqVigwQdcFHWOk6hOJzZ6 DCWXyA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAKgWI/vaPHugynvqvyVRmLnYUhf+MA0GCSqGSIb3DQEB CwUAMBgxFjAUBgNVBAMMDWlkcC5pdC5jYXMuY3owHhcNMjUwMjI3MTAzOTMzWhcN NDUwMjI3MTAzOTMzWjAYMRYwFAYDVQQDDA1pZHAuaXQuY2FzLmN6MIIBojANBgkq hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA4IGkbEAZ4AvQPReTN9ufBCMoGdRQEqUC k8IALXCwBTe/1OoMQljWmcDl4g25FoEBIzwIePLZMNsMF8mm3CMT6j6oOoCy2Ltz n5Yhd62gLJWpXJiAINhyByMhwwx8AtR1BibZqlmVh+wdg4Q3gqsJPGUyoo4s4n6k jMvpuMWLXQKARwa93uD88/TsSqhrnfoAaHPus2ayZDtQuu4Cp6iZnE3AlIcoC+RW L3IA5ael4VqQ/poZSQDOvdN7nwkR6XtbM5vvrYdQAFO/wIZGUJWN01lLBULYsN9R uV5wzjqyo/iuSFdRFpZadjJqewXA46pkpZi9Joza/OdQLlNdqdEkULi35p3NM8Tq 9k8G6ZS0VXGpj4Iit8RPX9O0F5navJ8a+NA0Fawyw4bYMY6Z9Bjfq2c/sZHMkPCv lI8OG2IZ8FwTLnQMzzzYkeUN3fq8Oxt8cNnh6pDiE0+pyvyADbNdsDSZJpTJcePA s7jszbRev07SuD+gTuOQfngKMPy1KSarAgMBAAGjYTBfMB0GA1UdDgQWBBRaTmXF ImNzcTPOl4N44noS0OUrqjA+BgNVHREENzA1gg1pZHAuaXQuY2FzLmN6hiRodHRw czovL2lkcC5pdC5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD ggGBANoRm/ChgAQLAgWt2mP/Ke1rlj5XcQJKle96H8DvHZhonuxUJ378gYcB7Wps DGDbO+3mh/VZb3j69wwzMFYtvXpI0SCsDM0pjR9YxurSSbj1JnmF+A38M2zk3PUa QZDsuvZl9L6xligeehbkbHlwNx2B+vqxaTpqYJ/mKteNO8x+elw77zBqYW2NtdhW Un+toV6NAuulZ3MBydeloEpVjPc6m5I1Om9pTjaYwHAEND+ndNP/e8NL7U1lSlW9 i7M21Dg6oFGIy5F4EZs8mSTWbiaPZ4+dUc7PEhbKBPE0OLj8dEyfzxUmZXcu0XPm MtdLoqxrbOHgskhQvR00fb/scqn1iOIURYtv+x5IduNmERVKh1Lkhxt2A/gYqW5t oiSBUApwWsUp355SqV6Ej4Z0jR1I1W4AECHEVVKhxcLGjfRdX+jNciS2PGOgBt6x wgvNnuJqSC8qWX6oM34SKYGTupoCgSVUpK3m+X2esCELIGV52A+yYt55u63/BGfT nN7C3Q==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.it.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.it.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.it.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Thermomechanics of the CAS</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav termomechaniky AV ČR, v. v. i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Thermomechanics of the CAS</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav termomechaniky AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.it.cas.cz/en/homepage-en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.it.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.itam.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">itam.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Theoretical and Applied Mechanics AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav teoretické a aplikované mechaniky AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider ITAM AS CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚTAM AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.itam.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.itam.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="42">https://gedeon.cas.cz/loga/logo-itam-44.png</mdui:Logo>
          <mdui:Logo height="1095" width="1044">https://gedeon.cas.cz/loga/logo-itam-1095.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAI0UKnA4+P8sYwKi6vY4Uf/jSAT4MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUTsJG7DqoSro/8prgAfiwJPZtR1IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAJCme1C3ge5Q6Y4psEopzxLrK5TaMA0GCSqGSIb3DQEB
CwUAMBoxGDAWBgNVBAMMD2lkcC5pdGFtLmNhcy5jejAeFw0xNjExMDgwNzE4MjVa
Fw0zNjExMDgwNzE4MjVaMBoxGDAWBgNVBAMMD2lkcC5pdGFtLmNhcy5jejCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJEnPF4eCaLxyXyzLeUbzKtFutMe
PxlztNcAEJ2LGGoJ16YEViXMa8nGvF92D/cFMwdQtG0cfzzLt93PsEqCfFb6pax9
c4cjRX0tiQguB75BfFUorDnX8okeXqNtu0TAuQXx9d7MT8iK4eln+TO8q9YkNSr+
UIUxiomxwvNALOFGPLz06VXEM4mConqsAhEPeeNiyvocB3/I3QZNMdlmocN/YH/B
KVLT1AjgKMvGax0LMwLDoRA7Ljsdwz6e6h87eQyca3DjTEY9RfozGrMZeXLn4j5m
fkkHsg7i/p3vaRmh4fgeZT4+yVXV1nw+Lp8vMn1vBD96FPFDoFkfIVFFhTkCAwEA
AaNlMGMwHQYDVR0OBBYEFC14YaL3ewGKr8EvGg4+ct7KKxpzMEIGA1UdEQQ7MDmC
D2lkcC5pdGFtLmNhcy5jeoYmaHR0cHM6Ly9pZHAuaXRhbS5jYXMuY3ovaWRwL3No
aWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAIlTXui6sdcYZY6g+lTmBQdIbv4l
xffQ1nyhzEF1HInfh2DVxIyj36g7J6hImCZ/HhCkhE/WHycyVaW5CBoiOIiIXE++
SSG5qo/2jwXp8XrY1kByeqfV1yRcPaJmtd4R+DxZJgARTnl8vSJy3NEQXvpFhI9A
/7yOKpMJN7pNS9Hc336DmP5v10ErLMFpkN2+mRhTwDrVsGMunQ1qaZYfmSG6QICH
ct+e6X3gffctJRWSeUgQYVpx8ohfgmh9ikErNri1fDpfcrC4WnGeArh3/DqUNUDa
FNxNpfIz9AgLB5P8BHlFGmHiF29sDbWkzpINTaFLh9LlW45tsJ8AsD9iVjc=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.itam.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.itam.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.itam.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.itam.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Theoretical and Applied Mechanics AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav teoretické a aplikované mechaniky AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Theoretical and Applied Mechanics AS CR, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav teoretické a aplikované mechaniky AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.itam.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.itam.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ivb.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ivb.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Vertebrate Biology AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav biologie obratlovců AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IVB AS CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚBO AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ivb.cz/index_en.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ivb.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="40">https://gedeon.cas.cz/loga/logo-ivb-44.png</mdui:Logo>
          <mdui:Logo height="733" width="674">https://gedeon.cas.cz/loga/logo-ivb-733.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAJezUF8XVH6kLaugDDxrF0qClzq6MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUedrgJxX82meck04AJ1fz6Gu2hIYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUOBkxHlusfN7L8fuzoAk9rFUZ7YwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ivb.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ivb.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ivb.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ivb.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Vertebrate Biology AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav biologie obratlovců AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Vertebrate Biology AS CR, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav biologie obratlovců AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ivb.cz/index_en.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ivb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.jh-inst.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">jh-inst.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">J. Heyrovský Institute of Physical Chemistry of the CAS, v.v.i</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav fyzikální chemie J. Heyrovského AV ČR, v.v.i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider ÚFCH JH AV ČR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚFCH JH AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.jh-inst.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.jh-inst.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="53">https://idp.jh-inst.cas.cz/loga/jh-inst-44.png</mdui:Logo>
          <mdui:Logo height="329" width="400">https://idp.jh-inst.cas.cz/loga/jh-inst-329.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNDCCAhygAwIBAgIVAMOHHy57LSPLFFWWYdVPd6rbgDHxMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUVU/KRI38bCvDN24bF0AWK9hzKKswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUPLrIhXwwsBDzmJJZR8fvBb20O7wwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.jh-inst.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.jh-inst.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.jh-inst.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.jh-inst.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">ÚFCH JH AV ČR</OrganizationName>
      <OrganizationName xml:lang="cs">ÚFCH JH AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">J. Heyrovský Institute of Physical Chemistry of the CAS, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav fyzikální chemie J. Heyrovského AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.jh-inst.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.jh-inst.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.kav.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">kav.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Akademie věd České republiky</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for CAS employees</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.kav.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.kav.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="61">https://gedeon.cas.cz/loga/logo-av-44.png</mdui:Logo>
          <mdui:Logo height="1063" width="1476">https://gedeon.cas.cz/loga/logo-av-1063.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUY4VMYBFalA/AOtO16LRL+U+SEukwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVALBj5L86UWvpzahXckU76ivHpP7ZMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAKFt5aGCXFZH9Gl0xdPujxn5T3OrMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kav.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.kav.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.kav.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.kav.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Czech Academy of Sciences</OrganizationName>
      <OrganizationName xml:lang="cs">Akademie věd České republiky</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Akademie věd České republiky</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.kav.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.kav.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.knihovna-uo.cz/saml2/idp/metadata.php">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-uo.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Ústí nad Orlicí</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Ústí nad Orlicí</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Ústí nad Orlicí</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Ústí nad Orlicí</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-uo.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-uo.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="217">https://uo.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uo.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uo.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uo.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uo.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Ústí nad Orlicí</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Ústí nad Orlicí</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Ústí nad Orlicí</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Ústí nad Orlicí</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-uo.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-uo.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.kr-zlinsky.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">kr-zlinsky.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Zlin region</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Zlínský kraj</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Zlin region employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Zlínského kraje.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kr-zlinsky.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kr-zlinsky.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://idp.kr-zlinsky.cz/img/logo-40.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://idp.kr-zlinsky.cz/img/logo-200.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://idp.kr-zlinsky.cz/img/logo-400.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAMmmJ/rY78WPVBYFb+ZbnbQkI5tpMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVALIBsLqN9VhmeoJew1oxuwcjwHUjMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUcHDru7hObUy5lujaJQVYCQHTaCwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kr-zlinsky.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.kr-zlinsky.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.kr-zlinsky.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.kr-zlinsky.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">kr-zlinsky.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAMmmJ/rY78WPVBYFb+ZbnbQkI5tpMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVALIBsLqN9VhmeoJew1oxuwcjwHUjMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUcHDru7hObUy5lujaJQVYCQHTaCwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kr-zlinsky.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Zlin region</OrganizationName>
      <OrganizationName xml:lang="cs">Zlínský kraj</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Zlin region</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Zlínský kraj</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.kr-zlinsky.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.kr-zlinsky.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Tomáš</GivenName>
      <SurName>Zimáček</SurName>
      <EmailAddress>mailto:tomas.zimacek@kr-zlinsky.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jaroslav</GivenName>
      <SurName>Šena</SurName>
      <EmailAddress>mailto:jaroslav.sena@kr-zlinsky.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.lib.cas.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">lib.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Academy of Sciences Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for registered readers the Academy of Sciences Library</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro registrované čtenáře Knihovny AV ČR, v. v. i.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.lib.cas.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.lib.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="246" width="160">https://idp.lib.cas.cz/logo_knav.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUWwKZZ0E552b2mC9ct8y4JfVUQt0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAOt2TAwKAFH0CzfbqW2h8ur+W6pdMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5saWIuY2FzLmN6MB4XDTIyMDMzMTEzMjcyNVoX
DTQyMDMzMTEzMjcyNVowGTEXMBUGA1UEAwwOaWRwLmxpYi5jYXMuY3owggGiMA0G
CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCFLzJ8rp1aSZSrChEfe5ILla223UUS
NbSLf0bHRS5AGwMFbb22qWYvOgSXIlG3bq6sXomVDTv0aczUK6aZpGtjsa6t+WVD
0BvFqT/GzBkbvcgMjtnC79Wi1eGpeqSGGFCp4WWLgX12tL2xLLWsN3/p9VAebwLu
SWti77nQjPxNRgG/JyImybcYEUj8fMQSS+1iCV99ljGkRozhXmZz1xJtx8uT/dwp
M/CqXlKSISfsnzgWNN6If+bmg29nizgX16qKEChJF7n7rKG3u5Uh7Ao1+aauIffp
vviIY3hUx8jJTNdBDZPHzX7D1dLbsyNpn3sXessIhSV12Dp6wlRjDPzg6F69+GBu
LMjpiiXZotkxY9bnx/I1+JWhgPFzoDqiR2wlvJlQiIqLd1mJdxJJhUTYmKv4F9ov
g9A7uVK9lBCJ0u745Df0kwX9RkVtnEEwVKlYYjT/32v005cOcEcAvTOFXgzPaamH
y+bwry4A8OKyKuy598CdW9b2vPmOIXGBzAMCAwEAAaNjMGEwHQYDVR0OBBYEFMDq
mGED0RbXYwlVZ0PIa7dD0cHwMEAGA1UdEQQ5MDeCDmlkcC5saWIuY2FzLmN6hiVo
dHRwczovL2lkcC5saWIuY2FzLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB
CwUAA4IBgQBW82YnHqeV61c00rn/vPHLniIy7aUqoy7+gYXJOwc1eAOm2rRbJ0Q/
Hkqd4LrA0qnWkLpIHQxGJD4Tv2e6LMm+1G1VQubplB5uEszM6x+gC6JdbgIWbKiB
cX9H+hY9xRO1beYqxQCIn+ijFIN8Rpc7NhSttEgJxa7bsIdNEed30pcSfALFgARD
xZhxrrjo9z8QJreaEkKr7LvvO4cqWZXkffQL3cq02QTKQP5cyAv0UiK7po/aW2iK
mEKi3X1ZUZOpy9pdu2a0bedebxaG/oFaNAhe5uV2jN4G4/CutcXovFHJBM3WNiHj
VRP9Da0RKIjaYeR4tFZPg5Ny/K7Sn23nWWV3c7dV0JrSfpHFnxrZFp3s2i3K5HCm
IDwCj9dT5G7cdXtFCTo3ja4AH1Rm7weNzpHJW0XT5LlX+20LGQ1Xw2+/bDSYAgO9
CFsYG3qgfSoZi6hYtRx+8n+kJUln9odIN8oOVdBciSs/nD0xi6gn6Dw3FPq3chrs
ifVhpRbX0ns=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVANWNifIzDR91ZKG5Jua8Qvy7cNhPMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.lib.cas.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.lib.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.lib.cas.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.lib.cas.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.lib.cas.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.lib.cas.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.lib.cas.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.lib.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.lib.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.lib.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">lib.cas.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUWwKZZ0E552b2mC9ct8y4JfVUQt0wDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLmxpYi5jYXMuY3owHhcNMjIwMzMxMTMyNzQ3WhcN
NDIwMzMxMTMyNzQ3WjAZMRcwFQYDVQQDDA5pZHAubGliLmNhcy5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBAI1WzHJSSlH52A7bnmCAfc6v+WUw7gjd
D4siW85yv7Yzs4NtHnZBHNNYhq3HYv5K6KR70g8H+BlV2zF1awUQHe2sF6SfOJ2S
Xl6tGJdOkQIPWSvTVbtWwnm3Xw1QcVhcxnPNro4u3DUllNQN1xlNvCy0M96QgOhQ
q2ydy4JN2P0x6L5NOLT79dzFumLN9J3jblymocZS5tqpQJs+VAEim8udBYJJnGJR
vbcOIh5iRBPuJixiD3f/oKL1hpNuyLD2yBE2Paw+M8/y+ekHtyTSfHV4ZuccAizM
WfqLXPNybQTHp02Ix7hvrs4nvBqrCrTQCrYLqa43CaOt/Vu1sdZX31R4NnkuFmNf
hecm2jgaVoLUQGYrSzqGAHAPdd159seNqM97drcUCLgmILZhiVXsKKrV6YlejRSU
/LSM2OJf71i0D8xzuGrl+Bz4thTyslQ+XUzy6Vt4LYMC+pFHydm6mnj6w39WeW3n
KkSXZr/lEl2tw1Eo5uafPkVi+boKQG7fbQIDAQABo2MwYTAdBgNVHQ4EFgQUbZTf
t5Zrqm5w0rHFHygdLaSE5IAwQAYDVR0RBDkwN4IOaWRwLmxpYi5jYXMuY3qGJWh0
dHBzOi8vaWRwLmxpYi5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL
BQADggGBAEaamescbaHtiPY6Qq37d9zAGxO+qHut/SKULZVgU6xUeWivcXJPvV8e
8uDF7vvO+rPwk5+TCkLm+aXYQSIvusXOn0HDrsBjMiPFIq4vsMj3onPQQpo/raUJ
VQsIQsRrIC7T+T2glYMhGrbkwImnJp05hL+5BIQLxpuGjvau1MBtL3d39IAch01J
AshAEPyB3/Vo8tbp/otxPvES7iWsq+lt4KmPA5dVke5guWwhnN6pZGSBFfFXUGi5
Xb4wLACZMRM9ELOAr7PNnHpfzsgTS8js+Xba60+3dFQv+Nl+68FNZYdnenxt5cWl
lIDjucXIVMwNsM4yDynMqLLz2qEF5+WDc7tQrVmRUYzOvHaothsBkXYbZI9l801e
HMkcksT+sQc/TeD2PDTDKKgA0DPGRKHs76YyovNCL/rfHQWHCKrvtx/hnynaJMvo
KvL0jTU/DSajicRM8GXpTAX2tpqZD9EHWV/N5wemukeuKw712CCh27EhVo5CwL22
sYD67KOHZQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAOt2TAwKAFH0CzfbqW2h8ur+W6pdMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVANWNifIzDR91ZKG5Jua8Qvy7cNhPMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.lib.cas.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.lib.cas.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Academy of Sciences Library</OrganizationName>
      <OrganizationName xml:lang="cs">Knihovna AV ČR, v. v. i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Academy of Sciences Library</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Knihovna AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.lib.cas.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.lib.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Duda</SurName>
      <EmailAddress>mailto:idp-admin@lib.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.math.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">math.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Mathematics AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Matematický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider MU AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance MÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.math.cas.cz/index.php?lang=1</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.math.cas.cz/index.php?lang=0</mdui:InformationURL>
          <mdui:Logo height="44" width="44">https://gedeon.cas.cz/loga/logo-math-44.png</mdui:Logo>
          <mdui:Logo height="100" width="100">https://gedeon.cas.cz/loga/logo-math-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAKXzKB3NwO9uwx/MR8HCaxzvbCuQMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIUKxF2wkFojvJJCDY5I6op8lpFIwMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAMueKcDpyB0hctxczMQY+nr8X9XXMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.math.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.math.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.math.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.math.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Mathematics</OrganizationName>
      <OrganizationName xml:lang="cs">Matematický ústav</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Mathematics AS CR</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Matematický ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.math.cas.cz/index.php?lang=0</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.math.cas.cz/index.php?lang=1</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.mbu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">mbu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Microbiology AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mikrobiologický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IMIC AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance MBÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.mbu.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.mbu.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="60">https://gedeon.cas.cz/loga/logo-mbu-44.png</mdui:Logo>
          <mdui:Logo height="100" width="137">https://gedeon.cas.cz/loga/logo-mbu-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAM9a7nZzKnBYbjqRYLwxfcPbOVpyMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIFuRnNf5BHyo1OTHFuxLqSPS0YHMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAI+tuh6KZfer8erZJINLWQ/LQSptMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5tYnUuY2FzLmN6MB4XDTE2MDkxMzEyMzE0OFoX
DTM2MDkxMzEyMzE0OFowGTEXMBUGA1UEAwwOaWRwLm1idS5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCHlTg6jYKMUMdQN+1lVSfaTAY1agZB
Z+i6e0M6/Ms0tIGtFf+OvZbfbAepINKrL1U5GL/OA555i6K6V7bDTWVaaXcoU+8N
zs/EfTMVDyvRfVD2HVTqyx483bRhW0DWcZxcke/sCdYp71/4qN/Tslob0AwDWRgi
uvnfexcU9qYTkyvBBz2gNK2m98FE6Df3tdzdKshuMRojJS1i4LSQUD5uaNWMoyYg
2ObUSJgDhySiywn03GfL+N/26rMJYIOisevfgKKV00hSrzSPcx1btHTS/VD/LgD4
A8IuN75Vt+8dPhgF3fvrY5pHg1Rtq1I1KYF9RaU6b3F1+yNuER96/r8hAgMBAAGj
YzBhMB0GA1UdDgQWBBTOHRTYrfeZ3mrb4/obj6PJ0ITsODBABgNVHREEOTA3gg5p
ZHAubWJ1LmNhcy5jeoYlaHR0cHM6Ly9pZHAubWJ1LmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAHqsZGDOh010v3Tjr4rjpELBcyQr/a4IX
Eh/UWtcHSEi9J8aVJAmPoz8BWovpCVSgef0dkzQwxz2EOvRdCwziRXfjzyZt6Llv
O84D+8ipuK49lgaqffEB7np/vd+NnII2okPc39mcNhiR7xO90RXrneZzyQvCv3SG
qQHiU9/Mdk7h3yiEojCjRc1haPgYFqkXWa+t3bl6Mu8Esx4cwDGBrwcbwRboo9hr
fD+Oh0MA0LFgFp6CDNuhCKG67Y1bsu+ppZdC34CRL2js0UpEKrEAVcKeSyz9nvgt
87igZNyakDur6pZVQKbAVfClI3ZDbrfeM7SkGoopp5gAC4KoYs2Wng==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mbu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mbu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mbu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mbu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Microbiology  AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Mikrobiologický ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Microbiology  AS CR, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Mikrobiologický ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.mbu.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.mbu.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.mendelu.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">mendelu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Mendel University in Brno - IdP</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mendelova univerzita v Brně - IdP</mdui:DisplayName>
          <mdui:Description xml:lang="en">Mendel University in Brno - Identity Provider</mdui:Description>
          <mdui:Description xml:lang="cs">Mendelova univerzita v Brně - Poskytovatel identity</mdui:Description>
          <mdui:Logo height="140" width="188" xml:lang="en">https://idp.mendelu.cz/idp/images/logo40en.png</mdui:Logo>
          <mdui:Logo height="140" width="188" xml:lang="cs">https://idp.mendelu.cz/idp/images/logo40cs.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">https://www.mendelu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mendelu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDlzCCAn+gAwIBAgIJAJDI3wy+XpHDMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDlzCCAn+gAwIBAgIJAJDI3wy+XpHDMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mendelu.cz:443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mendelu.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mendelu.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mendelu.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Mendel University in Brno</OrganizationName>
      <OrganizationName xml:lang="cs">Mendelova univerzita v Brně</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Mendel University in Brno</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Mendelova univerzita v Brně</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.mendelu.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.mendelu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="support">
      <GivenName>Jiří</GivenName>
      <SurName>Passinger</SurName>
      <EmailAddress>mailto:jiri.passinger@mendelu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michael</GivenName>
      <SurName>Banzet</SurName>
      <EmailAddress>mailto:michael.banzet@mendelu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.mestokm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">mestokm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">City Kromeriz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Město Kroměříž</mdui:DisplayName>
          <mdui:Description xml:lang="en">City Kromeriz Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Město Kroměříž.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.mesto-kromeriz.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.mesto-kromeriz.cz/</mdui:InformationURL>
          <mdui:Logo height="39" width="40">https://idp.mestokm.cz/logo-40.png</mdui:Logo>
          <mdui:Logo height="72" width="200">https://idp.mestokm.cz/logo-200.png</mdui:Logo>
          <mdui:Logo height="112" width="400">https://idp.mestokm.cz/logo-400.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAJQVSqz1SXmNbqKsSVMrou1lumW5MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVANSj20IQVllVOf1iSLiJj9OufhrxMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAI6DcfmLchd18P5hRa72ICAP3GxjMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5tZXN0b2ttLmN6MB4XDTIxMDUxNjEyMDUwM1oX
DTQxMDUxNjEyMDUwM1owGTEXMBUGA1UEAwwOaWRwLm1lc3Rva20uY3owggGiMA0G
CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCX/wMk2Y/sH+k8lR5eocr2VBog7Nrf
cUUDUjUJ6PJnFJSrica0eg1XrlV5JFmW9HgdTYOf3XscEHq1v0dWaeAJf9sB0yY8
Nip7Cd5+QfcPMGW6TRpUfIjchhcqoyL/FBGSNplyisNfpISY7HfDeXwMv7Rbujbf
fky8lFGhq5CRgD439qWQhxv83WKTx0JJnQrlQ1Jo713IDSeGoWF8QJj/qpTFwxVc
vimQumv4a1ZxeXR3y6t2E6xoZYR/YNKONOranWagRIN9IogOM/yrA0p5haU+zreN
Pc5v8tTigXWGJDXclEMfL8ecYNSke28tqFPZ7BtRy4emOFakmbrZWWyCU5VB61dJ
pgu7gAMBu4jtRS7muJKswVCkdebqIaSe3bkAvaCncTt0Gcd+8W+l7MF81anhfMmD
uz9amP1pqu/5RnP8HTCZhPDZLmEL+pti4gPoDe0DBlZV/6LIi8S0Sam5RJ8fUaXk
8ksr8AXSkcNxSDb++o+l8kvdx3UQn3OlqssCAwEAAaNjMGEwHQYDVR0OBBYEFKPe
Obykqudddm42vWlWyCTepymgMEAGA1UdEQQ5MDeCDmlkcC5tZXN0b2ttLmN6hiVo
dHRwczovL2lkcC5tZXN0b2ttLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB
CwUAA4IBgQAuuYgYaSYwu9Pd4LeAd0V9IUb9kXZhHqqVF/mIcO5T8L/TFQztTsZe
q4TQdeTUwz4B6MSwCIDw1oiROFt/ZlwC6wvy0yUvITJ/pxaVUxD9d5ROJCJuBKWY
GRg1HYHobzFg0PtIYJJOgyWaqv5CYX0fcUmkO7WRe7G+Qpyp8k57+r/g/20C8E7W
a3B0BKExvK0fmETrQGBAeWfvd0MZ3fE1sPdiznpo4FxBb2Ch6L5q+4eP6Y1g3c7G
atAZqU91DanpbvNsoGbkKBnVcoXm6d4X+7dd5xbhHuSSWq6AtxPAqs1uyZ8D6wtj
BLewYZFlnKZNIvAP6J0yFUNYI1oVZqa7YnFEnBKOgynZ+TRq+ytB/wuSXzqIBVel
t2CS81lg+3nagfkbkCQXBXt3n7kuHgVgFwI4rllmi71nuOvK4ixsEKUz9u2B17Ox
vIWq+ie/Uiw+wU6imdkCyXI/BbnAmge4o6l6N43+3lykW1kAgl1Gd4hrrEEJAT7J
G3W1mZRWfBw=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mestokm.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mestokm.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mestokm.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mestokm.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mestokm.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mestokm.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">mestokm.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAJQVSqz1SXmNbqKsSVMrou1lumW5MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVANSj20IQVllVOf1iSLiJj9OufhrxMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAI6DcfmLchd18P5hRa72ICAP3GxjMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mestokm.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">City Kromeriz</OrganizationName>
      <OrganizationName xml:lang="cs">Město Kroměříž</OrganizationName>
      <OrganizationDisplayName xml:lang="en">City Kromeriz</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Město Kroměříž</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.mesto-kromeriz.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.mesto-kromeriz.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Kopecky</SurName>
      <EmailAddress>mailto:pavel.kopecky@mestokm.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Zdenek</GivenName>
      <SurName>Kozak</SurName>
      <EmailAddress>mailto:zdenek.kozak@mestokm.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.moderniknihovna.cz/saml2/idp/metadata.php">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">moderniknihovna.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Česká Třebová</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Česká Třebová</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Česká Třebová</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance a čtenáře Městské knihovny Česká Třebová</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://moderniknihovna.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://moderniknihovna.cz</mdui:InformationURL>
          <mdui:Logo height="75" width="75">https://moderniknihovna.cz/images/logo/logo_mkct_small.png</mdui:Logo>
          <mdui:Logo height="42" width="260">https://moderniknihovna.cz/images/logo/mkct_logo_white.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.moderniknihovna.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.moderniknihovna.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Česká Třebová</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Česká Třebová</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Česká Třebová</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Česká Třebová</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.moderniknihovna.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.moderniknihovna.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Denár</md:SurName>
      <md:EmailAddress>mailto:michal.denar@ceska-trebova.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Denár</md:SurName>
      <md:EmailAddress>mailto:michal.denar@ceska-trebova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.mou.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">mou.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Masaryk Memorial Cancer Institute (MMCI)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Masarykův Onkologický Ústav (MOÚ)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Masaryk memorial cancer institute Identity Provider</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Masarykův onkologický ústav</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mou.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mou.cz/</mdui:InformationURL>
          <mdui:Logo height="685" width="1182">https://idp.mou.cz/idp/images/mou_logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUUyeYIPgC8kZGhyGi+eHt++F1LsIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVAIzfKI0c67O4DcZE3eUjyBSFyPGdMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mou.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mou.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mou.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mou.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mou.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mou.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mou.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mou.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mou.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">mou.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUUyeYIPgC8kZGhyGi+eHt++F1LsIwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLm1vdS5jejAeFw0yMDEwMjkxNjUwMDRaFw00MDEw
MjkxNjUwMDRaMBUxEzARBgNVBAMMCmlkcC5tb3UuY3owggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQDRd12za6Eyyn0kb2U8AWcEs0/Rh7zpBdT5XGfpiDvQ
FGcI/fnpMZclHUqfAEPPCIzu3a/L732HgVBinzXzbEgsO8GMplcNzMkG9wsZQLqD
N2VqLFUYVkb0EsLpi0NOeEgLUCgyurvJGC58wQQIQyuxziocr/dS6XCvSMGzkQqJ
y+MPOhLNRgO4PZXK5xyM4d3BTdiJSpm+jA7VMck4evB0DiAIRJazsxnyJTJLRn+J
cPaxTLIJ03oltlVJLpEIfOi42heAmLwtLq3LwS5tC6SDKLdO8QyadAdIdqhs26tW
h1og7dQThfVTjb4PB7mpQAOJZhAbMNh/neeLlbw5nPmrbg5XMWn9tsA2eydI72Fp
OPy98l6fDsy42QCwpu5AJq3uO5VWNURXn9m0CFxMatflv5QV3cl6b/hJVZQ4A12g
bB8lAT5xdXqpURBl71h9TKEIUtfjXWFJX+J58qKO3PscydHNfM5MLqSRJK+baa58
14PiaZ47BISXEGdSlLiwQ1MCAwEAAaNbMFkwHQYDVR0OBBYEFO4zy8c0RZ7D2Td5
TyRzhrTXkFbWMDgGA1UdEQQxMC+CCmlkcC5tb3UuY3qGIWh0dHBzOi8vaWRwLm1v
dS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAqKIxXHfs3jeC
5i0TvOHjbvIbIWPeKBObBA4S91HAxMzXaHj/FGejv3TkZs8bS1vSXxkG+fBN+wAu
Tea/DTLjJV6KYOSJySxbynb8XPh4qFoOM5ANksEMCzVmFD6rHoMTB8/2JmEj5Lm5
cseknYX+gcsv8JO3gQrH5IqhI2/LLozewaDYfBG9ccJYRV/vgov5YoRJGboABVTA
hT7sN3C5CgYGvZ9xgZXvFVOYzg07v3Ocqd54aXBhCFwNmvh8vDbHXW02or4lVAe/
DB5esYae9TCZ9VbYogBg9T591C6NVin964db9e/IkwWQy/1G3qRFosRcqCbIGujd
d8aV+Zgkg7l9oqe5DesaljUt31PU3s2dp9gukceT+y8SJas/wog6BEivada1Y1MH
SsM9KwMn3W9Rifd2/YP9VB4rgnzanZ4yCl4mymemeh8G4E3iJH2BdwEi75K3E407
ZNM0wjDYdGloV2/oag46nkTJhr9nUp8X4C3cwdzLHSMPZHKVAiXv</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVAIzfKI0c67O4DcZE3eUjyBSFyPGdMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mou.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">MMCI</OrganizationName>
      <OrganizationName xml:lang="cs">MOÚ</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Masaryk memorial cancer institute</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Masarykův onkologický ústav</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.mou.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.mou.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Miloš</GivenName>
      <SurName>Sapák</SurName>
      <EmailAddress>mailto:sapak@mou.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>David</GivenName>
      <SurName>Nejerál</SurName>
      <EmailAddress>mailto:nejeral@mou.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.mup.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">mup.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Metropolitan university Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Metropolitní univerzita Praha, o.p.s.</mdui:DisplayName>
          <mdui:Description xml:lang="en">MUP's Identity Provider (IdP)</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro MUP.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mup.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mup.cz/</mdui:InformationURL>
          <mdui:Logo height="73" width="173">https://www.mup.cz/img/logomup.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUX0u6GUYMF0iQ96dUJJvk88WdFZEwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLm11cC5jejAeFw0yMTA2MTQxMDQxNTNaFw00MTA2
MTQxMDQxNTNaMBUxEzARBgNVBAMMCmlkcC5tdXAuY3owggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQCKjpby4Hf7UdBoOoK2kI/p26wmPiUAhd6C1MPpaO0u
gougW3okZSeK4ioVJmFpzFlMhizijDKImaeyjvagcXjoYnxeRCDUuRGPo2oNN2Cf
BdDO8dkaNWOFvHVCVqZP7cr6DAEIHU+wyHL6dVzfR3Pi7NiD+timPcOuSUo/IWRR
0LRKSc52b5hDd/F8Qe8GzwpRP0U/tzOru0JNrP1GhMxDZlm9l+niRI2z4mlLleG5
sfzGKqm5dsjQZuHdDZu2yxq42Tulr68AvEz9XxXTK5Qmv+/fM535nVV1Hk9otc+1
bbwl1cbdzwO4M2I7VYhvpqgBXsgEjJv8NIVhmJxyM4yE+UTfLCi9JFod+Bmolwpr
SmA8F+u/KAwClhhdrFqJsciU1SQDFRgmmwCNMiA6saoxE/6UVUYvW/3buRF557cc
CRt4RFomKup81SEdBNWh+Y0LrOezU+hZBSAMHJbJpmiQ4yaMVhdUBYMXuhPRV16R
doC6/wz3+EZbaoOYpDbICDkCAwEAAaNbMFkwHQYDVR0OBBYEFBAHDfngrfTTbFBk
UMyRIAw2hzsdMDgGA1UdEQQxMC+CCmlkcC5tdXAuY3qGIWh0dHBzOi8vaWRwLm11
cC5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAMcIvht0E/7oc
Zm1TBT2f3n2WTxW1mD447GCrrp9pOr1N8tnnXrae33HJ8KreErCku0eOs6Qno4og
bAh9sb9MTOQZxQujCWd1TqHg4mh0oU2aYLbvY3X8KuGrYpcomj/74Td81jB4Xd2T
CRnQ844t963AHc3O3msROKDpghlCQPcfJPR+aRbdHdycYE0ixBWBr/VEuqxfB7sy
VYgroXBIp6K+eMBBvqtTx536ZQ53M0xIDAI6ykvt3qaIjqHWvy+kHEaNYRXV9KaL
yEUzAZTGgD4dnY+XK+JSDZlhh9IPSKyne08ICY3hbdwVL/ewf8nHzOudebUMWTJv
ibaZqneJQy8vpgmsMmYfhg90RHCKiNHorHrNQ1YtlGP1J5IPcT7aa3cEPJvbizh8
tn8z7iImn1uU+3fukukSQXtS3K/8UkFXzWE68IMn+fIgqRRDV+7PeTzD+7oPX/ko
fE/QZjGaM3fpGutu/hpydvbT1ydB3IhlMEVVsTPcun83i3RTtpGZ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIULvexMNIDzp8X4GiqJO3rajDayh4wDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLm11cC5jejAeFw0yMTA2MTQxMDQxMzVaFw00MTA2
MTQxMDQxMzVaMBUxEzARBgNVBAMMCmlkcC5tdXAuY3owggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQC1zeGmdXWlvVZkohk4yR4C6/cmlWVad2D9bHvINAa5
+E7H56c+UFNTa8owIGdDd+uN/CS4OulIOXi8GpOslpmE+ZAmFEX2gbPJQNG5X0ZV
alqfptMfwn10JhzO4Fl7sMpueP6fIwPLvyyAcS8BIHnXeLFH9RF1trbBAiCzhQUQ
59He5RcYKORAzA55kzKnQMId4C8hcnxSFijK+gUGpIcxnSrvIRGCTQTg4GGR7Rbr
zI/nXe0EcWecTUKy3RoSg+3yZEmJtFI5G1ekNv96kq9ZQhMbC7ZfggN+ZfNr4ipv
Jub0jzaKLjlpojz/ZunItYZckrIEf+z7WNSb0D2bIj45QgUjKafrYpcGNhYbV9kq
+p/Mk9hA/WOnBup33LW6o8lkv8LKGPBDzEz4x81ucyrasouPzkJ1h7YeL36RF/s9
FSbIsH358uIdfivbkw9o4CAqHyGxJtfYe11QbI/qs9SjL7t9cMW6bYh+xqOWoe3f
pMma3u1oJ7mEWHoq6RKZaw0CAwEAAaNbMFkwHQYDVR0OBBYEFHZpyWLSRY4ANWfS
ajOdG+LfsvI2MDgGA1UdEQQxMC+CCmlkcC5tdXAuY3qGIWh0dHBzOi8vaWRwLm11
cC5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEApSLdPkZhsS5y
hQD3goVn0DYOZu6gr0l1kS6UC6oFFXxOI0woMu+FgCBdTwrr2md+LYrdMoU0OeWh
znT327JhuBt93JiIRLw7U9wwchbAHw5HK2O0dMKhxyPGZkPF7yyXwQiVW++Quq0V
IUUyeKFU3RPgrmo+5GipITnDXwWW3Ve5zWBy3Uz0v080NtUiAnbFOt+ssBWr1Q8Z
EoGXG2kTfA6SlKMiS2VkMSATTqnK7tY+i4dJ4jLfyFh7+cZS8HCC/O8IgGSWdSnW
bbS2SDijIQQopL4rUdQ/QhE0QKs4uJ2gdmF1/NPOvNqrCgupViBtsYYcCuqTQgCk
BMiBbKdgrl4Le0ouCpeKQDpAB0hwbYgWhc3PIrI29D7AyofLVaT1VHXJeQmEjUD0
lrPm4qUp0k1ksVUBPez6s2Xv0Dq3iSsTvDeozauTvmQhxfry+gDy856s8apSBHw6
DxBFOlnV8norISTmnB9ht2qWEXBZHAIzUZhLgwmYLR42jPfn7Atu</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVALM5koGp/Ry7cCpF6maeeW9Pd0pSMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mup.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mup.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mup.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mup.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mup.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Metropolitan university Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Metropolitní univerzita Praha, o.p.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Metropolitan university Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Metropolitní univerzita Praha, o.p.s.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.mup.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.mup.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Josef</GivenName>
      <SurName>Kovář</SurName>
      <EmailAddress>mailto:josef.kovar@mup.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.muzeumprahy.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">muzeumprahy.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The City of Prague Museum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Muzeum hlavního města Prahy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for The City of Prague Museum.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Muzea hlavního města Prahy.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.muzeumprahy.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.muzeumprahy.cz/</mdui:InformationURL>
          <mdui:Logo height="1070" width="2560">https://idp.muzeumprahy.cz/idp/images/idp.muzeumprahy.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIENDCCApygAwIBAgIVAO43z5uzLu8n3+mIbkXqN1iM8lAtMA0GCSqGSIb3DQEB CwUAMB0xGzAZBgNVBAMMEmlkcC5tdXpldW1wcmFoeS5jejAeFw0yNTA3MjIxNDU5 MDVaFw00NTA3MjIxNDU5MDVaMB0xGzAZBgNVBAMMEmlkcC5tdXpldW1wcmFoeS5j ejCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBANk6idmjH09Y1O38LMa3 Mm4+hB0RWdS8MsxuNczIMGl00W3YuffJe4AgpicI8iPRscmV+N0zfn/j9g8TQ94r aOBrlSBuBEZ+SCAj0qeQDW4P27QeZC3igs3j+5r8DsoB5Va8q6qvOhfzQpEV3L7u eg9ZbVmkVuqjhqGEaHOtF4IsFDYcuvPpIxhs17v+u6B5vEsJ/KJnc579GAPr/pWo p5PwQquPOO9yG7Gj/q/Bx6+Iqt+gjNyRLX6FS164COanzKQT5+HV/BL5RYZqMfdI D7hSRurrmPDDn5psy/Lb9gbrcIsRbB7AIZTu9pshG9AUZbntJES1CzSu6qKv6jMV bnpuHiAZoVJ2xX5D9UVBc4TMh/cER2d8NLxSwExf4tKRD9KFz1Z8nMvECYT+Dsoi +mE9F+q5AE+HsTfCmbUgL3OsCw9iWws3TvCfxenIWQnCKMi8MhTQCGgjBUwED0q7 1vzy1HqpwfNIV9ent6iIHNigGaBqkRtHbeljzH7Pkl7zXQIDAQABo2swaTAdBgNV HQ4EFgQULr58GraJAANn/88EHhps80kJ6wswSAYDVR0RBEEwP4ISaWRwLm11emV1 bXByYWh5LmN6hilodHRwczovL2lkcC5tdXpldW1wcmFoeS5jei9pZHAvc2hpYmJv bGV0aDANBgkqhkiG9w0BAQsFAAOCAYEABk3iA7ul1uyFEt0ZNK/I6d4lncvaGMti 9fGzcQGB+tyOqp9kGT/Cxe1NwtRYIuFVnEgzeYMnPmfC66exE25/CEVoOJVTnzB4 2ZC97c30oYX7bQIKY2o4L4YWbMQT2TZfA90Z/HcL6kkBwSjYf4SnjWmjDwUmSOQU +hyT7sQmd3YN6Heb+7R+Czv2QHOQnODcN5jPIvhZQAZyBVD+JZzrle9FZx/mmrFa 5FIdBlzAT0WLEh1SOQWzoNtL+Rzg4Zae02KNHG9DenosF9ZFRQLqO0MGBEWxN1me OLWYNios4PfYTkOgetrqbwyZhC069OsBom+ULhB8n6rbzDU1uQOm3UhseqTK+sIq x6F2hnkQ97dml8c1rTZX+ANKJI78NnfVvrO7jdmiCRpWku+bXq3nKLdsxtd1MLxS 23tsjBBDcyVktOeaK0z43B2JsxEiUnYm2L6HIhrhDJRklOoaupaxtVcgx7Kmk1/l iFyebDk9+7/EftiHh0c2wwojPEGu9nPf</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUF196Yx5oxvtljmF6kaV7r8zZOqkwDQYJKoZIhvcNAQEL BQAwHTEbMBkGA1UEAwwSaWRwLm11emV1bXByYWh5LmN6MB4XDTI1MDcyMjE0NTkw NVoXDTQ1MDcyMjE0NTkwNVowHTEbMBkGA1UEAwwSaWRwLm11emV1bXByYWh5LmN6 MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAk4D6EDZS3Bt+5W1j/1Hi BY8lEej/WdCvyUVsN9vAKmxwm+V732+DPSjZaGMkDHgAA5Km9xUazKFRyDG2Ta4L S5iq61JUHiWrP2tg9fq6mGWLr2NbhFM2kwddoI/abIm1J3ocfAIfsmTk1rBnrB8w qkUoO1NwqsaYr4KTTCMvZMWfif0zCV8nX7nvJdAcqMdq1LYapJW+AbcoqjNXp/OW tLvm43mJmgkNKM4OSXIejTUgkrNReFV1fMlW2PIY4BIYwOAurtNT+UW7uZVoBUIe Lrec/rL+E9CwXgQN7TzkHphA/GGUG2CeG6S3Fu7A88M2l4uIW30k6K7LcnxS+/SA onRBI1LY7zOUcfWMtdcZ76DzLDcXEyhyx60k00nB+/+YjqD0cIZGs6M2PhdoXYqY ccXSfuHaABDovGsv3f4pXpTDLd9vzsJQu9FX5HovILcOljSeTj7I+dT9JzwAnhOf W5OP6tmHbZYl/AxKAatHwAlB9brjMbqifvp5WQU7HN+BAgMBAAGjazBpMB0GA1Ud DgQWBBST/2No/Ni5EcF8r6cED5SHY3ZPwzBIBgNVHREEQTA/ghJpZHAubXV6ZXVt cHJhaHkuY3qGKWh0dHBzOi8vaWRwLm11emV1bXByYWh5LmN6L2lkcC9zaGliYm9s ZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQAC5VoQ5QrjxdyBKotHKSbgeyzMVVRb91uB 76L5tqZp+sEAhJTf2DOk1EzLcYxy7aYEuRIK80wd1NWir00Kd4KKAPkRXKnkjDBv 2ixRybl6Hd2Qyy+q+Lt1wbbYoagc9yncA4z91WUqFbdQebDn4//9ELl/1DdFPRsn w2PhnS40TYwqVCtpT1bRllNHU0IyDYCQabPYS+ztb9z8Lz6/+Uu4gJ8vxh65nXGk mmE4KDgFGCEd1hJu6EE9/BYbeKFXuqPXy7FbTD6+1MSTxrkPY1i4xNuxIajVzkD4 A8DNpW4pCFkbKm7wkhe+JmCHwVtNHfXFTJ8ewgulf2W30+EqdRkJRtre/YV9CSSc O4dCwZpCdLhjpVicP8PCMCy6jp03nNBP8b/3lCQkm8jod3UDvquqte2mPfef0pIS WbAdBbVOMcKWhavTSy8TpVPlmEzoR8WWUgzmia11RQ1M++TubcHMU1QctdgxWzb4 Xpj+FKTR+KfxRx6fBPhdHi0zJNbt35k=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.muzeumprahy.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.muzeumprahy.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.muzeumprahy.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The City of Prague Museum</OrganizationName>
      <OrganizationName xml:lang="cs">Muzeum hlavního města Prahy</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The City of Prague Museum</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Muzeum hlavního města Prahy</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.muzeumprahy.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.muzeumprahy.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.mvso.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">mvso.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Moravian Business College Olomouc</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moravská vysoká škola Olomouc, o.p.s.</mdui:DisplayName>
          <mdui:Description xml:lang="en">MVSO's Identity Provider</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Moravskou vysokou školu Olomouc</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.mvso.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.mvso.cz/</mdui:InformationURL>
          <mdui:Logo height="200" width="200">https://www.mvso.cz/files/mvso-200x200.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVAPtnG76fzhd7RJTJy3UGwyc/r6sUMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVANIFNo//BTWW2+TUet7m71nP6Y1UMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVAPMzCKJH7MueDjtMKr+OLdzEG8A9MA0GCSqGSIb3DQEB
CwUAMB4xHDAaBgNVBAMME0lEUDExLU1WU08ubXZzby5sb2MwHhcNMjEwODA5MTQw
MzI0WhcNNDEwODA5MTQwMzI0WjAeMRwwGgYDVQQDDBNJRFAxMS1NVlNPLm12c28u
bG9jMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAjqvsuJj6whk6+xtV
9D8X2BBRf59ls1do5fkprkBT3Ty6uLnyz+6wkPUEZ3TctrcPF9uVE7Y85toO6Qbj
L2hFPWAjafJTn1TCy19uD4wCQXXC2HxIDh1zO4ddR99EMeZUCAimHa5mTcj6byCh
SiXCC6w/B/7lNEGRnCyIUED0pKr+tRMcZ5SwvncWX18ZSI0qofGcE6Js7+5q58Pa
+2S6nNjAkLGX4Vm9G4ZqnXr3qURNqZLmCGVrvidVSbRJJjoLFQLk2KJCsmiHuPlJ
RXuAHj5ueFT5ToIstiXlA7qbziuvrKP30/U2qH3esrawPOgbfXs+ah9DqBH7dK2y
JrlJfmNS/FsW52y4fAMEjja+g43nxl2eIfH+gFz/jfF1KONeJSMWRwefomphHSAv
H84G8U8NL7M1Wwjz+66vcPIWPgSI4kd7iw4VkiY0Wk5fU4EeXdz5gkGYxCTuCs3W
k2BlvgZHB34xE8BQ94brvbHgahxJgzGSue97MYXkExVr6pHBAgMBAAGjbTBrMB0G
A1UdDgQWBBTTfwOc8d2Ekfj4ZhDKCU/CmkZprDBKBgNVHREEQzBBghNJRFAxMS1N
VlNPLm12c28ubG9jhipodHRwczovL0lEUDExLU1WU08ubXZzby5sb2MvaWRwL3No
aWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBAFCu/Kpgxse7gpyizitALyQnivsl
UWvmL88FHyYHKHHw3xw1xnLKrgnpZWarFlh5wzy3k5Clge+YxYdsH0pXGpSuj1KW
ReK09NqQwUHfs8Gqs2N+6ZSncdR5w39HSdF35M71vQp6Ttc3xamRbr4BEEf+uKtk
xQlZ2MAndsq1R8zQZ7BGXSFmlZkSHmCMpsVuc7oR5f5ZWBMvh3rpHJK/yA0cFXcE
2Rmp6NNl5p+oufzeHeGbhNcdiL4LIFjE9xBhvt8jyBe0xr7oFu69XzSmGMwptql5
O0phO2MHCMRfbt+i1bqG5lgvLvahIFsSSTJtGutECcm7BCvI+J5JWzWcBfCKoyJf
bq5yz//BNBS0R4FpxeJQCjrWrkoqJB7i4+RKcbS4McvgLDmXff0AA6CFfIvgERku
WcZByaMTHWdaZX4lZcFhe0YJkletZgOT1jWvud9REkIZEFSbuntxrah808Wtjheh
ndDJ/ldjcUkO/Spiv8MTnovwhkCyb8YK4RrN9A==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mvso.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mvso.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mvso.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mvso.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Moravian Business College Olomouc</OrganizationName>
      <OrganizationName xml:lang="cs">Moravská vysoká škola Olomouc, o.p.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Moravian Business College Olomouc</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Moravská vysoká škola Olomouc</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.mvso.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.mvso.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Tomáš</GivenName>
      <SurName>Václavík</SurName>
      <EmailAddress>mailto:iti-podpora@mvso.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.nau.gov.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nau.gov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Accreditation Authority for Tertiary Education</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní akreditační úřad pro terciární vzdělávání</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for National Accreditation Authority for Tertiary Education.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance Národního akreditačního úřadu pro terciární vzdělávání.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.nau.gov.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.nau.gov.cz</mdui:InformationURL>
          <mdui:Logo height="504" width="1722">https://idp.nau.gov.cz/idp/images/idp.nau.gov.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIVAO+SqrXHDfKuXqv0Bne7/6adOwT9MA0GCSqGSIb3DQEB CwUAMBkxFzAVBgNVBAMMDmlkcC5uYXUuZ292LmN6MB4XDTI2MDEyMDE2NTczM1oX DTQ2MDEyMDE2NTczM1owGTEXMBUGA1UEAwwOaWRwLm5hdS5nb3YuY3owggGiMA0G CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCbxUTQ3Q733YniOTn9NWgNei0r72U9 hl0dZeWGpR+gXp19DFqEnk4n/96Oxm3h6cnhWsZQ+JN1T05tyHe+01F32KTWqFns hYmeva/3i3n7C6cmoKAOznhuHT4Cre5Ldv/zGLpzNrPlJmTv5kHH3WGCFazkiyBR WxAwnlV0AewpQJxls0uRhCcvkQluDhsAYjuG+/H74s+a5qkfY4Gv68zud/T8ajfN zXJOLbgIlKTSjd7H682deuBSZLylyTLNFqKgKy1/iYS3UPZKKbHA7a5deh+xKynd DglztC3cEUJBG3VhKumbkwBJ8jSplpR9sm2HsbIL8jmzp14HIcMBPCaqVoSg0kW6 qzWRr+kvjc3oSYaUqaOV/manN/BDjBJrY49uA23k2tnK7fIxOqfqErMh9WEogLpP TMvHUpLGlzZ/kFLBJVkAKREY2+4eyzLk7Qw3CvcMc6tPkLWXuU/RtLViZCcLMKrY RfPk1Cz1QBE0zssd5EsBMpwEdZOl2T4619cCAwEAAaNuMGwwHQYDVR0OBBYEFG3j N4EbkfUins5XUZW601o+dZDwMEAGA1UdEQQ5MDeCDmlkcC5uYXUuZ292LmN6hiVo dHRwczovL2lkcC5uYXUuZ292LmN6L2lkcC9zaGliYm9sZXRoMAkGA1UdEwQCMAAw DQYJKoZIhvcNAQELBQADggGBAIcvtRnne3JG/zM7sp3DfJyM/lR5R03+WW3aupWa 2PY0XhvQA3kUsiuG97jIYnsDPrLPnkPnLoS5AFYLjwTjfZzjUR+0DDN4aetHqqkA on7tToC++IFZ/I5cV99JlBmnARmPSALb01siTPMs1I3OfeeCZbaeRtW+4iZLGV5R 130nVQLaqdnk7vFzaamps2fSyGcGD6VXi6EEGtGeD/dL33GW2NV+v/0v9SzESH8+ BHHkUNHsGacSJAXgg0ChwmI9nka1C8E1N6mAcz8jjPWnwYlOwnhB02SrENFP43H9 3v1c/FZhurHRLsIDT8kD2ZfBgkjDtMCtmUmOyL2Fm8RSwQmtuq4zEaWmJ+jJjLKE c4z0Or30mNPKYek42BzJYm4Iu4MU44Nzrbh7EP9cJrO7Pw1aBuBqvaAEL919eG9+ ZSZ2kO6aJ1GMHMYY+d0nZ7o3548rWAGI0O3BLGk2LMm5ezq0Y04PoTt6qBVaDIT8 xZPeGoyBb9d4vwhni4QgV6Qq9Q==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIVANXQUnmtkMyOrQribckqUzKUllF9MA0GCSqGSIb3DQEB CwUAMBkxFzAVBgNVBAMMDmlkcC5uYXUuZ292LmN6MB4XDTI2MDEyMDE2NTczNVoX DTQ2MDEyMDE2NTczNVowGTEXMBUGA1UEAwwOaWRwLm5hdS5nb3YuY3owggGiMA0G CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDKV1qw2h+KTqQTLDDVPMoKAis/G4Jl 4CcoxdIQIoUboKN0wszeCKVImwemW0lUOMRbrr59ug8Fu0btVhHH9E6ZJ41Avnny 1Lv+kBYJvQ34RgAW/sCgs14zUkBiOwa0zMNhsE/Io/HkICrqiU4GHu4XESabnLFz p+brv/fl4e1fdg4furVSzwxGrsVEUp2aKH4346cW/z6oWHSdl/S31wRRGVFG3iRt mwUa3v+L+Je9iVcmzf37rEpTzphoBlynlhIKrd0tMhK2qKwMYicTse1MZ5t3GLEi iPkmmmhabbkBUdgIe/9jXdHNFnEA5CKGMBDbfm73nZ1OHl2YvsbyXAUnGvGWqVP8 Myme1GfM44Csy8eo+HykojN0lyz3sWGuV84pgi5VZplvt9/DFgfI8e6v2zLrrgBD ehJkr80OX0ibJ1KXre4BshXkmWkohHp0UNK+6vWbEUmv3mUi1PFFrh0hXg9iGSWr Icn+8sesQxWclD3AnQFnSC5e0Ub6uSqlfakCAwEAAaNuMGwwHQYDVR0OBBYEFGLE ZrcFuCYBP+HlyDPCFjtY6w9bMEAGA1UdEQQ5MDeCDmlkcC5uYXUuZ292LmN6hiVo dHRwczovL2lkcC5uYXUuZ292LmN6L2lkcC9zaGliYm9sZXRoMAkGA1UdEwQCMAAw DQYJKoZIhvcNAQELBQADggGBAGwAms5IvWyLd7lUhlHUkMw2X1sS9vqeJjvWX/+T LftsBnlHrsO3yZLpnUhIi6ogD5itfOZv70ngSB6wpPgnAlDR/4s9MPNqaDFRFf8h TUZUzmn5ii89wDAh7TbXN5BgfZhuYhTeOVBStI2yCTW4B+rty2g53fOKj2BwIpB9 ClRO/nMhmBBozjaaHyrnyvbp87/c2NpTpGwF959CLpvKn9fD2NseqdIzv4bv5THn 9vbnE1XqqVcW5rYPBeRdiGig3DNrDK0z+6pfut3FxTpxdFffXCtkFWjT6k4e0p6m QJIAyPK7OE2jBBk2A78qwPGujlnNiJh6Qwbt17mDTSUWhI4PmiHy1fBU645QDrpX 4/X43aDmjJJbPnA2OHt3qSYWwvWelTGTrsY143WQbSkkhOO1WeyiUTPGR/km3ZFi o7Qr52oamNxsVzulTqhZ6zTjUZEg50OpCT7C08FxTFDWOBkkDWu1H7iheXsj/Tuw RCwrevjxRPgyOlW7Y7wW8nRUlw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.nau.gov.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.nau.gov.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.nau.gov.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Accreditation Authority for Tertiary Education</OrganizationName>
      <OrganizationName xml:lang="cs">Národní akreditační úřad pro terciární vzdělávání</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National Accreditation Authority for Tertiary Education</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní akreditační úřad pro terciární vzdělávání</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.nau.gov.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.nau.gov.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.nbu.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">nbu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">NBU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NBU</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Security Authority</mdui:Description>
          <mdui:Description xml:lang="cs">Národní bezpečnostní úřad</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.nbu.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.nbu.cz/cs</mdui:InformationURL>
          <mdui:Logo height="82" width="109">https://www.nbu.cz/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVAIwnr32gQxQc/DgMeolTRxX47sOGMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUIT8OgW85hr10Z5T07LBh0AEqBsgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUH+9q7MlbREU5WAp/znmCkhV063UwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLm5idS5jejAeFw0yMDEwMjcxNTEyMzdaFw00MDEw
MjcxNDEyMzdaMBUxEzARBgNVBAMMCmlkcC5uYnUuY3owggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQDQFVF6R2V8l48mu7L7QEvahgN/SYopYNKEyqclsgTu
ikBhhAGdEPH+bBXakbflvGHrsUPFvlw+K07ShkPhEYQbaFTWS2G5gw25voiLhLmg
EzJOOv+J8z1NC6P1fJMoPghKFWyLRg1EH1fon5kXxZ4yKxaYQwjR/uNMZFKSMg/3
JcyfsYd2LDIMqP0Fv111zLag0HItL3HW3AmdxhegaxBvBJomzORBvrXRYUgatZpg
nxFWFnLan9Emsx46rkkbbUOOxiMoHcuyEuYe3KX1P3Tp18XPDP2lYHDQPkUhXi01
S3mRIZy9qK9CZZOwpXbvukezjrgkXa4GTdDoO3ux8bnqyO0UHxrrGr4lRIscxtD/
Z2s+JqoyJMSs/mD1zYvQt/qxpESa2+zeRLtyUXufycg4JwUiwWPONvPkpcH9Nedr
zn7eyKb8V2hc3SjVqzKwdaWMkdpbzNbI/lY2cHpAUeNZZl9npLsqiE4TgnqDDSep
0f5d6iufib/IoNcAN0buLSkCAwEAAaNbMFkwHQYDVR0OBBYEFAE4Ze5wYYAPcirv
shJ+PvBXVU5OMDgGA1UdEQQxMC+CCmlkcC5uYnUuY3qGIWh0dHBzOi8vaWRwLm5i
dS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAQ18MU7pq0DXG
tXhbieVuG6xd9CQA/PY79A/r8TOeIN/1Gsgf9OXdvI7qxBaaZD10SXiqapAehkKd
e8kPqRYZkfIpcKAcSZqiqa1bAkppdQT2eMNoZnr5CcFP8iVJlgQWAEUW4LKEbQ13
Ca3uFdhQL1xqy6xklC6tVmYCmElZs8FCcKvKZzf9yqzP3WIT5tMBZd2iSLBEYbLW
UXJcOQ6dvV/Wnvqvx44N47EpQNR42uzFuWFzmLd9Qj91Yy7oFCM8AbS+zzIEmy+D
I6WOJON3cMDbNdoiIqPPQVBvrpnOLrhPjGtwd4IgZTCA09YUDmFRJgW6IndPTqYK
UJUVWOVa4QGwDb2nYS0nl3qGFnLJxk8wIsdu75vFC/hOJs3uBcBPS7UG+HiRyuNb
lrrbkPwihiswxRryQwgID6q2VuuUfsj1aZHkdjsPs1NCsbJmcc9qMEKi5bAVo11S
FUlyA+VsyZrGGqEP3VUWscb0qD2KtS9iEasY5+h1xdU32qQGDmXw</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.nbu.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.nbu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.nbu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.nbu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.nbu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.nbu.cz/idp/profile/Shibboleth/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nbu.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVAIwnr32gQxQc/DgMeolTRxX47sOGMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUIT8OgW85hr10Z5T07LBh0AEqBsgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUH+9q7MlbREU5WAp/znmCkhV063UwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.nbu.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Security Authority</OrganizationName>
      <OrganizationName xml:lang="cs">Národní bezpečnostní úřad</OrganizationName>
      <OrganizationDisplayName xml:lang="en">NBU</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">NBU</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.NBU.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.NBU.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Zuzana</GivenName>
      <SurName>Lieblová</SurName>
      <EmailAddress>mailto:z.lieblova@nbu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>CERT NBÚ</GivenName>
      <EmailAddress>mailto:cert@nbu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.npu.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">npu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The National Heritage Institute</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní památkový ústav</mdui:DisplayName>
          <mdui:Description xml:lang="en">The National Heritage Institute's Identity Provider</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Národní památkový ústav</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.npu.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.npu.cz/cs</mdui:InformationURL>
          <mdui:Logo height="129" width="146">https://idp.npu.cz/idp/images/NPU_logo.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEQDCCAqigAwIBAgIVAMefGEEeBfbfqs3neTFGmQw86RlFMA0GCSqGSIb3DQEB
CwUAMCAxHjAcBgNVBAMMFURURURVSUQwMS5ucHVkdC5sb2NhbDAeFw0yMTAxMTkx
OTA5NTFaFw00MTAxMTkxOTA5NTFaMCAxHjAcBgNVBAMMFURURURVSUQwMS5ucHVk
dC5sb2NhbDCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIJ3Gx5DmuoC
JvuveLPl27eoPoIC0p0/c5rwS20vYCkmnZYSXfO5Wy8XaK1e2zwPvYxBAyXsYpEq
dCTwNBsQ8sKuLOHELYp0j5Q1/PZcR0PfYnkVcqxCIPQZclXZTcjKO7RF0LwcgYbC
ZsuoEs4DoXJ9mfKdz9+7l6LFHZ9k7ejNbd4/2uicHg9qLA4n7+wOGO7iVXC9cMjg
LWjn6mnTIY+y+zxsu2pow2C9gpy6WQo+xbbpB89xr9y0E9KZwraCdhoxHMRom1wN
ncu3UGXfYjss6CkRrGCAeg0e8VtmIIupPHmy1wtKEanuzUzrnb+28lzBBWxPbuvG
pU9DRLb3+ZQyDrAZPy0vJxk9PIBih372ceGFxqOZtaMUl7N1mIp1j0GOTmy6UoCG
24rZAylpkmLZ3j2q2musNaA6NHBmD5AaPQ9et5zeQTHrbk9XD6flDG+Ng4SPad0s
1Kxg+vv42uKAOXdbYnDHJpRdx26euicPh2OvQUHj3NkqTjJol3EYPwIDAQABo3Ew
bzAdBgNVHQ4EFgQUDGmIpm8HjI1tOD6GeqbEa5qml04wTgYDVR0RBEcwRYIVRFRF
RFVJRDAxLm5wdWR0LmxvY2FshixodHRwczovL0RURURVSUQwMS5ucHVkdC5sb2Nh
bC9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAOi2Nhsaia6h25ry+
Xh+HpQtiT/sLP2ggjspS1QXxcAJiu4lR9f/8W3bYd0+1pvef1oZfmznexBxtLy6s
h/5gI5voejZ7eeSuCEuKtQ8qI7KirJsstVHW0seVXSrt1sVq9P4fJRUyoakWrccn
lWPmqCLnblRuHt840zTMV1h+9ft/OGa51qZcSasr+nz+qWTAiSLzMx/FGZuGE3c+
CjK34LQajfhN6m1BYHp08iN4HZBk0E5AgbfXe6N6DL8gGPlmBvGj0iVhKxgGVxaZ
xrt8s3pO/kzF8ONEe6NnXyLKuKSz1DGJsybREWyopstEZSqSKXMNa7DdUKBjS7Ay
97B7RVLqDYoQKO5r0hDdmQKVr4+uWzHLQF7WyHoCwTgO32NAiSeE600MIotyS/sZ
6UVTXTPB0L7x7eMzNPDQNrI71jUaPDtZPLYlNhu6YrBMPiqDmmSBHjXkFI82kaW6
vPRHA93QubU+IWwn8Y2EXzgxPXFcjtGUITZ1YX14XsRnybaS</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEQDCCAqigAwIBAgIVAJyiWX3fvWI5sGgnkVey3EV+VdCIMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUNbqwFgFDI5AppBQ23MuwQaZ+ftIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.npu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.npu.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.npu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.npu.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.npu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.npu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">npu.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEQDCCAqigAwIBAgIVAMefGEEeBfbfqs3neTFGmQw86RlFMA0GCSqGSIb3DQEB
CwUAMCAxHjAcBgNVBAMMFURURURVSUQwMS5ucHVkdC5sb2NhbDAeFw0yMTAxMTkx
OTA5NTFaFw00MTAxMTkxOTA5NTFaMCAxHjAcBgNVBAMMFURURURVSUQwMS5ucHVk
dC5sb2NhbDCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIJ3Gx5DmuoC
JvuveLPl27eoPoIC0p0/c5rwS20vYCkmnZYSXfO5Wy8XaK1e2zwPvYxBAyXsYpEq
dCTwNBsQ8sKuLOHELYp0j5Q1/PZcR0PfYnkVcqxCIPQZclXZTcjKO7RF0LwcgYbC
ZsuoEs4DoXJ9mfKdz9+7l6LFHZ9k7ejNbd4/2uicHg9qLA4n7+wOGO7iVXC9cMjg
LWjn6mnTIY+y+zxsu2pow2C9gpy6WQo+xbbpB89xr9y0E9KZwraCdhoxHMRom1wN
ncu3UGXfYjss6CkRrGCAeg0e8VtmIIupPHmy1wtKEanuzUzrnb+28lzBBWxPbuvG
pU9DRLb3+ZQyDrAZPy0vJxk9PIBih372ceGFxqOZtaMUl7N1mIp1j0GOTmy6UoCG
24rZAylpkmLZ3j2q2musNaA6NHBmD5AaPQ9et5zeQTHrbk9XD6flDG+Ng4SPad0s
1Kxg+vv42uKAOXdbYnDHJpRdx26euicPh2OvQUHj3NkqTjJol3EYPwIDAQABo3Ew
bzAdBgNVHQ4EFgQUDGmIpm8HjI1tOD6GeqbEa5qml04wTgYDVR0RBEcwRYIVRFRF
RFVJRDAxLm5wdWR0LmxvY2FshixodHRwczovL0RURURVSUQwMS5ucHVkdC5sb2Nh
bC9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAOi2Nhsaia6h25ry+
Xh+HpQtiT/sLP2ggjspS1QXxcAJiu4lR9f/8W3bYd0+1pvef1oZfmznexBxtLy6s
h/5gI5voejZ7eeSuCEuKtQ8qI7KirJsstVHW0seVXSrt1sVq9P4fJRUyoakWrccn
lWPmqCLnblRuHt840zTMV1h+9ft/OGa51qZcSasr+nz+qWTAiSLzMx/FGZuGE3c+
CjK34LQajfhN6m1BYHp08iN4HZBk0E5AgbfXe6N6DL8gGPlmBvGj0iVhKxgGVxaZ
xrt8s3pO/kzF8ONEe6NnXyLKuKSz1DGJsybREWyopstEZSqSKXMNa7DdUKBjS7Ay
97B7RVLqDYoQKO5r0hDdmQKVr4+uWzHLQF7WyHoCwTgO32NAiSeE600MIotyS/sZ
6UVTXTPB0L7x7eMzNPDQNrI71jUaPDtZPLYlNhu6YrBMPiqDmmSBHjXkFI82kaW6
vPRHA93QubU+IWwn8Y2EXzgxPXFcjtGUITZ1YX14XsRnybaS</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEQDCCAqigAwIBAgIVAJyiWX3fvWI5sGgnkVey3EV+VdCIMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUNbqwFgFDI5AppBQ23MuwQaZ+ftIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.npu.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The National Heritage Institute</OrganizationName>
      <OrganizationName xml:lang="cs">Národní památkový ústav</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The National Heritage Institute</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní památkový ústav</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.npu.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.npu.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <Company>The National Heritage Institute</Company>
      <GivenName>Petr</GivenName>
      <SurName>Volfík</SurName>
      <EmailAddress>mailto:volfik.petr@npu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <Company>The National Heritage Institute</Company>
      <GivenName>Martin</GivenName>
      <SurName>Dohnal</SurName>
      <EmailAddress>mailto:dohnal.martin@npu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ntm.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ntm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National technical museum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní technické muzeum</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for National technical museum.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance Národního technického muzea.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ntm.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ntm.cz</mdui:InformationURL>
          <mdui:Logo height="160" width="160">https://idp.ntm.cz/idp/images/idp.ntm.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUeGXM1OqAiF/SD+azYj8nf7zltgwwDQYJKoZIhvcNAQEL BQAwFTETMBEGA1UEAwwKaWRwLm50bS5jejAeFw0yMjAyMjgxODA0NThaFw0zMjAy MjgxODA0NThaMBUxEzARBgNVBAMMCmlkcC5udG0uY3owggGiMA0GCSqGSIb3DQEB AQUAA4IBjwAwggGKAoIBgQCJ8o0edkITCykVjBXWUFiqgpXEN3PJREqRewl9F+O8 scj/RTWlqWilccVLEmwvwYMAMdG32PHv+sXfMjujVLWfglKRlapHjgi6NDAGjlnI DMmK9QJnOUCbSAhQopyGNnqRMpSKYH75twO1YUJM/lrUajwsMA4nNB7P3Eza8ZQw y86KAlpa6Zk7SbcLtq1N97x9pX/Z2FAR2LaejyuwTWBljmerhI5n6ciTy4q67lZ6 GY7t6NsLqHLk0Ni3BUx3M/QLp9PxilBbt+GC9Tw70o1UNQIwYnfnDJ5IDVI6XCow Leopsgwdf8hIyDwK5DIzKaCLrr0YJqA/ppfYySygbgn/aeP9FCWMfOm2AT5YKpVq Aqyp0LfNrBLiFDUAukD82aCHhRYMNw7L5bKqzjO+6WNZKPjlOAoaxVyWm5XmFSYh fHQg0TYqFEq8OH2ud4myLhTpz9ktspFNwfdQI/w2L5yX4DD6Dr+EEnpmWtzhblgo Wj9HosMkGzMA2MgX+uHuf0MCAwEAAaNbMFkwHQYDVR0OBBYEFG1KcbA6/+WvP7l7 HG2RgqEGcKvzMDgGA1UdEQQxMC+CCmlkcC5udG0uY3qGIWh0dHBzOi8vaWRwLm50 bS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAeSjn3d846adn ZBR7i6roZlvBfMpwHHlTPl5pYial/vyX5B+dbxRIob+t2ebx5PUO6j9EPDIoxNQb E8/GMp+P5hz85vgurHazsdD+jp0y6bZjpGpnf1aXeLZx59Qyu0hmUO3fxJeT7ZD7 qR4qjBRpZaBiKmRfwUbOqjUz/7z4V/PYKl8q81n1LNPQAPCjf94zm2gb4BaOJ9xO gtIs2TJmFxxgTWGQ5UVvur+7FVf2ij9dHhGkVSCv2PAPQM6hxTgl/tfgqAUqHnHd jGWeYTMb0CaVqNYrnmBUKykxKFk7QB/NYzMRi08X12oQGUaXigioUapT+VtJcmmk XzHCgzb1QS85ZsPiGAKDL9kZlkdSHE+/PrMko4RW45Q7t2QqeB5pF0BZRdVn35Go t91KunuaOX+qT/OGOg5/jpDIGH0ubagZnLDeCtrj0PXuAvBUQjdD46GQqiz90AWC Y/nF59UY39tIscAPWigxhJGOkz1wa1GqdrSMoEbrlKmYseczxtz2</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIURAeqcsRhgCNBDa80KRIzYiRiAGswDQYJKoZIhvcNAQEL BQAwFTETMBEGA1UEAwwKaWRwLm50bS5jejAeFw0yMjAyMjgxODA0NTZaFw0zMjAy MjgxODA0NTZaMBUxEzARBgNVBAMMCmlkcC5udG0uY3owggGiMA0GCSqGSIb3DQEB AQUAA4IBjwAwggGKAoIBgQC2vFgamH/PdokFtyeFDcV4DjzZ40HnOsIL0dkpApEu 2P+NY1hXsIHNdNgc1TZRbH4CT0HV61maRZd7T9v7zLd/4cDmrSLFJ5MrXfNAkZyF 99LKmOJrvXG+XtYoE7qSSHwks1X39uplnYYkxnCFUHvWBmRdvBIN0O9nCQ2HAZ52 9CEyoUwHGJkbp/ULkViAl1VZO0zp9/1NGMLQoM5/nkdVsukORuwwn+n5bwxLuh5W nwBbLCw9KcwEro40OWZHPMDN/EzmO5XAnZ/NYfEU05cjz0VAAl41DXduwbW7tiyK NExlcLOhRejhTztSmZ2IPhxu+wAon3cTZs6MvTgAsdxvtPNtP+60Rv/+3EECl04Z 9pqFTJIX6SaGNebt5AduLTZ4NoxfPhgoy1+m5DtIe8kwsDPPfudYQMmAea3O9Vdf D6vL6jonXvHzpJeBPqa/MKd6oH4Ey85Qx4sQ+0vTJk75YY7WvicdaNSpIsisatRj +Hg7csAnNJQPcN6WhXcrOYcCAwEAAaNbMFkwHQYDVR0OBBYEFEuc3FQPU7yQfe8l SsrHqbSiC93hMDgGA1UdEQQxMC+CCmlkcC5udG0uY3qGIWh0dHBzOi8vaWRwLm50 bS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAR/zv9NNcXXKl exvESyOxpyoJW7J3DSCDwAU6It2htzYyNP2mFKUHYGwG+D9W3cVAM/f87fdKq+8x XUoMdhS9k0cT/Wchur43CqkwiTD1i24gkTopBO3CuGRHbzOHyNBvkjyYGW8XbWOP oxc1c36zAFzXMZ62UmelsnqP6iM3CVDrvo67wfwceSnIJovPreTK4vSObdZazTf7 EDHTz1P3NwQprJWE/sjfrq4Sbhc2qkU+LfSujUkV6L9evtgN7njMB2DQjsjFwxvs ReS0tbkBLoQjEYZ4C8HEdQ/98zn9McYj7w1oLfUJMEcJK7upIjXZmvaj1LFc09Hb 3z2xjvbcUpgW9592uHltVOHdPlUq/ErorNl33NSI77n6trvOOhlsJNnVsbUdeUfc QC4AbBqUYxwRwz4/bhwsil/+ZXi3iifzUeOt4kFuS45n75Yfd+dJBJtcLIlNLDhn HVpROgzJvBbbjgOuYtYvVpZYMh1Som28cWKathSq0gBfpfYDvVyj</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ntm.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ntm.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ntm.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National technical museum</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technické muzeum</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National technical museum</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní technické muzeum</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.ntm.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.ntm.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.orient.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">orient.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Oriental Institute of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Orientální ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider OI AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance OU AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.orient.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.orient.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="46">https://gedeon.cas.cz/loga/logo-orient-44.png</mdui:Logo>
          <mdui:Logo height="100" width="105">https://gedeon.cas.cz/loga/logo-orient-100.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUVI+wlCwxsHozObQ1leRTmoEPSQMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLjCCAhagAwIBAgITUWLdXUvLpX1/Ra1k0odWtlzfazANBgkqhkiG9w0BAQsF
ADAcMRowGAYDVQQDDBFpZHAub3JpZW50LmNhcy5jejAeFw0xODA2MjYwNjEzMzRa
Fw0zODA2MjYwNjEzMzRaMBwxGjAYBgNVBAMMEWlkcC5vcmllbnQuY2FzLmN6MIIB
IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtdGhbNIdDV+RDqizi4Xu2rEh
Soc/nIvHvc+j2gpoyUYFLm8EwrGTox1LU2yE1Af8RPh4hcWO9oaElOrYRrL37vv5
l3K2Nu45IeVs/sUHeGJNPXDvgbbegTbueeqw0rV9T1k3zHi9yBZEoerXIUDi5I14
s/b4pm9fywH1GOi18P2PQdnEn4EohrZ+ycmWpp6rr8eaXJIighLLvc3qO1qeVnKI
o4MpDAXJw8jRd2sgbAFI01mlPF1uu3fm8UOzdk6X7uAu1L4qQNl7O1iUL876XC0B
I/R41qnO2lv+uaQPCSNYB+fMxbFrZB7i+S0q+S0H2ePV7cIP1yimW0LrIwwcswID
AQABo2kwZzAdBgNVHQ4EFgQU8kOKYrmM+Ykp/RMZELIfzhZzkeYwRgYDVR0RBD8w
PYIRaWRwLm9yaWVudC5jYXMuY3qGKGh0dHBzOi8vaWRwLm9yaWVudC5jYXMuY3ov
aWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAJlClnLzcnZZvjXj2Cd2
ptoIyBLW84rSZrBynR5Rh6SxjyuQ6iUG0OfLCr6nL2P6kvxpT++1Ql7eXiAlp1Y7
CMBu1bYMcpQEyQE/LgDRqATOvooesN5cVu89PAz/BEbM1EBQCXC76HQcrPVY1xJv
cMOl2XekebLKA5pvhojXI84Ol0Rt0pGrYf+bBCPVxWOe0cyBiOhdEYoSlB1ECcrS
Qxt9aUAK1zD/gr9RoxJR5XORk1TGRCX0clxOT1/ligamg4/eCpB71aGx0+BdtYSx
WKnBymI0cBArdHQS9ubbUu5XqXp4eYw+IG9C7U9YdjQjmcwSXWQ42DZU+Y78qV1L
4RI=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUEGfQ2/XwOVRZ8bhDJJKFIMGHlUkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.orient.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.orient.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.orient.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.orient.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">OI AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">OU AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Oriental Institute of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Orientální ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.orient.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.orient.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.pilsedu.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">sssp.pilsedu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Stredisko sluzeb skolam Plzen</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Středisko služeb školám Plzeň</mdui:DisplayName>
          <mdui:Description xml:lang="en">SSSP's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro SSŠP.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.pilsedu.cz/eduid/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.pilsedu.cz/eduid/</mdui:InformationURL>
          <mdui:Logo height="200" width="366">https://www.pilsedu.cz/images/loga/sssp_logo_transp_h200.gif</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUT6dIPEgAkN17y67+X+yzdx4rBtYwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLnBpbHNlZHUuY3owHhcNMjMwMjAzMTMyNTM4WhcN
NDMwMjAzMTMyNTM4WjAZMRcwFQYDVQQDDA5pZHAucGlsc2VkdS5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBAISb3YUy767NTAajBqPHTzK473TspGop
zWH8E+ORN9vHqrbfg/wX/lAwN3ZBUKAcKpSCM7zyQZ1C/TkdAL6uYkXj87IVrsRL
IjiiTxr6T5ZRt2SJmfsi2Rehhh9/ch72Sm3ssg0XR7bapOAol5NUqsKBv1FbOLGk
a3a/r8PkkBwlF2HmUskfMeaWpLsdSREeEuHDmBC4wFkEmHEcfGInqQcjQuTxhRAT
Jv/NUecI8w+v35xwWiJPcrb8LWdFbhmqidGq1bm2qS8iwOVGVlLuUvTkAPletRpI
MS4DVHJeyFvJp59aSfJmbTX2C0lbztsrvmpbfidQjzmzJcC6qEHh1uHHWGjh7GTa
Y9q7b1CDqz1RH/OJKaQ1tigvKB0E/NIrEEuzjhec/GhQExPpzJq1xC10tHr9df9d
C/9JH/efZiUbeWHO0nGfo18ZgAZGppf7yr+12ZV30S4sTU6m/FJLUnnbG1QSr3XG
XQikpKePIOhlOFxdvycjKZBje6dwxcmqcQIDAQABo2MwYTAdBgNVHQ4EFgQUG+je
ckTmtjclBhL65J2bnW+Yj5kwQAYDVR0RBDkwN4IOaWRwLnBpbHNlZHUuY3qGJWh0
dHBzOi8vaWRwLnBpbHNlZHUuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL
BQADggGBABvBeqfJqTCb3YMRM3ut3o5UdK2wGiQXdTvet2FmbcqZYKZ9EHsbK3qL
vsJBxUTJ452tQijXPcKirotWeiBfPXoWyigTwYB5Hk5ndmN/8XplsOmSzlXBsCYF
Lb5aqGDsWRmyssJR1vwSevxaIEnTh/9ToIrvGGA1j5LWJ1JqxDWTaJ73qm2szgbK
moxQuWQcbaCNYnXlvtv0qyM6DDjBbsO1OProSpklLrgThBKXNXVR2BnFkejs8Juf
QWHwGB8w/98aI5ofPs3VEdKak1HNK/Ik4495SS2BUo72+hjcIYoiDqpA5OhXeUD2
2+lMKMUZdMC/q1wLqEF5qqAOYZvLGbEJVdNqAsJqDiLTLOJ4ogn+/aeINpk5ra8o
vCeMsx2Pk4GEjsm5jP5mV3KsCemXLF9S5ly+cO7Tpd/WmK/d+J2SowaOpU2rX/Ad
EB73zsKxuhlvQu8DdTsqBq0KbJZg6Zyj1f62ayKgk294v3G/drqf8PKB7VeP9ovW
9n+AUbO2fA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUdVyvMmkvaibqbPZ3zvdzYhqvic8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVALlZmk9x42/HKCO4hsaS/VhXfZO8MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.pilsedu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.pilsedu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.pilsedu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.pilsedu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Stredisko sluzeb skolam Plzen</OrganizationName>
      <OrganizationName xml:lang="cs">Středisko služeb školám Plzeň</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Stredisko sluzeb skolam Plzen</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Středisko služeb školám Plzeň</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.pilsedu.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.pilsedu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Klečka</SurName>
      <EmailAddress>mailto:martin.klecka@sssp.pilsedu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.polac.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">polac.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Police Academy of Czech Republic in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Policejní akademie České republiky v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for Police Academy of Czech Republic in Prague employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Policejní akademie ČR v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.polac.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.polac.cz/</mdui:InformationURL>
          <mdui:Logo height="484" width="484">https://idp.polac.cz/idp/images/idp.polac.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAKT0BYVCocDVIVQ56w/Lw254RVBfMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAPS/0m2VQeCCECkHPIxxjxGK8zc4MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.polac.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.polac.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.polac.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Police Academy of Czech Republic in Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Policejní akademie České republiky v Praze</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Police Academy of Czech Republic in Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Policejní akademie České republiky v Praze</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.polac.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.polac.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.psu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">psu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Institute of Psychology of Academy of Science of Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Psychologický ústav Akademie věd České republiky</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider PSU AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance PSÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.psu.cas.cz/about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.psu.cas.cz/about</mdui:InformationURL>
          <mdui:Logo height="44" width="43">https://gedeon.cas.cz/loga/logo-psu-44.png</mdui:Logo>
          <mdui:Logo height="200" width="197">https://gedeon.cas.cz/loga/logo-psu-200.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANoSjMdx3Nr0z3B2sV7wM8bBIV/nMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUA6ubbh9BvE1y2esokVlq4q42xxQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVALV7zqP/ke93cN1lt7HbgX/UKYVCMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.psu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.psu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.psu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.psu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The Institute of Psychology of Academy of Science of Czech Republic</OrganizationName>
      <OrganizationName xml:lang="cs">Psychologický ústav Akademie věd České republiky</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The Institute of Psychology of Academy of Science of Czech Republic, Public Research Institution</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Psychologický ústav Akademie věd České republiky, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.psu.cas.cz/about</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.psu.cas.cz/about</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.rkka.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">rkka.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Library Karviná</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Regionální knihovna Karviná</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Regional Library Karviná</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Regionální knihovny Karviná</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.rkka.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.rkka.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="91">https://karvina.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://karvina.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://karvina.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://karvina.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://karvina.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Library Karviná</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Regionální knihovna Karviná</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Library Karviná</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Regionální knihovna Karviná</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.rkka.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.rkka.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.savs.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">savs.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Škoda Auto University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Škoda Auto Vysoká škola</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for employees and students of Škoda Auto University.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance a studenty Škoda Auto Vysoká škola.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.savs.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.savs.cz</mdui:InformationURL>
          <mdui:Logo height="122" width="400">https://idp.savs.cz/idp/images/idp.savs.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVALM1t4jUNJ/EMZePVDibx+YlRVFpMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAPh4958xkUL2X+kj9BtIHsbHtRrWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.savs.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.savs.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.savs.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Škoda Auto University</OrganizationName>
      <OrganizationName xml:lang="cs">Škoda Auto Vysoká škola</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Škoda Auto University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Škoda Auto Vysoká škola</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.savs.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.savs.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.slu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">slu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Slavonic Studies of the CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Slovanský ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider SLU AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance SLÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.slu.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.slu.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="38">https://gedeon.cas.cz/loga/logo-slu-44.png</mdui:Logo>
          <mdui:Logo height="405" width="348">https://gedeon.cas.cz/loga/logo-slu-405.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAL3w4cz3FflPBf2t85nysvmKg/gDMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUFSeRs5/i9gBMLDu2P2zev8W9+zkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUCZ03xcZCqdi7+LksGFtrz4ybLh4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.slu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.slu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.slu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.slu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">SLU AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">SLÚ AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Slavonic Studies of the CAS</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Slovanský ústav AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.slu.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.slu.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.soc.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">soc.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Sociology AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Sociologický ústav AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider SOU AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance SOÚ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.soc.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.soc.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="70">https://gedeon.cas.cz/loga/logo-soc-44.png</mdui:Logo>
          <mdui:Logo height="1237" width="1959">https://gedeon.cas.cz/loga/logo-soc-1237.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIRVAwXJ3ySaiiR0zI2Uqsq34TxdMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUAmQDhA8umPob28qOghHn32MeLRQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVALZzVNrCMD/HjwOK0M7Qy2wUHi1EMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.soc.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.soc.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.soc.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.soc.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Sociology of the Academy of Sciences of the Czech Republic</OrganizationName>
      <OrganizationName xml:lang="cs">Sociologický ústav AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Sociology, Public Research Institution</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Sociologický ústav AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.soc.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.soc.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.spsstavhk.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">spsstavhk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Secondary Technical School of Civil Engineering, Hradec Králové</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Střední průmyslová škola stavební, Hradec Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for Secondary Technical School of Civil Engineering, Hradec Králové.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Střední průmyslové školy stavební, Hradec Králové</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://spsstavhk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://spsstavhk.cz/</mdui:InformationURL>
          <mdui:Logo height="515" width="509">https://idp.spsstavhk.cz/idp/images/idp.spsstavhk.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUc7Zv9D2FgQVXC5fpcFpC7e3Q1DEwDQYJKoZIhvcNAQEL BQAwGzEZMBcGA1UEAwwQaWRwLnNwc3N0YXZoay5jejAeFw0yNTAyMjExNDE5MTRa Fw00NTAyMjExNDE5MTRaMBsxGTAXBgNVBAMMEGlkcC5zcHNzdGF2aGsuY3owggGi MA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDowyBN7GFo8bTHpViZIjBgRL4o v+D89VplMmbzddJgH2+p6XC3xlbo35X439cfr7Hfs2K1CEUuZ7Qw5g9Uy8lJim9Q +/O7oH1Mm0+kjj85HMRKY7peOceckylP7IjANxfdhz3zDmDM7D8MQmX9N8OU+ROC faTc02s36piea0ruo6YS3Emexx/kfl9euAhvcw8mlwDr0MS8dgcdADcmPxJ+E0To 6LTSoHmwgf3smeAlNAm3UlhVJUUxCFQyvJUKkr/yE2eBpkKsfF+fw+ayQ+Q8ILQD dFJsVXaowtwFX968PSotgbdLtarZdUV7cOtYJUbrbKZs9fZX0x7eiJInbk7A9nR5 gAFh4LYf9piG3QziahownQdrSpLuxZgQgQlw87R3QZtgNTBSpZ++655TFZ55romq Dwswf0N2P2i1Hhn3Mqqs4h6xB0XENPZdBCsIlBy+TM1xE8LVCCRW4kJUfhRQXepF 0hyRE61bP3EAGVPoMv8cK3GTBOz49tMTlUPrI/MCAwEAAaNnMGUwHQYDVR0OBBYE FIgkLkSGfM6ONVJV2nBiiWeSoQt+MEQGA1UdEQQ9MDuCEGlkcC5zcHNzdGF2aGsu Y3qGJ2h0dHBzOi8vaWRwLnNwc3N0YXZoay5jei9pZHAvc2hpYmJvbGV0aDANBgkq hkiG9w0BAQsFAAOCAYEAx0iSlBnuyoAv+lmNnl8Lv+9pOZpGAErXm/vt4v517aOX X8LGzCdEMjONixTjxoEDF9dJT0iQtqPCxbCgOmWWeuL68Zme8WvShqp/7tkL/EBF y7pOU3RcJQVdztCud3/pvTIaCKhV234YYx/FhcJiHJ0oxVVKU/OEZlCHIXEcl6WA rBfkDELycxoP7ZCeQfg82TiTJyxJHMW6IXQY6ZirYXB31yAHYM7RkeRfiPxo0Zob uf+gKzu6OARlgrF8Oz1LkuX8tTB1SnW/RFoSdsjwYPHmDnLz0Lzv4TZlqN4vOQv0 x+kFqkVmceGovC9fOO/Y3zafuGqU9x4t2oguW48rfN7061dNBIdl5YO+fNsXKziv QkPjX5UweZX714TPPoqD1xtHhoGW5N1tEu3HI+aiFmHi8lAYzSm6JBtI3rQPVxpt /5jmiQb6Irq5MpLQ5eey8HpVeriho+dz+IO0syUgqC7POG6btt+rQIKukI+3Lrig e9AH+7Ibl2KlFfhquPPV</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIVALnK6aIRgCCl3YDBha+KV4Me4gKTMA0GCSqGSIb3DQEB CwUAMBsxGTAXBgNVBAMMEGlkcC5zcHNzdGF2aGsuY3owHhcNMjUwMjIxMTQxOTE1 WhcNNDUwMjIxMTQxOTE1WjAbMRkwFwYDVQQDDBBpZHAuc3Bzc3RhdmhrLmN6MIIB ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAweFWrHtyUNNW/Gr19Rs/9nB6 HW619DSIMUMOdMTTQcVi3yRS3Isy41Rq5W0NcNbnxe13zuvW1/QXfnLp+PPjxt3C USqLT5y2JFDItm/n7mC7wisaja5qR6I02HItFDYrVafP4J802rjNdoobU6EY2nYG +gEIUEVl/FlEMj8Y8g4yKT4YuHmeb73dtl6iD+IkzLjWAf1M44qX4Ik/W9FtpEsh 538YefycARiLHow2VdPPbQzzbuWko7V9kN2nuWnouOJIQDWeyU0ygDuGF5FrW4Mz 6pnBJ9NXYiKlJWY9qiLxIZK0aG/jZvy6xXq3Pa8tmVr5CLM6SR4IxyIHQZQgvVCS Rniecjq5O1+co0QYc+hNWKOcZaGTjV8dtttkcvpxMX6YfOqnkcueyz7Y89sSr0Ni sF9MUtWYKXQQXsu7kktQisNmEWPTPftO/itHdk5qTSoFRtuRhwo61PWg3ikOodHP zA3kzvQEAHp49hobkakb7njnCwHpgsWDw6+ya69bAgMBAAGjZzBlMB0GA1UdDgQW BBQqciEnteHyzxjTxtMJixN5CRAHuzBEBgNVHREEPTA7ghBpZHAuc3Bzc3Rhdmhr LmN6hidodHRwczovL2lkcC5zcHNzdGF2aGsuY3ovaWRwL3NoaWJib2xldGgwDQYJ KoZIhvcNAQELBQADggGBAEFJ7LaRGeQia8LYh/7AZwagLQ1UaOsnZLUSOuoowO6t zlTY6WbWOElmsg+FhGSDSX6YvlFM5Xt53a6m6+WjXX5gySZbdqPlzCSIzaMdhCuK Rv9RToeb1r2kvCe39s0Rjqhh/9Jge5QMDkc2CSgROKd+bHMdfwWMhtQsgZwhEhxu M+hLF7trzkZD6CzsEtTLR5/BbQ5Eq7ApUA7+VbPNfhMfrHiHjkCjT5i5g1cKT8Cw jvYzwmvUZFpNBz9RoqU87qVqYGw0WGIEhD3wq4b1Q5AnUjb1Sv2g5ALp8LwOw77Q WPuFvW5xPX3sWjbGfuEc/VDDj0f7duAGp7+Rd4egP+fuMfzDM1KA/DDYkDKb5GAh 65F4mmzfrX9xOp40q71XgsLIyC6B2lZ2JoTsN/+IRa+dDZYXuVff3k9t/VUb0Tbh 1V7rER3cW1svJbZSudTS8ECMd5DoyfkFzBxcZeC8Q1uswaoHYYu5Sbq8BC19psk5 wlJbSycwH7I18QbMEvt/Tg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.spsstavhk.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.spsstavhk.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.spsstavhk.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Secondary Technical School of Civil Engineering, Hradec Králové</OrganizationName>
      <OrganizationName xml:lang="cs">Střední průmyslová škola stavební, Hradec Králové</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Secondary Technical School of Civil Engineering, Hradec Králové</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Střední průmyslová škola stavební, Hradec Králové</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://spsstavhk.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://spsstavhk.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ssc.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ssc.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Centre of Administration and Operations of AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Středisko společných činností AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider SSC AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance SSČ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ssc.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ssc.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="74">https://gedeon.cas.cz/loga/logo-ssc-44.png</mdui:Logo>
          <mdui:Logo height="638" width="1080">https://gedeon.cas.cz/loga/logo-ssc-638.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUH+9s+EsAoecplRXJyLBgG/ZkwmwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUXPYLmocUcTH+oKw7G2+QXKvjEEQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUO+a4F1CQBqxJA1JElzFTYRCgOIswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ssc.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ssc.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ssc.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ssc.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Centre of Administration and Operations of ASCR</OrganizationName>
      <OrganizationName xml:lang="cs">Středisko společných činností AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Centre of Administration and Operations of ASCR, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Středisko společných činností AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ssc.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ssc.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.suro.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">suro.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Radiation Protection Institute</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Státní ústav radiační ochrany, v.v.i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for SURO employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance SÚRO.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.suro.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.suro.cz/cz/</mdui:InformationURL>
          <mdui:Logo height="55" width="120">https://www.suro.cz/system/files/2025-03/logoColor.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAPcKNHRf7pgj1vaewBDBi1rGPzsHMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVALVMAA59foP6CQQA6nxD/QnqXo3GMA0GCSqGSIb3DQEB
CwUAMBYxFDASBgNVBAMMC2lkcC5zdXJvLmN6MB4XDTE4MDkxNDE5MjQxOFoXDTM4
MDkxNDE5MjQxOFowFjEUMBIGA1UEAwwLaWRwLnN1cm8uY3owggEiMA0GCSqGSIb3
DQEBAQUAA4IBDwAwggEKAoIBAQDWtK6l2n0T1jDNV60WcmQaKFWjblqJRvLwpaSr
hoBwMaPTzIQ5APg1XVMzXJeOjVmBcRnmv5baS3uMn/83pkJDJcFqiGYmfIx0gnAq
bnezCNbtpbW+7ikukXtgWPc2SsZtRfReNfCDJe4TiNFe+Jtog9XKzP3+WOz+uUf5
qPsFgPy/CXzwTPTssQ+XY9xL6VcO+xTsgvveKgHOPyf8AvHhA6+Ubpn0vJCQLIg4
pxKZza3cHIbxHDJS1DWjnQZdlgMkUX1VmStg7u9A10o+Q/lm0OlwAks4Jt0tE5Lb
td0IIiOMGUg3+TLr3O2jD8ePpLmOsiB9qdD0WcSyGvbjX2ThAgMBAAGjXTBbMB0G
A1UdDgQWBBTD8i9zNRy7gH187I8KqZ5eAFbSXzA6BgNVHREEMzAxggtpZHAuc3Vy
by5jeoYiaHR0cHM6Ly9pZHAuc3Vyby5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG
9w0BAQsFAAOCAQEAiWBdiMqeozg74dH5LlxesZwQV05OtSeucmI4JBDp09zt1iNj
Wnd5/tMxdTKv3vLUnWWIg3GRD7kNN+Wo3XJdvN8Zdp6h3B8vHExgvBSGXTA3qVZT
fwf6o5B7DwZnacytwbvS28SEwCcanTsXHfcB22k8u4pcr4fjyVg36FraJ5QuBzv1
leGX9vsaPGRKEmj+JTEX6WJ6D2EePVoDVLVyBLeKEhll/xjQ4nzNGKTuZGfDC5MW
TfbvZwkHDytPX+uZFzb3fO8+pstrfu1z21FO6Q5/Stpu/rUeZIiRjR5KVuJ1XpIg
29H1mxhm4DZj9IoDQ7AqvyTakZy5hkLqqcuPrg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAOsWShy5umTLXKR892OiFLuGF44yMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.suro.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.suro.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.suro.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Radiation Protection Institute</OrganizationName>
      <OrganizationName xml:lang="cs">Státní ústav radiační ochrany, v.v.i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National Radiation Protection Institute</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Státní ústav radiační ochrany, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.suro.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.suro.cz/cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Vít</GivenName>
      <SurName>Labský</SurName>
      <EmailAddress>mailto:vit.labsky@suro.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.svkpk.cz/idp/shibboleth">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">svkpk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Education and Research Library of Pilsen Region</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Studijní a vědecká knihovna Plzeňského kraje</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for patrons and staff of the Education and Research Library of Pilsen Region</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro čtenáře a zaměstance Studijní a vědecké knihovny Plzeňského kraje</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://svkpk.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://svkpk.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://idp.svkpk.cz/idp/images/logo_40.png</mdui:Logo>
          <mdui:Logo height="90" width="90">https://idp.svkpk.cz/idp/images/logo_90.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIVAKp765vajjutudknXqwb4H+j/L8CMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIVAJ3oMKD2SjMU6LAvjo47bFik11dtMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.svkpk.cz/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.svkpk.cz/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.svkpk.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Studijní a vědecká knihovna Plzeňského kraje</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Education and Research Library of Pilsen Region</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Studijní a vědecká knihovna Plzeňského kraje</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Education and Research Library of Pilsen Region</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://svkpk.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://svkpk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Stanislav</md:GivenName>
      <md:SurName>Teplik</md:SurName>
      <md:EmailAddress>mailto:teplik.stanislav@svkpk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.szu.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">szu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The National Institute of Public Health</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Státní zdravotní ústav</mdui:DisplayName>
          <mdui:Description xml:lang="en">The National Institute of Public Health's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Státní zdravotní ústav.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.szu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.szu.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="120" width="120">https://idp.szu.cz/idp/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVAKolznvBzqtyAEa65s3kApBV3vEdMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIVAI7hG8bRq2dMDXQHBoXieIT44sqWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUOnRXLnWuMz6zXermuxQaxFuZ9LcwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLnN6dS5jejAeFw0yMzA0MDYxMTI2MjVaFw00MzA0
MDYxMTI2MjVaMBUxEzARBgNVBAMMCmlkcC5zenUuY3owggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQDBeQtxOurIydRGT6Qg057pz76mI0Uyo4wV5o5PmcnC
LMSuhKcavmCBbB4ZLdyVCGyEuja2J4Hbia9e++tNpYNLr5hRby0oOh6TlCMsKiAU
HI2Rag2OxcW4IH2pktIttEH0rWoWKC+zI5aXlWRXzixAuMucfYDZFijoWuVZhCZ0
C0KwWQlo90S4HNl05xXGUfnZz2iv8ZWaFY+2v88Gu2olc9wALd2D4iI+YaTo++Ce
jmc7YZEc9BZcE9/AzQBcmNt7Sdcq1FSTohxH509G8Rxr0q6miO3SuKuI27SE9R+m
D4Up/HDtr4DJbwmDIXBXHeVZCR+64biMwBwEdTCb7s9sIs/9S1a+GUXjSZOiiaLG
kUwoWpI0+amAsY4il6WkfA8eRK2SJZ52RqTAsgO3dHTUZWF5KHAENNgaENAnawCX
4fpwzRKQyHpr88fUr6LQs4v4R8LNsRvNOPxQyMa0xm9xxVlGImssy1A3FqjOMXa5
7EBK+2RORiE7OY/5O75DkUkCAwEAAaNbMFkwHQYDVR0OBBYEFG13Usd3PAxvsAZ+
xv/tsd6E8A6eMDgGA1UdEQQxMC+CCmlkcC5zenUuY3qGIWh0dHBzOi8vaWRwLnN6
dS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAS18HrB5biS28
vfcI/DCTI5czSeiP02JO9qSxqVoPQSqFtkJbaE5sy7xe8ATfvhaMJZzez3I1XAtK
qv9ZhgD6/BX2PZSEWH8yybeam9tjZige8E4FaJoyJs7ENohk2fjRHDMkyqUMg3ic
7m6sRP5vmf3scMzsQ9QLtEIKvCTQ3Pa786wkRCHJ3pYgpciS7siZzRACuIM/k++L
/VqsjridtcNvp/0j1qchRqw/NHPLb0ubkR8VBD/1rx/J88CyQUZBr4x7ERi9VP+v
CljJ7S1tekCuGnwNL1r3cpgp6akmjyId+s2VSjDPOt95ITs5o6x1KH8Tizq0ExqB
s6ZM48KTIvzzYvLGvfQHDrWgMdniJ78hmLeuf/cve5cJEz1k2ySZuPbMkwd0z8lg
zkDZ6rgN9dBvRpcseqtUs6FABVUFkodDyDDq6klrtz1bMQeHJTU7SJ6j5nqNi6I2
aUpZS7hgrhgKpeGS1skLZdyemZ8ezByKymB0SO/XQEdkOimPAeoH</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.szu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.szu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.szu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.szu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The National Institute of Public Health</OrganizationName>
      <OrganizationName xml:lang="cs">Státní zdravotní ústav</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The National Institute of Public Health</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Státní zdravotní ústav</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.szu.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.szu.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Marek</GivenName>
      <SurName>Žigo</SurName>
      <EmailAddress>mailto:marek.zigo@szu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.tacr.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <shibmd:Scope regexp="false">tacr.cz</shibmd:Scope>
      <mdui:UIInfo>
        <mdui:DisplayName xml:lang="en">Technology Agency of the Czech Republic</mdui:DisplayName>
        <mdui:DisplayName xml:lang="cs">Technologická agentura České republiky</mdui:DisplayName>
        <mdui:Description xml:lang="en">TA CR Identity Provider.</mdui:Description>
        <mdui:Description xml:lang="cs">Poskytovatel identity pro TA ČR.</mdui:Description>
        <mdui:InformationURL xml:lang="en">https://www.tacr.cz/en/</mdui:InformationURL>
        <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
        <mdui:Logo height="40" width="40">https://idp.tacr.cz/idp/images/logo_40.png</mdui:Logo>
        <mdui:Logo height="200" width="200">https://idp.tacr.cz/idp/images/logo_200.png</mdui:Logo>
      </mdui:UIInfo>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">tacr.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Technology Agency of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Technologická agentura České republiky</mdui:DisplayName>
          <mdui:Description xml:lang="en">TA CR Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro TA ČR.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tacr.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://idp.tacr.cz/idp/images/logo_40.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://idp.tacr.cz/idp/images/logo_200.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVANVAe9D8Wdei9YngDEMNxdZOoI84MA0GCSqGSIb3DQEB
CwUAMBYxFDASBgNVBAMMC2lkcC50YWNyLmN6MB4XDTIxMDMxMjIxNTEzNloXDTQx
MDMxMjIxNTEzNlowFjEUMBIGA1UEAwwLaWRwLnRhY3IuY3owggGiMA0GCSqGSIb3
DQEBAQUAA4IBjwAwggGKAoIBgQCU0dndVm7virmFm8vJQYuF8HuhZviJeD2tPpX4
h111ydGQ9XpcNhLzR7KqMf0ugwi8X2MAKasVe7rJ5b4vV9hrQt8z6FpbcyCni3oh
+9cEkhO7WNmQ7reOFyQOPRJRDbz7D61cuLbARPiMhSsa59Ga6YBYVkxuiKt59rcn
YcvizmyA4KJDTCN7lWOhkP8iZPb/xFONrF4arhKZ8kmJgYEgdEIU+QtRyWy/iQbv
IEoNp5hMW8B9RhQARfmnZC0j19f+oADBUv/vRs5+c4FUufJV5enxKYEVHu2xzTuj
WG2h5wUhXva5H8hkHRik47I71uc73ftEP021/bZd9euev/SRZdZ45e3h7rywH+3e
Ji4XI4wvhyW0HbVwCRQCx4k4FdxsVEQY3xYWWbK1jzkkNI3tXgV8HQ8YIYwvaEXf
joDM02BKxaiwVnM0BQmY0etmDcVffIHa9mIor1nZD/XLTXFwoS8ROiGXLyYNK+Op
oMNK+LE2lLD3XkltARsgpdfw0KkCAwEAAaNdMFswHQYDVR0OBBYEFIpjTQVSmYIS
b4RTUK1v9F7umtplMDoGA1UdEQQzMDGCC2lkcC50YWNyLmN6hiJodHRwczovL2lk
cC50YWNyLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQB1vkyI
Lwv+7gyYe8+pcpKiR/efD1BKaKX4Giz8rnV/Z7hrz0VHH3OzBiNTrZ7cfIFmZ9Y9
q/5FQksmPC+7PUAqOeA1hRWvU/spB9QIXhbYYYgD4+W9XxBRiCwtI859QQtgJZDK
PvdnxtUWiPLTY6fnd6TndJiBJO4X5DSBkRTgEXDyu+Ys/x+XwAiTwI925i/jZQ88
AqCkFOS19p57BgfxljXTwtpTkiZdiFUyrrNlZsiVU+vPdBS+rJsznMJhjarGEuzC
ZCcGBguAgN3YDZncFHWLk4YMVHXArTPXaPM+1MaBYegQppEzGGHKJln1+yrmj9HU
5I7383B/5n+zIeIG0cjHsUDDqsn4GTohNGnDLhW9OT8RZh9H4T5Tkx0L+ShSAzRy
+cq5pvB//w5aNBwF3eSD/HY0on+Fys/VXVtF3WQ3h7mEJpa2ztaK9acmAfnOyBna
SBLPwm6NKiFYWfaCHHzj7U8pQyoHZGw3SlUWuWIAtfrXLKvF256wCZ6IJx8=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAPGhpmiz2g2NRORNMlm8npZEZ6dpMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAIjAGwNtWM2sIPl9sMBX4VHOHxGYMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.tacr.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.tacr.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tacr.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.tacr.cz/idp/profile/SAML2/SOAP/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tacr.cz/idp/profile/SAML2/Redirect/SLO"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.tacr.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tacr.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tacr.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Technology Agency of the Czech Republic</OrganizationName>
      <OrganizationName xml:lang="cs">Technologická agentura České republiky</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Technology Agency of the Czech Republic</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Technologická agentura České republiky</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.tacr.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.tacr.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>TA ČR</GivenName>
      <SurName>Admin</SurName>
      <EmailAddress>mailto:admin@tacr.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.tc.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">tc.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Technology Centre of the CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Technologické centrum AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider TC CAS employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance TC AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tc.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tc.cz/cs</mdui:InformationURL>
          <mdui:Logo height="44" width="81">https://idp.icpf.cas.cz/loga/tc-logo-44.png</mdui:Logo>
          <mdui:Logo height="650" width="1195">https://idp.icpf.cas.cz/loga/tc-logo-650.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIURg3ZbMIF89b5oiWkcsipd0a5CPAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAN0mJgEXslCj6eWhuL2nue8f8q8mMA0GCSqGSIb3DQEB
CwUAMBgxFjAUBgNVBAMMDWlkcC50Yy5jYXMuY3owHhcNMjAwMjEzMTMwMjAyWhcN
NDAwMjEzMTMwMjAyWjAYMRYwFAYDVQQDDA1pZHAudGMuY2FzLmN6MIIBojANBgkq
hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAnSmzkxTahln/ofBXFdP47ai03KubvhVZ
dciDAQ0+bfRDmHEcLXrPUAhi4UbkGS4KEgADb7SlWPEEKf+G7IiNjkmJV/ASznct
wyP74F1uTbI0eZm2ioxYOIlIvAKXPO/tuhuZjWG+awPlv6gJxuZ/iVnasBdPQo9y
pOKYu0EnUFRYyT2JOyY/VxaxJVu+mmlyW8KRtEUzsT6T5pUFer7vYUa5flJdMUs/
+GdMKEQbDpY+z+SPRMac/HAwdyUZvzXyfdOp0DBk1v9afX+5waUPRWn568SIQ/tl
TM1veLZrp6Gept3lrlnmE4wf0OuIw+wCykGmKpTw2WQ46hxIAMVKtYAR8xauLfLs
eQfLUA1z8bNPPcZiXnpM5wkLCaMD8BVpFnsHRXplC4pdbKscakipLLzttoYWSnnl
m+Bsi58/tjL5X2f9MZB0gYDB5N43fdOva12LXLjK2Rz0LZYkby09FA8CZu3OGqUu
zqHTWDGIppBQ3a6LwZaKw54xFWReKtanAgMBAAGjYTBfMB0GA1UdDgQWBBQx+gib
nK5W4VrMPXiI2N+7AhtnLTA+BgNVHREENzA1gg1pZHAudGMuY2FzLmN6hiRodHRw
czovL2lkcC50Yy5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD
ggGBAF5GCzQjkwd/EOypM5zbxRgR5TghyX/UDhVCRoM6P7Tn9/Hwbqo+W7ynjDRG
z8VPLJmzWDrf+baZptryjscHrEqT+bQU/NbGol4sWqgwBIZ5DN1ILHXzW89rZRi2
gCWAgxP+hLVx2rE+GoN8k/9R2T2xsXXXzU6w2WMKn0sP8qucHzBhvUx7culjUjCb
itTqvOH9w97h2y9nkTRhI5OkD35lCQccgXRjxypfoqV027ZU4bhE4GBS9J/c9YH5
T1zLtZNM0B6MFEKgofjUKvaWYCu//ZtQcKSGyCU4gRMmZx4VR8GKTih9FmbTcYJ+
4lpzLjpGc43YNB0Onlv+oYpn1fZTvGnHsmjviWXVenTIAW/YScdcDeefpbZS8pbU
enzwhQoChJt9P9pyPIYV9EiTw0dOyPEjtrxMdP1iB4lFhK523Io5GP8hkvi3mpvz
YR2hknxlWIhQjeGwoJY6ffoqxuuMvC3FsV9Lou4+Y07J7Aa5MV+PFuPFKV80he45
dFdtnw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUbPA1MQAbGGHJP+4v3rCtAZw3PoEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.tc.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tc.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.tc.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tc.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">TC CAS</OrganizationName>
      <OrganizationName xml:lang="cs">TC AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Technology Centre of the CAS</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Technologické centrum AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.tc.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.tc.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.uapp.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">uapp.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Archaeological Heritage Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav archeologické památkové péče Brno</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for Institute of Archaeological Heritage Brno employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance Ústavu archeologické památkové péče Brno.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.uapp.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.uapp.cz/</mdui:InformationURL>
          <mdui:Logo height="81" width="400">https://idp.uapp.cz/idp/images/idp.uapp.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUTmDqzkW9gfSpNI/ZkBSwTNQi0ZAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAMXtAkPUKC9DBaNIq6aVbEM2/Y2wMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uapp.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uapp.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uapp.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Archaeological Heritage Brno</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav archeologické památkové péče Brno, v. v. i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Archaeological Heritage Brno</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav archeologické památkové péče Brno</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.uapp.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.uapp.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ucl.cas.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ucl.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Czech Literature of the CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav pro českou literaturu Akademie věd České republiky, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for Institute of Czech Literature of the CAS.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Ústavu pro českou literaturu AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ucl.cas.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ucl.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="336" width="1053">https://idp.ucl.cas.cz/idp/images/idp.ucl.cas.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAIKj/Ku2rYS5bJOYghq3z0/AIkZeMA0GCSqGSIb3DQEB CwUAMBkxFzAVBgNVBAMMDmlkcC51Y2wuY2FzLmN6MB4XDTI1MDUxNTA4MjA1MloX DTQ1MDUxNTA4MjA1MlowGTEXMBUGA1UEAwwOaWRwLnVjbC5jYXMuY3owggGiMA0G CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDcHnHcpikWmVoaNdnM0tPAJgfho2Uv gaIjKvSrM/qNzAnN+H+cwWptKFTSKKOL1pqGPSIJHHb17z3cv5Td0E9UfBwXBhmo PxEJ7F4zCAUodOks8o3j6qnt5wmpS7QojXCQm0NeH3HqTavuBh3DUIbJP2ZDqtkB eRYCHVCS5O77EyYez/Dy/bEbEhasQsnB6yDZXbAr74PtUMyuJ6wT2WZvScI1emA+ b34LPCu9eBXqyCqZoEjnzChxtyUlAsFHCoMDLRFWZhW4+9l6VdU6yIl3YMcud7b+ 4kDtcsYwEhGanEG1TUy417Of+Ighy1vfuaJvcokXl8YccJhx6naqgVwjhFKt4Kr8 G9yRgQmXIywzZBUjT4bSDu2CR6XMWNzUZ0qXx56GwfncTv97mvsoPsVXghFA6wWs GA5FZmLlHjXjKmqsy7mUdI+qcOkvoyK8niIb5CQZyfEa5/ktXSUB2x5zwQXEz3BV DbAH32uQlZ/lwmZz+gTUGi24a2HJHwGEJJkCAwEAAaNjMGEwHQYDVR0OBBYEFKHX KKyTkHcAyDsMyxFJeNhqy6C9MEAGA1UdEQQ5MDeCDmlkcC51Y2wuY2FzLmN6hiVo dHRwczovL2lkcC51Y2wuY2FzLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB CwUAA4IBgQBVhP6Uw32DyVBSB2On5A6B814C6SjxoLuVpHT69yB3z/Nb9Ul85Bi+ iRPMJ9Jb2otGPR7g44IEE99PZmXhAtx8kx7oKxFOCp+WJjvRokLjmjeb6TIywANI mtK6DKWGHZyaiMZDGJ2pXS9zdFmjcEQlLVhs+pBYbz+7B9OBPRPtJElRhJ9llqXt HLqMJeDqhc0QgaCooIFT9tHFIsHUJmxQrxMauJEMAlvkeKoUM+vfJU5MWwuQhUmw APTJog/IY8oR2sifl3qqQ7+dosPKkhZjY53HfNdt0OhXIF1BetXqDkq1y50gy2lO DciPGWJDt0219avUV/IxgCfFQYiXqGIk8vFBDvaaWjYRpDU/GASy7ZlS59KRZazp AamPn6cxm42pFNK9VPJJM8KgNqiuX2xb/r+139jJ18qjQ4ZNprRcJX5E/CKxZFib +d7MLevrzYWUdJzkNavYrdo8rDpIH9GJmYGXsiSN41BBjgLXO/wUGhsZxVkiKu1Q UD/7gk9favQ=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUK4Cz05QZoM+5isCLaBi5AUIV5LUwDQYJKoZIhvcNAQEL BQAwGTEXMBUGA1UEAwwOaWRwLnVjbC5jYXMuY3owHhcNMjUwNTE1MDgyMDUzWhcN NDUwNTE1MDgyMDUzWjAZMRcwFQYDVQQDDA5pZHAudWNsLmNhcy5jejCCAaIwDQYJ KoZIhvcNAQEBBQADggGPADCCAYoCggGBAKbs/6olNNK7J6QXjb6UN9CTjYvvHQXe c2wzyL158dGJTsu21WeDF2cPFL65VE6UuNqzUB/SWcWpS0jGP1Tzj5XV0UolTphI T+k5EbI1kyUbhyXeqG2eh3KrZZOP8Vn364YgUvdmS6bpoYrAYCP85+HLxbjxNSlD ENefKqZd1pyHDWvfLHjhxQIemKtBAYdLlHipk9Dbt0c25a7Nnco/IW2zZE5EqLjG GdgriJGKYOHu0xBCQ+CCqHAk3ckQ+1RAqRmQhdEWDA6UbJUu+fpUhwL5a6FaEeOq w18m/OiUDo/qK3sVp5/IvNAGwHvHLCnOfoSCkPPVdNf+KISHLWAJN7WBdZGuoXNA 14t8rZQKaDABuqAun6vqEKgBx2hA+9XPBX3/hvWY7Qi/58s2TIPkPC9Afe+HssWc us54oM6wNWMPVeqf0Yyez/YoHk+0iHeNMwkBsmRZ8QEcBE0/AHUw7HtSDd4MGVqn oo8LSoTS8a2SHQfC64yzdVSDoZERZQYcPQIDAQABo2MwYTAdBgNVHQ4EFgQUFn1x KBqE9xP0532M8BwYOhQQtIUwQAYDVR0RBDkwN4IOaWRwLnVjbC5jYXMuY3qGJWh0 dHBzOi8vaWRwLnVjbC5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL BQADggGBAEEhjPgP2CrwvEuSoCYCFfMLK0wE9tUMRivErAgnBLpALAi7g6ER5XaQ zdMynjq3wexsydWv9uILsUSF9COQu2d+gYz2L4m5oP8X4IBpT6FxbU6ZwdsYRvlv 4nmT7bLt7dooVTR46AtXU+P74euKsBJeeYXml8c03A9NoEXCa5+IK80p5i5Oi1mr qgC9ZVS4jvpC130wa9vdqsR6wUXxT/2nwIUx7h92r25G2ChBh+cnRsstESO7o+Pb Zd680OtBUQFmsh2IAFVmibSVg1odM40WRG2Bg4IfPxnsi2hRecpglaeeBO7RLFzP 9/+csSjqGI+dU/zMTK3Y0I89jmbo6Fh3h+dCLcANX0vEIxv0c/Gq7pM+DzaTOnva UNKxmCJc73IDnZB8VpdcvFsKJKT7x1Qa8Ks63yhyVmD2m2fPbmfyiVLtqPx/BlBf dlsSxO4Mo1WVPbojMpXojPOdI4knUame61Uj9oc23yze9NugTkPMoxP1Li/4oBt1 9G5yJVZOBw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ucl.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ucl.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ucl.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Czech Literature of the CAS</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav pro českou literaturu Akademie věd České republiky, v. v. i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Czech Literature of the CAS</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav pro českou literaturu Akademie věd České republiky, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.ucl.cas.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.ucl.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.udu.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">udu.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Art History of the Academy of Sciences of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav dějin umění Akademie věd ČR, v.v.i</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IAH AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚDU AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.udu.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.udu.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="121">https://gedeon.cas.cz/loga/logo-udu-44.png</mdui:Logo>
          <mdui:Logo height="476" width="1309">https://gedeon.cas.cz/loga/logo-udu-476.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUUjImT4C+qAY4l/Abco1orjgqwqUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAILhp7E7l7r7e4egz18eWYpfQPP4MA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC51ZHUuY2FzLmN6MB4XDTE2MTExNDEwNTg1OVoX
DTM2MTExNDEwNTg1OVowGTEXMBUGA1UEAwwOaWRwLnVkdS5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCFkzEWFDGU8WvAL2iI2dGIgA0T8zLS
Qa1QXUpOftBj/IPCj6qMLIujgWeKLTxb7oyGoEPoS855sI112MQrN51mSZWoNJGb
vEpcyuQqEUhS0fV1qP8jA/1/e6hdOVcZOqwdG+fDXIlySloqfmG8zzE+j93fNWRn
xv4ZZFBllqrIvLcDDsegeq8UT7AgoK0eO5KbNneNx+9HpdtiCLfvefMOrOU1BM0Q
9zfNu0sqeT5y2tgSr4Gplqm+s8/I33XBQ+qOJxWJCjKK8Ij5uJjXYxClXrUKkT1p
7PM2PRXJJFkNmRS7hMsIw34IqnvkPorb3zxPm1R0sdL9/zt3zzdHpBptAgMBAAGj
YzBhMB0GA1UdDgQWBBSR/Qsxh3ey4Rby/13+Cl5JBNbmAzBABgNVHREEOTA3gg5p
ZHAudWR1LmNhcy5jeoYlaHR0cHM6Ly9pZHAudWR1LmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAaDeO3Z66R4SWUFHIydI/t/4P3Ryea0iY
C/pCrxPLLbAIKF5xZChHyXnX9s5O33fs8YRLYuP1VQNxIRDw+fWrOaeW47vdppTC
Sb/I6e7amKicF1AseRLI9rkQlYTKJ/ZqxtLgjcc1HSgjFlpF6m/m5oKyD0gyvXD4
s9GNz5eUD0nMf1oJUOVGHty6H7xeMDVI4w4K+OdDFwAHeGfKXjjNaXgIxcg0juqK
lN+JdVANNR6N1+3G90Zkbe2Ik8TH7nbutPJlHqE2ro0oFWuhpVb9YYS7/BuDWMmt
ya7tBbW28rS0Lg537obTHK9P4ivvyHmxh7Cw1gA8NnzrJmG4gqbpQw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUauJOK6Fsp42Ibk+tzjvlWdjt2QAwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLnVkdS5jYXMuY3owHhcNMTYxMTE0MTA1OTAwWhcN
MzYxMTE0MTA1OTAwWjAZMRcwFQYDVQQDDA5pZHAudWR1LmNhcy5jejCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAJf4IuVMAzy7twYmbzK5VoxcV8QmplW5
n1d8Gfun4vubyA7oLHFcKM3W2yDQ4h4rWAB5fbhjUxT0Iw4J5L2LWTY8edL8nznh
pzsZNOSEEUlUoAvvVVOSdpaGOQqvjP8j6OujoOYb4rrt3C2nEHykqwFLJWMShVc1
i6x8dEVnOcPDPXuuv85h1vOU7cAeFUdP/+VdYK95t2hAfmQUY4tmXOYjtj6Soq4d
4nwlGQTMdGwl+EyuFX+VZcGuDts04luqZSILUPjYs2C73m8nuPnCXBx1Ctq6puVy
Uax3q+9dE/9a9tqP/X/yd2gdUOeBIpk72l8CEtkAy+idf6iRTQgzigUCAwEAAaNj
MGEwHQYDVR0OBBYEFDjxPwrCF+XcMh+xOp9o05qhxN1DMEAGA1UdEQQ5MDeCDmlk
cC51ZHUuY2FzLmN6hiVodHRwczovL2lkcC51ZHUuY2FzLmN6L2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBrtnqYFMwSckfOit/fU5zQUAuKhd68E1n0
DryOiVbQClSyHRoKbsYEDBzoyWeu3V29d8Iuw8WMVDgdyvK9fkq6F0L5o0DSlwK+
bjs3vS4nIQY6nP0wSejjbhhPDmoLZ/aITuAHPZQZoYhi6TMYFSSvSyvz2iPBRhff
FjNjJH2W+ewNxFAU858oMBhr6kBKfYVPXIzdTS5r+hMV+BbWrTIQ+XekWfUFl4RH
OM7Dn1uZ8diNl+FLLG5KSHrX6SLkUI5ZILHCii1fLKvTqN/6mw7LEfxsO8tKFzaY
OtI50JbZSbIDA56RsdDxzQv/3WGdMd9eN7xKt3FN7oFQyCejzyOR</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.udu.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.udu.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.udu.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.udu.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Art History of the Academy of Sciences of the Czech Republic</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav dějin umění Akademie věd ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Art History of the Academy of Sciences of the Czech Republic</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav dějin umění Akademie věd ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.udu.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.udu.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ueb.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ueb.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Experimental Botany AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav experimentální botaniky AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider UEB AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance UEB AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ueb.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ueb.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="41" width="44">https://idp.icpf.cas.cz/loga/logo-ueb-44.png</mdui:Logo>
          <mdui:Logo height="128" width="137">https://idp.icpf.cas.cz/loga/logo-ueb-137.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVALYvfetK29JrrMupHJZL2oIxOf2wMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVANa2SEBH/Jg02a2JGFCGWRbNujONMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUEVz+QBWfMiU2cBVdjMSGCfsmWOkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ueb.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ueb.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ueb.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ueb.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Experimental Botany AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav experimentální botaniky AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Experimental Botany AS CR, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav experimentální botaniky AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ueb.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ueb.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ufa.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ufa.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Atmospheric Physics CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav fyziky atmosféry AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IAP AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚFA AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ufa.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ufa.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="142">https://gedeon.cas.cz/loga/logo-ufa-44.png</mdui:Logo>
          <mdui:Logo height="116" width="375">https://gedeon.cas.cz/loga/logo-ufa-116.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAInK3v4geSIXlxn5YuKvvKtHE5HJMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC51ZmEuY2FzLmN6MB4XDTE4MDcxOTA5NTkxNloX
DTM4MDcxOTA5NTkxNlowGTEXMBUGA1UEAwwOaWRwLnVmYS5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC+O7ITltjS8teUbxp4Sp2K3hnRSE9J
BFtv7+xzkRkgX2HjyC6O9kKxodAjRXVXVrk/uJb2XQWtXfASV1J/3Y48WhIRm4q1
WIthZtPMMOxTbux2EDWx2Nunb8DrT6gnEEBQWW3QUaLatmQ51KcGuLK7s3+La7KW
+75v/TY1ZDpAFLjcM6k5FRGki1XQ1CrzVtdvvDHVQ3cKSd3TPgnBNUZMMry3h9Lk
bmA9Of5ISMPOhrZQhHE6Fbz+mPjao/+618RqvhWlt9gfS0cjKLvQFsNQLVnDnidk
mM5c3Rn9Nzuv5bnhoR6vxRivNm3TIeavamU373j1oATtnDG+JOTDA2dtAgMBAAGj
YzBhMB0GA1UdDgQWBBRSJt4rXn5kQc6STRApRfsmSDYOSDBABgNVHREEOTA3gg5p
ZHAudWZhLmNhcy5jeoYlaHR0cHM6Ly9pZHAudWZhLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAld3rJOdegkL3x9kFX+SvBJhqBN/AUwfF
/kPf/MCKTvdwI4actujwnXELFCsHz7RdTg0xFIfdrrqktLkKQqFGLm+iW1pF96VO
oGyEqVZNlZGE2fMGsWkjooWbxuFN5w8IrZxq3+as3qKghhgDdXPhAk31FYtD9AFZ
MYQIGWJ3whYbbA7+VXq/4pYJorTgbJD+fucVrltJxlAXwQPwLs7zXVwgkEIhLUWN
2xmeY4qdxRykPH4mavZU8RuS4l6Yo5eWqkXwkN1nqi7OJJhCRVua3gPIfbnCcEZe
WJiQss3UucBZLQEXkenknOhYgtrL0FNc/xUgRJ2N/w5c5zBgIT/UMw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIURcuGMa7N0p2OHAkmALWxHM66r9gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANMUBAG8xWhpiTqiQAYcmWzRlSEdMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ufa.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ufa.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ufa.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ufa.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">IAP AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">UFA AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Atmospheric Physics CAS</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav fyziky atmosféry AV ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ufa.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ufa.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ufe.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ufe.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Photonics and Electronics of the AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav fotoniky a elektroniky, Akademie věd ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider UFE AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚFE AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ufe.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ufe.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="50">https://gedeon.cas.cz/loga/logo-ufe-44.png</mdui:Logo>
          <mdui:Logo height="216" width="247">https://gedeon.cas.cz/loga/logo-ufe-216.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIETFDDeyxJHKQGM7kK0Nd6Zg2zqMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUHR8ENCrIGYxvUuCqoHnl9zz0VmwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUeHE8FvylfcVt3f8spm6HTTSCn00wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ufe.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ufe.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ufe.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ufe.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Photonics and Electronics of the AS CR</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav fotoniky a elektroniky, Akademie věd ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Photonics and Electronics of the AS CR, v.v.i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav fotoniky a elektroniky, Akademie věd ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ufe.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ufe.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ugn.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ugn.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Geonics of the CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav geoniky AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider IGN AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚGN AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ugn.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ugn.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="74">https://gedeon.cas.cz/loga/logo-ugn-44.png</mdui:Logo>
          <mdui:Logo height="67" width="113">https://gedeon.cas.cz/loga/logo-ugn-67.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIcLs9wx1GVlp/lO8hIzmdYSq5CeMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAOCOk1Hjtqer2ylHxR9B6w88QTcZMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVALFyK+bLH2UVJFjJZcx0CvKpDZ2kMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ugn.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ugn.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ugn.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ugn.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Geonics of the CAS</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav geoniky AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Geonics of the CAS, v. v. i.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav geoniky AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ugn.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ugn.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.uhk.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">uhk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of Hradec Kralove</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Hradec Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for University of Hradec Kralove</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Univerzitu Hradec Králové</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.uhk.cz/en-GB</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.uhk.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="90">https://idp.uhk.cz/idp/images/logo_40.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPTCCAiWgAwIBAgIJAL/zIs4N5Ii+MA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPTCCAiWgAwIBAgIJAMFIFKvhDrBrMA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPTCCAiWgAwIBAgIJAIfKua1ZFZk1MA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uhk.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uhk.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uhk.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uhk.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uhk.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uhk.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">uhk.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPTCCAiWgAwIBAgIJAL/zIs4N5Ii+MA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPTCCAiWgAwIBAgIJAMFIFKvhDrBrMA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPTCCAiWgAwIBAgIJAIfKua1ZFZk1MA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uhk.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of Hradec Kralove</OrganizationName>
      <OrganizationName xml:lang="cs">Univerzita Hradec Králové</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of Hradec Kralove</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Hradec Králové</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.uhk.cz/en-GB</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.uhk.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Smejda</SurName>
      <EmailAddress>mailto:martin.smejda@uhk.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Flek</SurName>
      <EmailAddress>mailto:jan.flek@uhk.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ujc.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ujc.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech Language Institute of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav pro jazyk český AV ČR, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider UJC AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚJČ AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ujc.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ujc.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="39">https://gedeon.cas.cz/loga/logo-ujc-44.png</mdui:Logo>
          <mdui:Logo height="300" width="263">https://gedeon.cas.cz/loga/logo-ujc-300.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAI7tgHK5jOEG08GAk1e5RDmn2AgbMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUBgP92hR6opywPrSwzayiaJBlhAswDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLnVqYy5jYXMuY3owHhcNMTgxMTA1MTE1ODM2WhcN
MzgxMTA1MTE1ODM2WjAZMRcwFQYDVQQDDA5pZHAudWpjLmNhcy5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBAJf6WUkIpmCc2seUfDyrpcQ6iJ2y6O3w
HYMrkuRu/RM5vxcuKyRD5EE0MTpV8UsY8r4vdMxU8egfUH5FDzTXubjFAO6L0i2b
WrRrIk4MIsrSgXkavmdBhcoHFt128zJIkS9E86HFaHZILQNFPUfzBEvsFDxjKNfN
KuN1ouWVHzyqPszgI1kRCQ50DJ5xj6uQzh89u8e9qTmKw5CzFRg9NG5Vq+lhxpO1
Zob+kVqhJhR6YpkdK1ABmtGglZ/NgSBIUpy1Kwq4o+pzwRegXcJMLO6cQyuLOSrN
3SKphKaEZeJn/Hsgx+lueOnhnbkoYwplcIkeuYnWZblQYdR5LO+Y1z8S+6FW5l91
nu78aBut5nbhbS+sQyyBFJSeBeVzijoDJo7Jdqe+Q3mYAeijfAuwX914PSLrZxIk
2+tPy7xNWhxz7gSCoSX8Mk2V02RZIpIeUobLDtRnZ/u8Gi/zTFIvzIwBI3rJjWXv
CEGgPahtUJ++mp9lDXqFBC0Lp/y0Z0U1IQIDAQABo2MwYTAdBgNVHQ4EFgQUj7c4
gbF+iYGtlQECfRlscFDKS1YwQAYDVR0RBDkwN4IOaWRwLnVqYy5jYXMuY3qGJWh0
dHBzOi8vaWRwLnVqYy5jYXMuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL
BQADggGBACd1pEcRi8a0gnJXnbCTw4Q8ZdXtvIjCEw2+Du2pT2zYrx9+FsWJmOLV
0ntEWhSjUBVxD8N62waWd5kSJ26un7Q63Nq/HXhbVAr/fxmfSSSset5wUrmMNOIB
mbt1rP0kJIbFpZVZ6c/t86MqetXi/FZxf1KtTi+xd0L9nMTOSa0zYP3USKkutQzm
1OvPvr1y9i42hfaTT54Qc/kQECkan1YlXiELRw5tlevplP/Z6OKO2k9saP/mcqK3
GbUqDvWTYPr2khBupkKDrwgfC/1T0Xl5oRh8112mMuTTu9qOklEHia1tJAQGuV8t
j6zrPLx3HGoUQat8xVKvdcKliofGh/1OcP+FyMjJW2R3MuXHbS3rRkqZ0XV95xs9
nkWoMj4e1KPtA06giXVYeJDc+TMBV3MwiSEFeWHRXLdxDQGPmvT8v4temTKEid0P
xldLbeyWNtLnOrHC+IkZZ6BQMSIki5AdxkCeG3sbNJgWqnrxXu7++lIo8+fw8oWn
5t7joNhzUQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUbnP22N9hN5gCPbIZtA038ex1mOYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ujc.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ujc.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ujc.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ujc.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">UJC AV CR</OrganizationName>
      <OrganizationName xml:lang="cs">ÚJČ AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Czech Language Institute of the Czech Academy of Sciences</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav pro jazyk český AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ujc.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ujc.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ujep.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ujep.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Jan Evangelista Purkyne University in Usti nad Labem</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Jana Evangelisty Purkyně v Ústí nad Labem</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for UJEP in Usti nad Labem</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro UJEP v Ústí nad Labem</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ujep.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ujep.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="102">https://james.ujep.cz/logo_ujep40.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHTCCAgWgAwIBAgIURnqmAJqtdL1M8jQE255U8iChmp0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHjCCAgagAwIBAgIVAOtj85Z7Iaqj4yN3qkuq4zMFA1zuMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ujep.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ujep.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ujep.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ujep.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ujep.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ujep.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Jan Evangelista Purkyne University in Usti nad Labem</OrganizationName>
      <OrganizationName xml:lang="cs">Univerzita Jana Evangelisty Purkyně v Ústí nad Labem</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Jan Evangelista Purkyne University in Usti nad Labem</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Jana Evangelisty Purkyně v Ústí nad Labem</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ujep.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ujep.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Polacek</SurName>
      <EmailAddress>mailto:pavel.polacek@ujep.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Voboril</SurName>
      <EmailAddress>mailto:petr.voboril@ujep.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>David</GivenName>
      <SurName>Koukal</SurName>
      <EmailAddress>mailto:david.koukal@ujep.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ujf.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">ujf.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Nuclear Physics Institute of the ASCR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav jaderné fyziky AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider NPI ASCR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚJF AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.ujf.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.ujf.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="24">https://gedeon.cas.cz/loga/logo-ujf-44.png</mdui:Logo>
          <mdui:Logo height="201" width="108">https://gedeon.cas.cz/loga/logo-ujf-201.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIpFSBpuxGEF5Cr51OWtVMAdOgtnMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC51amYuY2FzLmN6MB4XDTE2MTEwMTA4MDMyNFoX
DTM2MTEwMTA4MDMyNFowGTEXMBUGA1UEAwwOaWRwLnVqZi5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC7jhE81zGOcCKBWSxcCaHtOD9lLEZX
G+8jFTMtaxcxjWQGHMhMyDAyT+hNvEKmw3hQmU0N9ySNgLWlF8jj5ZsEVnrQcGI7
w6TER7TbIKx5UcIPSsHi0HuwQkaNtgGxJzJbHugXiaUpG8NLUXbjT/A394s5qnNL
J2lgse/vhha/A4tiK8CiAWnLHWgT8eDtpuoi6AD4SWv1W2yftiOWHVVJHYObxDWC
X+fVkmikscutKBgstYC5JQ0ENYoPIMmW1v3DEpq+GAt0R5zV907Y3Z1G62LfQa3T
Mx9UFxnHl6/t5cswf3tDx/zVMTIqsaDF/y90If0B74cVoIJm9jcHwJXRAgMBAAGj
YzBhMB0GA1UdDgQWBBR/rGBfgIhGHeEdZ5F3TzHJQ+/mlzBABgNVHREEOTA3gg5p
ZHAudWpmLmNhcy5jeoYlaHR0cHM6Ly9pZHAudWpmLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAGCwr1VsnZw+YDf3DwXGG9t6e5BmbJ450
v1xQd++/Qoo1e+bsFM0mMaW8arwzQs4RNFlzsZ6a+mz6XsZvtXuudFeaST65bskq
kL5wj15hjOf/z/6YW5YcC3PW3IZx8BGGlUGZLhR3OFzY+9pxtQ8vzMSQMy0qEhNO
0aULZKZYMrB6+/H7Yh3oHrruiK3/8cJZe10L1kI5rsz7kAfjqpO5qgRMSvKNYEX4
gGZ7KOJBgUHxn7ciBt4QOt745wP5VpeTvEwd6kfb//mqRCkfkhcT9zK4GYF+chH3
oEL+7ZUVm4zqZApxqQ26VAnHFGfs4ZpHkPLQ3HjMGKCmPOk9oXpn+A==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUL0RyZatdtnYUBmXg25Y/nRzMJgkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUcJT6ZIbspOPiO8djUYzHEqBR7xQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ujf.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ujf.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ujf.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ujf.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Nuclear Physics Institute of the ASCR</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav jaderné fyziky AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Nuclear Physics Institute of the ASCR</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav jaderné fyziky AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ujf.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.ujf.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.unicornuniversity.net/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">unicornuniversity.net</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Unicorn University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Unicorn Vysoká škola</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for Unicorn University employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Vysoké školy Unicorn.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://unicornuniversity.net/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://unicornuniversity.net/cs/</mdui:InformationURL>
          <mdui:Logo height="1175" width="985">https://idp.unicornuniversity.net/idp/images/idp.unicornuniversity.net.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIETzCCAregAwIBAgIUa4MBB9Is0wzVNkpE6RIH6f5ymK0wDQYJKoZIhvcNAQEL
BQAwJDEiMCAGA1UEAwwZaWRwLnVuaWNvcm51bml2ZXJzaXR5Lm5ldDAeFw0yMzAy
MDIxMjA1NDVaFw00MzAyMDIxMjA1NDVaMCQxIjAgBgNVBAMMGWlkcC51bmljb3Ju
dW5pdmVyc2l0eS5uZXQwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCi
2qjopr5UPHboSB4zG+xdvHCrCuSVdLb4eeE0aS/5D8xZUI4FHx/SV3JJjV1hI3LM
J0M4thjARXbHPpiXJueCEZUzly3xvp+cu6D427kziC4ae46Kjw+A/oMg/FH2hEeH
bwF3p2sQ95SGO/vi81rjt4EnsMpDmRFQMfvILOnkPPEnQvfJxAAwJyRzBoJG8eJG
D+exrizZsnRhJTQ3J/XD2WK2RI3HkmgKSxdr8vaQDAATbKL4OTytGI1kvb4LzZrP
f+TeI+7hiOQSFeWbI4NHs8HV066OPeyjeHYJ78lEmJmz9Bkl1VeSUwCQuoWVkBbx
uK+bOxMr2QYS761eT1e8KaEJtUgKQGvjmd0HQT+rZmDVMx+HluntsWT4ghLTxrXm
4pcpFjcj4LSHgR3RH+ZQwqDfxMoWiqVuzunvOzXInJq43tRnU77bjZDsO1BZl7vz
aeAOTva6qNFKBfPi4USvP8SvNhWcA7LPhWdKMRVYDXrTOboLsah5y11SxlYkGBMC
AwEAAaN5MHcwHQYDVR0OBBYEFMv8GCj9VlR2YVGBV+jJrjnwkVc6MFYGA1UdEQRP
ME2CGWlkcC51bmljb3JudW5pdmVyc2l0eS5uZXSGMGh0dHBzOi8vaWRwLnVuaWNv
cm51bml2ZXJzaXR5Lm5ldC9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC
AYEAhzDNjNXpSwhBSGFKq6hrCxYjyBEnoe/5q2sJSUJJp+qkMC/uDSrV6Nnn8o1r
dufihetJRUEtbMfeUntkzU4QrVqv4bJ/sIiBIZWftCfyreQoB4y7CyrTYNfcAM3A
m5hN2b0yyHVpgOphPSazIC91CJkYm9fRXyB+5HpAKV9igNd9RXM4XwfXMxYP4P25
h3fgh0DKD831Tes64aCzbQsU4pBgT4ekpsgEQcqgbmVh2fo9fVLCxHtBipuNTm0X
RXpre32bhlnuuBxmgU2z5a/2rarwQt3JTvEP0ETXgf7NzLOvHpSUN8e96nrSyqFv
aSP5zL4rKGDqQE5FmQJkRFD6x7i2aL3dbu3FT4EN6WUrvePIZLCMRLlRB2NLpE8d
JGwrMOcXP7FFgVV/c2hTHmc+FS1m1b5n2SogdLQ1k1E2U5LcPH7koW4dS82bOmir
8HwL3UQrNtn381sox3Za78kUR9OLIMqN2Zj5LNpUaUJXbNr0IdXMomxyLTJANzF4
natm</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIETzCCAregAwIBAgIUFvhEFUAiFEeFtJpMJywHaFfNjLswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.unicornuniversity.net/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.unicornuniversity.net/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.unicornuniversity.net/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Unicorn University Ltd.</OrganizationName>
      <OrganizationName xml:lang="cs">Unicorn Vysoká škola s.r.o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Unicorn University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Unicorn Vysoká škola</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://unicornuniversity.net/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://unicornuniversity.net/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.unob.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://myacademicid.org/entity-categories/esi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">unob.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of defence</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Obrany</mdui:DisplayName>
          <mdui:Description xml:lang="en">University of defence identity provider</mdui:Description>
          <mdui:Description xml:lang="cs">Identity provider Univerzity Obrany</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.unob.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.unob.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="35">https://idp.unob.cz/idp/images/znak_uo_wayf.png</mdui:Logo>
          <mdui:Logo height="160" width="140">https://idp.unob.cz/idp/images/znak_uo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUF9fTGSt5l7R9FK5K1BVlDBC2Pb8wDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLaWRwLnVub2IuY3owHhcNMTcwMjA2MTQ0NjM2WhcNMzcw
MjA2MTQ0NjM2WjAWMRQwEgYDVQQDDAtpZHAudW5vYi5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBALAOpK6Q9Q2mJjQsoABsWHF3xWUJL/ooN2O3VumX
8SP1bGNvT+HTt7DovZlIhuRXUDvV4N3rii08CQTk+nr9dLaOCgZa40Fn+H6rP7IF
u6k+iwxbBPT8q2Dg6n6o9FJ2fTWZFkzYNb3xsCZrp5mbk0rJwJyWzJI7O0psQmcz
U8nUT+TqnsfMhKO4LkRGAbhK5BWLM2fU6PWhoZa0DODd87XBVNwo1olyLc9zty8i
8q7PheJbw02xK11uklQPbQyI7M8JhMvihvV05OXfQpE/OUkCD1V1GCgMwSEbSWGv
ruj31hSF8rAGKBUVlSeyc1GcV4Y8/sewhhB45JHqwRjOrOMCAwEAAaNdMFswHQYD
VR0OBBYEFNTlTjLDCfgTseVtq2vKaFYIS/80MDoGA1UdEQQzMDGCC2lkcC51bm9i
LmN6hiJodHRwczovL2lkcC51bm9iLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBAQBwxraVJaCcx88fn/RkIpZGSpFrQZt/a6QxJR5vw7JNQJr1M/o8
1UeD2ynWVL7q1ngAhsFnA/TF9pCAaIszUP40Kynsw0JSmRlT56KUsVH/2/m3dMvm
gb88nbX6e8lL9LUgCY3CBpWPMadxv5w6M5gGvf3W1pro7aQgyVQB0zrZNiSD2Wk4
Fpaw5K+GcB6Uck8FPnvhy1G9dRxPbxIW4iN4BSQkw2FcykWWwdJStqhlivh48bZ1
4T7DlK0vrEc1Qt2fCqIN7zMqfGZK6aZUH+njmClUT3x8g0yvNnnDt0jdlH6KNdBf
9sciQ0wJUJIN5vcxieVRcSFHk19NAHSysD52</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVALb1l9kP6I4REU8GiOwyKl5vzW7tMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIVAPSZTL39QV8qhdxQtVLAHl7J73EKMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.unob.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.unob.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.unob.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.unob.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.unob.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.unob.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.unob.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.unob.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of defence</OrganizationName>
      <OrganizationName xml:lang="cs">Univerzita Obrany</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of defence</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Obrany</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.unob.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.unob.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Rafaj</SurName>
      <EmailAddress>mailto:jr-eduid@cedric.unob.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Ivo</GivenName>
      <SurName>Lukáš</SurName>
      <EmailAddress>mailto:Ivo.Lukas@unob.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.unyp.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">unyp.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of New York in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">University of New York in Prague</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for University of New York in Prague employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro zaměstnance University of New York in Pragure.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.unyp.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.unyp.cz/cs</mdui:InformationURL>
          <mdui:Logo height="355" width="222">https://idp.unyp.cz/idp/images/idp.unyp.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVALT1WmkTF3y88oueaJAvlIVlsbesMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAK0lxU6uheJFANxG3r77rVdOEmETMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.unyp.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.unyp.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.unyp.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of New York in Prague</OrganizationName>
      <OrganizationName xml:lang="cs">University of New York in Prague</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of New York in Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">University of New York in Prague</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.unyp.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.unyp.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.upce.cz/idp/shibboleth">
    <md:Extensions>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">upce.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for University of Pardubice.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Univerzitu Pardubice.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.upce.cz/english/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.upce.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDQzCCAiugAwIBAgIJAOdAIH/2LpqxMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
BAMTDGlkcDMudXBjZS5jejAeFw0xNzAzMDgwMjQ5NTJaFw0yNzAzMDYwMjQ5NTJa
MBcxFTATBgNVBAMTDGlkcDMudXBjZS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEP
ADCCAQoCggEBAMPBqzOMO3Zh4sxtoUjU46QJsNT/QLNxhYs7tEqLu7W6N+8ooSEy
wS/8Os2oPOzXVkdKryll204GpPPpWQIqJ4HbKGHBzPaINlTrQkzFahGind3zUsx8
oSAxlhnKvJf76buuUfXZf0tS4wKsJR2cfl7NvkAFpyXdDAzVchbqBuwuPnJpSjlq
ojGMvcXIc9Whe+I166lPBrTqGshPUbxXFzMVrT0iqieslqJvOoTR0SJhG+1f9U6U
DtMI0NSIZ1BZJxYSNaBCsAbsD+pQiIHWvvjykchVLxKeq9YUPf6shjBa63shEMks
eJAPpSgfYzTOi+KRsa2xgI0THKNGJiLYq6sCAwEAAaOBkTCBjjBtBgNVHREEZjBk
ggxpZHAzLnVwY2UuY3qGI2h0dHBzOi8vaWRwMy51cGNlLmN6L2lkcC9zaGliYm9s
ZXRoggtpZHAudXBjZS5jeoYiaHR0cHM6Ly9pZHAudXBjZS5jei9pZHAvc2hpYmJv
bGV0aDAdBgNVHQ4EFgQULFx+OB57aQLJV9tSGsIh/LLoFogwDQYJKoZIhvcNAQEF
BQADggEBAJ587H/XLgpBHVZs/I0WD9un2N3o08UtaTYqHMFB0yzu8xFyXEeTzUwZ
fOIIu5l/fMzH2UWr+lwB+rv3LmNprZcochNhCXP+knwsq9VbhmgZTuFgCpzp9FPp
sq+NBfSfob4NEZVZ1AGXML6uyDFqWi6c9J3HTlvKinFhyc1RmGg6IlPSIKvCFboy
JPVAbMFEhxpDqBOmQ2ihJCjoHjkeTY+fTkfnMxFyry4E3v8dtRzsd2lYDoeO9Gck
ZLm42EDbOexlAyWnHW4/aYxdrTJn3SlPENRdkVaXukhXY5vF+UOGMSWRcqcAhYaV
WueID0WB64MMVfBL+s+mmQdDuB5mZvs=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDQTCCAimgAwIBAgIJAL3p9AOj9BqhMA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.upce.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.upce.cz/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.upce.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.upce.cz/idp/profile/SAML2/Redirect/SSO"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.upce.cz/english/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Josef</md:GivenName>
      <md:SurName>Krupička</md:SurName>
      <md:EmailAddress>mailto:josef.krupicka@upce.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.upol.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">upol.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Palacky University Olomouc</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Palackého v Olomouci</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Palacky University Olomouc employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Univerzity Palackého v Olomouci.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.upol.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.upol.cz</mdui:InformationURL>
          <mdui:Logo height="85" width="200">https://idp.upol.cz/idp/images/UP_logo_horizont_cz_200.png</mdui:Logo>
          <mdui:Logo height="170" width="400">https://idp.upol.cz/idp/images/UP_logo_horizont_cz_400.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUHU/t//EmdsYCBSUOBxSWuTMuOU0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUdR55eeDyJWzODCtFYKMJL0DYiYMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.upol.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.upol.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.upol.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Palackého v Olomouci</OrganizationName>
      <OrganizationName xml:lang="en">Palacky University Olomouc</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Palackého v Olomouci</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Palacky University Olomouc</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">http://www.upol.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">http://www.upol.cz/en</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Pavlík</SurName>
      <EmailAddress>mailto:martin.pavlik@upol.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Zuzana</GivenName>
      <SurName>Čírtková</SurName>
      <EmailAddress>mailto:zuzana.cirtkova@upol.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.usd.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">usd.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Contemporary History</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav pro soudobé dějiny AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider USD AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚSD AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.usd.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.usd.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="29">https://gedeon.cas.cz/loga/logo-usd-44.png</mdui:Logo>
          <mdui:Logo height="150" width="98">https://gedeon.cas.cz/loga/logo-usd-150.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAJIIyXWSPYcootJEuw7QaGi8BcoLMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC51c2QuY2FzLmN6MB4XDTE5MDMyMTA3MjEzMVoX
DTM5MDMyMTA3MjEzMVowGTEXMBUGA1UEAwwOaWRwLnVzZC5jYXMuY3owggGiMA0G
CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCXZNGF7qggCpo1ueygYxZhBeXklT+e
ZaGF8fdEQ2JvYS/WxXpHR7QM5NRzRM83fcQruUBxLIstC9XzBZNdawGh4H2qUiu0
kTIDnoVlg0CmuliMOkP7Yeh/zEqfGhpR82t2JKMfOKdmFAI6dfsqfCK4FHlFjDI7
gl6YdxWs5JzNbeD+/0KwIbtzKZpaOwAj8em7JdZ3aWx9+odIDajz9+nooRERFdkK
sNHJqBunAoaYAJjbFzgNzGWqtVlnyK6j7OyS2X124H6bWLqcbFThew5cjyY/gMZu
OXmRtNMl1WsxK7Ej/PJt5PJoAv8g+mvt0yYrKFCt61uElLD3/ne/5ElmXeJE4ixj
sXJwq0Ut+rZYzsXgJOvEX3wfSnqLrtFQKy5WT2lwuVgFMrTquVn2BpHVmIHlk2mP
SA8o11TJagCi+uEqIgQTT/kM/MD08RwQkhIJkWKVGy3hOy1NdXazIdL4rUS7ckYc
G3tdfJc7DHj0PTYDgCmdcGF1b0npWvaNZe8CAwEAAaNjMGEwHQYDVR0OBBYEFIcR
yWWqI9hiaZiPdsuBAAlcCH+zMEAGA1UdEQQ5MDeCDmlkcC51c2QuY2FzLmN6hiVo
dHRwczovL2lkcC51c2QuY2FzLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB
CwUAA4IBgQAg8KTJLWFe/qwckqdJGcCdJihocPjIvOA+N9GbTD0Rpz3AFDMOb/CY
hr2FJu/ncm1b0dKpmIOBRHLtQHtVDciRUWgr5P78Rq6R+F7yG89/yPOsGstwkXKL
aNUUFkjHoR0QJNnUr/2/QP5D6jLupeMPuPfSmsL9TREOmgBm2+G965SnswjUs4Cd
KI7+sojlZjrv4WSg5dFy4grYz2zIKlWqFHn8Kbcx10rsA/8ofVS62YUk57n5IyxJ
pFYRK7OxRj1tQsbUq5ORddmed1viu1iLVv/XtyHUvMCFB0+zhL7jDkb7IdjjMGsf
Ey0nFcFKIzntQzrzzvVvl+mvQ9mgVh71UwoSY6W/eMuTco2y94XOJckL192u5AD1
aXdAm8YhljRSRyMgECvldvnb2HPF1DnKkY09U/vxykAit7IakCJ5znjO6IwBupi3
2GhnmYb+ErUAfL6bWlGS5cLz0lB2qT3hnw1/nwYt6oeoLi46Udav2x/rAKxRw4AV
qQ4eAazCSd4=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAL5RDAecW68PcN9DhwwWFZrSH90HMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUYBkTgukww8eLdR/LPSu7ehQOWlEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.usd.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.usd.cas.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.usd.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.usd.cas.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">USD</OrganizationName>
      <OrganizationName xml:lang="cs">ÚSD AV ČR, v. v. i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Contemporary History</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav pro soudobé dějiny AV ČR, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.usd.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.usd.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.utia.cas.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">utia.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Information Theory and Automation AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav teorie informace a automatizace AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider UTIA AV CR employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚTIA AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.utia.cas.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.utia.cas.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="103">https://idp.utia.cas.cz/loga/logo-utia-44.png</mdui:Logo>
          <mdui:Logo height="411" width="960">https://idp.utia.cas.cz/loga/logo-utia-411.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIUNoDQ0yem8bgFumF/yZY/4pLE9oYwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIUZ3Cl9rIkpOkkmbKriOwyrLzjyoQwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLDCCAhSgAwIBAgIVAPAgpMxS7yupHWC3MCd7tyQj9b/iMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.utia.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp2.utia.cas.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp2.utia.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp2.utia.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Institute of Information Theory and Automation</OrganizationName>
      <OrganizationName xml:lang="cs">Ústav teorie informace a automatizace AV ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Institute of Information Theory and Automation, Public Research Institution</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ústav teorie informace a automatizace AV ČR, v.v.i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.utia.cas.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.utia.cas.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Vaníček</SurName>
      <EmailAddress>mailto:vanicekp@utia.cas.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.vfu.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vfu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of Veterinary Sciences Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Veterinární univerzita Brno</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and students of University of Veterinary Sciences Brno.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a studenty Veterinární univerzity Brno.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vetuni.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vetuni.cz/cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://www.vetuni.cz/imgs/vetuni_logo_40x40.jpg</mdui:Logo>
          <mdui:Logo height="50" width="50">https://www.vetuni.cz/imgs/vetuni_logo_50x50.jpg</mdui:Logo>
          <mdui:Logo height="100" width="100">https://www.vetuni.cz/imgs/vetuni_logo_100x100.jpg</mdui:Logo>
          <mdui:Logo height="200" width="200">https://www.vetuni.cz/imgs/vetuni_logo_200x200.jpg</mdui:Logo>
          <mdui:Logo height="400" width="400">https://www.vetuni.cz/imgs/vetuni_logo_400x400.jpg</mdui:Logo>
          <mdui:Logo height="800" width="800">https://www.vetuni.cz/imgs/vetuni_logo_800x800.jpg</mdui:Logo>
          <mdui:Logo height="2588" width="2588">https://www.vetuni.cz/imgs/vetuni_logo_2588x2588.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVANp/jeTWFQlkALd2zvuQM0NNal7QMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDEzCCAfugAwIBAgIUZ9X/+ig6ipqz5tuTFlWeaseDk1gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVALawx1psOeuNB/Q2nKO0A/D3JVB/MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.vfu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.vfu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.vfu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.vfu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of Veterinary Sciences Brno</OrganizationName>
      <OrganizationName xml:lang="cs">Veterinární univerzita Brno</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of Veterinary Sciences Brno</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Veterinární univerzita Brno</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.vetuni.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.vetuni.cz/cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Ladislav</GivenName>
      <SurName>Žůrek</SurName>
      <EmailAddress>mailto:zurekl@vfu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Čejka</SurName>
      <EmailAddress>mailto:cejkap@vfu.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Vojtěch</GivenName>
      <SurName>Škrdla</SurName>
      <EmailAddress>mailto:skrdlav@vfu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.vsb.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vsb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">VSB – Technical University of Ostrava</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava</mdui:DisplayName>
          <mdui:Description xml:lang="en">VSB-TUO Identity Provider</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro VŠB-TUO</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.vsb.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.vsb.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://idp.vsb.cz/idp/images/vsb-logo-40.svg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAKuWvd4iPNRnRXukyKOp+sqpReNLMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAMu0ePB4xgh9EIK+qEugr/6czSz9MA0GCSqGSIb3DQEB
CwUAMBUxEzARBgNVBAMMCmlkcC52c2IuY3owHhcNMTYwMjEyMTAxOTE5WhcNMzYw
MjEyMTAxOTE5WjAVMRMwEQYDVQQDDAppZHAudnNiLmN6MIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAp9ddBjiE6E+aXfEUOc6oKurTK1dsoqZ+ACLUQgVF
oGaBc3yToQMgnD6tQ4xGS4zgUPn02fe/0hh9Tz2hD+aNHvf7j24I1RUYBd5p/geG
wMvReGp9H5lDmSrABic6kLB121GoMMIBqZO+2VadiSIMziItI2V6KuGs90t/UDOO
ncnjjPmzpJIdACk1JOWDGZtE4AIQhz9q5tAiev6ETJG77WAwLbH1eAv2DsYCSVdk
1NXbgaMV0SNBhgD9oqga1SQNyK+R/Q2boc22pXQMdbdgB95zrMGoFuSBK/yMXIGH
fNLYRWemKT8N6fF+y6X3glL5VHwe9e4vxdUOeprUurqn3QIDAQABo1swWTAdBgNV
HQ4EFgQUrx36LTaKgVLjioqCfZdQOA5wLL4wOAYDVR0RBDEwL4IKaWRwLnZzYi5j
eoYhaHR0cHM6Ly9pZHAudnNiLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB
CwUAA4IBAQA7OHbMVdAJTFfeM2yUXG5Sb6LMrZzMBgJvE2kM6X2+ONggB8c5relu
TD6+BoA4q/ZiTYabXZUVtglz/ksMWPwFcW+EdZnLQeCAS9DSJRjR1/ZOFU73awfE
UbDUopTknDLZ06+LW045Qgg7Q7LNqVs5SUDYy/EAmEYNgHJVL4T6Lrk/f2ToLpXb
e+84As5I60v+3ywJlBKOZsjZ17Nw+y6fcbpeEIuWXd/YvuyT/qN6fzNqLkjU+F1I
wBFnh3xvCTPaFTFgT++wDCqDvtq9GMD1w6SEiZiq7xSh1SVoJYxIu6Zq5C3YyOVS
8aQKeBPJ3f6ZH0CSSD1nGI+/joVQegLg</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAMmUzXW7GcBvS+GdXawthrAEM9CfMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.vsb.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.vsb.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.vsb.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.vsb.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">VSB – Technical University of Ostrava</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola báňská – Technická univerzita Ostrava</OrganizationName>
      <OrganizationDisplayName xml:lang="en">VSB – Technical University of Ostrava</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.vsb.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.vsb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Stanislav</GivenName>
      <SurName>Vaštyl</SurName>
      <EmailAddress>mailto:stanislav.vastyl@vsb.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jiří</GivenName>
      <SurName>Mrkva</SurName>
      <EmailAddress>mailto:jiri.mrkva@vsb.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Lasoň</SurName>
      <EmailAddress>mailto:martin.lason@vsb.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>VSB SECURE TEAM</GivenName>
      <EmailAddress>mailto:abuse@vsb.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.vsci.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vsci.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CEVRO University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CEVRO Univerzita</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for CEVRO University.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro CEVRO Univerzitu.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cevro.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cevro.cz</mdui:InformationURL>
          <mdui:Logo height="169" width="800">https://idp.vsci.cz/idp/images/idp.vsci.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUDHfOmHaXRKguLkQxII6t+HS5QJkwDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAwwLaWRwLnZzY2kuY3owHhcNMjIwOTE5MTQwODU1WhcNNDIw
OTE5MTQwODU1WjAWMRQwEgYDVQQDDAtpZHAudnNjaS5jejCCAaIwDQYJKoZIhvcN
AQEBBQADggGPADCCAYoCggGBAIKDAVTTwkpYx7h6slSy2zzLqWmgF4HjbZ35on/f
z3RSbVbOCAbsv14/+i/wjI9Jk2s7haHN9OjCpRlH9pIoixfWIn8pLL3iDqReef42
ADE9+AFuy8tpFrIedQvZMjg3lAQ/x4iU3AO7MTH7TaQqKFOkGmOSLDPyE0x9E1HG
/e11vNC/Li+1BTCZ7mBm3/76DLfa92EqaOEcZ0VHY54WxdkRny9e5YD0z8NO3Do6
HVl1FvKVEpl6/it8vQz+Z8MJ9mi1imDYP4e7kNkjwu7GgVcttZIUVB/LUdFhwMaj
1JxomVAX/idRHzcxAtYa07cCzZ5gNSsEw1ltFTwUsHyVPhtkHcgBcAXUztN2gUdr
WNly48aJJykqMMDTrHeTF+Hm6GRC+3eRYelwZ/PwVBTGMPE0xkOCmWvAsuI3JPb7
92FQLNoEfz9y/Z9eGionR/ycfNEY62JdYVxGp/BSRIqabcc+4tLoytzvaZNGXqL6
ckCGr1SgPjQRTzRGnCt7381lTQIDAQABo10wWzAdBgNVHQ4EFgQUvRNkl+GOMjVA
Uf7ECnhx/rsOr1AwOgYDVR0RBDMwMYILaWRwLnZzY2kuY3qGImh0dHBzOi8vaWRw
LnZzY2kuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBADWfNWqO
K8Wr1J0s+4uR7Dh0md/IV5gZ3dX/ghkpkvoRLRqEZXtalaVYsQG0cqHLFyk6WUWB
WQNonzhmGjlT4XsceuenAL8yHDip1wGBvjdz8//I+zTumQ1jmovzqh04aOxY9LNi
AcJ4knf2MATEuPxM7D6/9Lb3xz3Wgo/CxRW1Xwb/Rfp6n9z8bZmVWFRrnozcBHEj
LkdVCMK94mCx8LqyjkpbEsRLkwQv2QR+GmncKFJzrIiixuAWB03s3syXtTx4bBe0
Rsrk7zrOC4XpqSADEYMRiuVPUc8/nwvO2Zsbil2IqnjnjF9J+jffCcdtN9UM2Ifu
J971uJ8t0ZdGpjifOWy3JLwTnqfxttDVKKPYz3aSDAosL+sLt+/0r3SheCA2I6WI
nQGNjg7jhj9oZ2P0suWb9KJKiAWRto4yOjYlWp/bdZSb421X4cpIYnX1XNhPpLCe
skzLW6Cbtl95AzVu2jEGdazhL9wSLQ2kZ/R7CTkjQfMufU1XXkxqN1h5YA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVANJ/XPuihRdOgaYykhtuKoookZeCMA0GCSqGSIb3DQEB
CwUAMBYxFDASBgNVBAMMC2lkcC52c2NpLmN6MB4XDTIyMDkxOTE0MDg1NVoXDTQy
MDkxOTE0MDg1NVowFjEUMBIGA1UEAwwLaWRwLnZzY2kuY3owggGiMA0GCSqGSIb3
DQEBAQUAA4IBjwAwggGKAoIBgQCt4oraHf54+lZtUeT6zMBlOuFLWq3T0ZCczas/
eTjos3IsirE5soTsIfgexAiBbpVq9mJgjgoNBGzrG9QcpLQ4eYte1h5iaPPMALXg
6i4aJH3o4V/lB7hvVPkFVqumYeSkP/CVnOsjjNO20PdtnvdxGyiC0jILtzZhNNoa
+FYHzV0lU4nzwx+GAuCtvCBrvFsPRdRDPdY/wi1bybwQryZzKYrppsaGEQy40Ox8
vJNDwz7CTlS3sRIoxvaqfqjm4JVbp35Ewy5wzU7QeLcv/VVWe3EajPCUxrQyv4kl
UVHE2iEVUv44gxSB8afP7Go4Zm9pTufUEWs2GMKm0P42pzKSjLKG7BJOnOJisJsP
wnj8SdYMnzS/heKnfYMhpaI3Fwx+jnYKIjhCnOe9LtnBFBp9kEMnPbK60MeTOnB9
kLid6ngP8oQf5l/HK4zpwAAF5uOOaRhWiLmkrck0WiHI90K9xYTljw2neRwq9sn0
d++dkgWjPzkBYN5J8jL7Y7pdHKsCAwEAAaNdMFswHQYDVR0OBBYEFMEBWrG23Zmd
oN0c61TzmkmOiE2aMDoGA1UdEQQzMDGCC2lkcC52c2NpLmN6hiJodHRwczovL2lk
cC52c2NpLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBdAxXE
GP+c4n8bFuwhtUtuJPHkU6ZLYP+uePU3swxh/Kjg1YwINTjE1yeSzwZZQNzTl0N0
JO5FxMyWCE2qnxnFG3dmXg2WWqoykCf6r9tcZs+Jy/vBnAM+QsA8y45ZcfUEc4MO
9zkr53tCS8++5sIeHlidD1CUASUpSSiAjQXTVNX4IPHqNENby15cKhg6/VknU/At
+8eH8apomvYJWQ3CQFvMdI5/jVgUDiryLB1lkXwbkNtd4FwmlYIqRGhSFeaZ0DDA
4DNmeSpqa2rHqwDzXaKZOLM/eWMoJyJV5dDov1F3HFQKEfnfasjkhFlBOfy9UzD/
uFFkSc/KAm02I6G9u9uuc7igrTb3pbQ4KSCuZGjOlqTf3PpI+BO5srzcBQ35T/GM
UdUsX/mP4o+tSLVuVPbp+ktyqGz+mfpj6eMfSZnnQ+ickM4tCi515r55e89Im2E9
EdFSwfks0aOBKnnNgczcelF7lCs8JHxK5gH8xvl2zOr8zNKXH2eucyOSeiE=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.vsci.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.vsci.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.vsci.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CEVRO University</OrganizationName>
      <OrganizationName xml:lang="cs">CEVRO Univerzita</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CEVRO University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CEVRO Univerzita</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.cevro.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.cevro.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.vsfs.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vsfs.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of Finance and Administration</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola finanční a správní</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Identity Provider for University of Finance and Administration.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identit pro studenty a zaměstnance Vysoké školy finanční a správní.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vsfs.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vsfs.cz</mdui:InformationURL>
          <mdui:Logo height="74" width="312">https://idp.vsfs.cz/idp/images/idp.vsfs.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVANeq0YyY4ji3iLZAOvHfD5EWGwPlMA0GCSqGSIb3DQEB CwUAMBYxFDASBgNVBAMMC2lkcC52c2ZzLmN6MB4XDTI1MDMyNjA5MzkzNFoXDTQ1 MDMyNjA4MzkzNFowFjEUMBIGA1UEAwwLaWRwLnZzZnMuY3owggGiMA0GCSqGSIb3 DQEBAQUAA4IBjwAwggGKAoIBgQCUERBqrbjb7atT55NVvaCjaxCsFHZkSbxM38qI Ea/QrOSSwX00t1JX1nQK+QaNQxqC3PF+XMk1lRH2FYb7ptGSfCkQPEiNw9CA7tM0 tVSvZZAnIqUOR2+sWUbveaqaCjsZ2Bd8hofpKTOGfxkjEMBtcyvP50Vj8FweU2qc 2IQ1mcKigZqPzdncbDuvWmP81zLSks1JIo8WhwU5aEa9UxbpMUiu3o7fRnHhF7G/ N0lNNIWJX+tYYc5nxXuqO+faTORnRKi7nmthkdtTkKdgcJUj9SBZA+g0JgIXj4d1 XEv/Vvgpj+wxs4npQE/Zp+mWmLHl876u5uwwk/pnBHsgAC/kAd7ej0Asc26Rv+6j ipGDe0GTedRgKydDoHNBmF7zGFcnGMjRop3KddBdBHAN3UpMuiHK3F4LdQhEJi04 ZeQs5aFKms0AJ0Z5BWh1hB7VE34Ii6K0w4NPA3Ht6/w0v2dISGKgjfUGk6aYRM2q ++JpheXaP8dlyeAeuPshUxvvNdUCAwEAAaNdMFswHQYDVR0OBBYEFNmkje7dghn4 7B0i8vZB+89JBeDYMDoGA1UdEQQzMDGCC2lkcC52c2ZzLmN6hiJodHRwczovL2lk cC52c2ZzLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQCIpern zlJ7CnGW0ykpJ99H28gIGSbAhTVEuVrqMxMx50CXOFaIcywBPGofXT3/HW9bwYW3 q9tidSXLid1YaqSaIw27uNnRGPR885UNDWy3WgmC3F9lfwEiFbws94v53m8bxUd+ SU/oF7rblr7qnwkRrO9XPfKJqeT1nuQXgqKdqPk1LsRyvRGia7I91Gh/ilTIzuw9 CxKxDI/0eCXyQzY0HTyFpWRPkl0eurG4Xi0QJTLhmOWXOUSzvZ3rSbWkN2Mx/Oaf aC0txN6/kfqEb9wUJ4unlpAhoRIZxzdTHBMT6XJiBcbfZROCz2wHr4U1A8q7Nfm5 hrjF6ln4kfJC51AAXEVwrVEuVRnieWF9wB+Mg7a/xXywmKyPZpwnZWYEGSqc37xf 8NlIOHTggV6Dm6GC8lTZ7MbpVKttKyAwkKqBiRfGOqC6CDmc9WMHdBQHlgLgzuWH N+NJqniagNv4y706/ShDLodphw3QaS8OhlhTvPWsNfxhhM/qnmsyRmGBahc=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVALkABn+1UuvV+r2SWKqZI//ferHGMA0GCSqGSIb3DQEB CwUAMBYxFDASBgNVBAMMC2lkcC52c2ZzLmN6MB4XDTI1MDMyNjA5MzkzMloXDTQ1 MDMyNjA4MzkzMlowFjEUMBIGA1UEAwwLaWRwLnZzZnMuY3owggGiMA0GCSqGSIb3 DQEBAQUAA4IBjwAwggGKAoIBgQDYjNgfSDiyAeA31UFmUC/esloTSdNIFtWVh66n WB6ZCwikOr5aj+GKA0T2nXUQ2V26OVwtK4/n4yoQNtMWqhku+ujbMYlEnSJx84/a ajKO1DIGid3q8xOg28f1Xsnp//yu+wLB35sduV/qDut7GHraUK0MbWb7Fz4bxgeo IXvD/jqF7JOjYojbmXe9ef5P33KV9Bu7ZjmdRrRQGQ9IPh0SPsDD9XByM9oE1ZOE LrXtmXUPPQWmuTsUBJR/pF6DmtBsqrmdRBBai71gUbd4A7srmmNxuKuNA1p4MoNP R91ljNny7/ENw+zfnqnqMAZx8Xbb/rLx6AX1VaccknqcjufHKyUA6y8VFzS6xhMA e5AtGZtQg4uFnaUhmLj+3V2pT2lcv7Va9vBbObseNeuesZitwVh4QDsnEKWnWwxj jW94FnecglGIqENMCHhtAju8MCZNXVeJzVtdiOD9WgucdboWWA7F/1U4Ta3+PjlT CPaUnyE/hyQ/MRDbujZBzm/09lcCAwEAAaNdMFswHQYDVR0OBBYEFIedsWLUFzts 22Xhw3v+mB61jQBYMDoGA1UdEQQzMDGCC2lkcC52c2ZzLmN6hiJodHRwczovL2lk cC52c2ZzLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBoFLM0 NLx1iseflFIsDddwIAay1VermpZfG7W5CDAr/ioJESK6zFqsVDNtNwybkFZUcrFo snNmJ9YQhicsnwXvlOgUIAWnfFoChhyMowN684mrVpW9ToRLDZ7lOWKFfv9EbpX5 yuR6lFbD6zsXTWxchFsT+sRKyWfJBT067uWeUrX2vGgKq+eQBMym7/F4KHVyFlWh QC+7QHqv3pFGkae2P8uYvSTV+565+b7L6jkACLMU/Kz672wyWQLxZovU6roV1qS5 nzgtrMg6SnnVQxwSHO9RhQwPMtpICV4vKzP+2KQe0k5rRXgslhV36xUy3AlAqB05 eVBPsWgKbZKsX5aEQ5F9AeTxgU9XjJ/5gSnaKa+1eJYuzKQEsSb1qq60ZnwPuYaT zn09dTYlPM9kcNZxenoe0ooS6QiaaOaeU4dkQ+3Oa4LNKYf+7uhjcT86rxrxJd3u bDVJ2FDKY/fmV1G6TibCg/YXqs6xeTAQmuvHQp3SpIC7O0JgXSBjzr0OPNQ=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.vsfs.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.vsfs.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.vsfs.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of Finance and Administration</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola finanční a správní</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of Finance and Administration</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Vysoká škola finanční a správní</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.vsfs.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.vsfs.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.vukoz.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vukoz.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Research Institute for Landscape</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Výzkumný ústav pro krajinu, v. v. i.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for Research Institute for Landscape employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Výzkumného ústavu pro krajinu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vukoz.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vukoz.cz/</mdui:InformationURL>
          <mdui:Logo height="120" width="672">https://idp.vukoz.cz/idp/images/idp.vukoz.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAOJBDczc1PjpgLTAfcIi2xKu/MOCMA0GCSqGSIb3DQEB CwUAMBcxFTATBgNVBAMMDGlkcC52dWtvei5jejAeFw0yNDEyMTAwOTQyNTNaFw00 NDEyMTAwOTQyNTNaMBcxFTATBgNVBAMMDGlkcC52dWtvei5jejCCAaIwDQYJKoZI hvcNAQEBBQADggGPADCCAYoCggGBAKSGkPkeSsXesVhdr6PfbCaCfiP8pNZ2n3Rk 0MQJBZEV+rT992uKMwDk6OCRHkWBebZrbInPUfQUWQY2DnrtJswi37h/oXgPXSyA 59O78TsjVPoQicweAm3otQa0ISUkXiK7+RvgZHj+AJLlR+1anFR9gvhikHT3HlQK xr/PibH9Z3I3lUaDfV70BxqWgGca+/Xwz/TwqFq1P8j/1oj+4nnxQMJZ4/qQRJzs A95pwnb6eIPSejAjAZ1V7QYs2YlKYromAf8KNx7csXvX3UJyU6RY227hOHDcw9WV ECJEDWPez+fwxCfh8nbgrX5hjJrl1nkNS0PkZbueEsanlBgvQ+2Eb0Q2xmr73ph/ Uw9tVzjjA7yRgSJUvo690U/9hQpaJPhR0kCQzxazJ1/lVxCbLR38mA+0XoW4ewsy UuPR5A573zRy3EjbGv2L1X0cmq881gUUjNkrqeJgUicNl8j3KPiDAMeqrOLzn9PX 1cLdk0n4uwTA0UKz3PXmsuKtrvgnqwIDAQABo18wXTAdBgNVHQ4EFgQULm9jigv3 S2G2xNBE8RvaJmKNWQUwPAYDVR0RBDUwM4IMaWRwLnZ1a296LmN6hiNodHRwczov L2lkcC52dWtvei5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEA CCLoagI1ZQ9Dpi3aHb88ncI7v+Qqx4ZLCLMMKRa1KEmf4ATyCBi446Ly5KVfzG9z /FkQNyc7uafy/yU2UeXL9NMknHOaj/tXkPB8mwkvt8MnHJjVUyS2u4za9DrCpLbf WN5Os90EmqHysuOvtRlJ70e+fcgc4bPyTOggqqozv7LQiS+4uuyd3dpbhqALqoFi ypZ8wA0MMTis0R2C/av+CFeO42fC94szcmEbvhjrBZRfIAzUaKPtRD/4Tp5e3gyZ 9p1TRdh7PedoAFq1wkybpnSrpllZN+BJ/lUZShndFrG5yMiIczZ5T+wuEy2lK6se WCanSSNMGrCaNMNwRlIEFqlaXccCVm4RwVfXkLhQmSTiNKdAyNvPnothaDYz5jtA pG2jei2LLRvHdDwhaqFyQYABg/oOdszXh3mGmGWrD6Qg5imPSr6v6CA9V8tNaEQn 7HwSK7zq88Y0pMxncMaUCGfRYCIgRV/Y3WFxBdXl6WDjjGV3rXNKM7keXoUILyZU</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUAVsWaMoyPHa9oL1JQA2nsjMkB/cwDQYJKoZIhvcNAQEL BQAwFzEVMBMGA1UEAwwMaWRwLnZ1a296LmN6MB4XDTI0MTIxMDA5NDI1M1oXDTQ0 MTIxMDA5NDI1M1owFzEVMBMGA1UEAwwMaWRwLnZ1a296LmN6MIIBojANBgkqhkiG 9w0BAQEFAAOCAY8AMIIBigKCAYEApOFALC7YM84bV+kvjm2yLBYwaQahV/rgnDuC vvx7CeAleFnF6DcjLgHcyF+e8IQf611mlpMy7wgaqPmweeTXMGE20WlGv7xQucHZ ojRDwqZXN8mhn46BiXiybx5cKmNzFZUUvPr4XbgXRhmVnmE21Aa5Qqgmxiw5SD/I CTQxPzZmXFjU7tqGCv3ZHJyPQcvYAiwDgDmhiXp8nzGcTB7Q+Fu2nWpSH4ZzeHu1 axzQZLWu8D3EdSrqFUacsLjPk6++jUZ5nm4RGRK3uM/1r/Qg7pibEIOW96TY23lu b1TYDIkVqS0C1x7lZexCm1KAws9wr8bM1mHHz8zzD6aOvonr/d29BW7rlqFThCMU 6f7UX/et76r4zo4pQH2gq3uQAZbG7Ptr19/EAaBZpJO95fFh5lwaSYWAuo/g+y1J EEd1xwKyLSyxhQA4x7CIJqP9nFvigz75uMMFgAyLa24JUzCv0AWfvyMxQJNjyKKE sBIrfmMs9JGb68Sfl4/VSn/fLpGTAgMBAAGjXzBdMB0GA1UdDgQWBBTYWoWQBrSE 06fFDwfL51OSn4i3cDA8BgNVHREENTAzggxpZHAudnVrb3ouY3qGI2h0dHBzOi8v aWRwLnZ1a296LmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBL X2r+V38H4LivX28R3POu1gmecTOWOmNt2hiBi2g7FNL8GrQad3cxHM+zwDvE4yXS 2Zqz5Boj89ekpiGlsWIQolYfCgmO7tdHUrL43Uz7TimNvZHLCJsQz1ibxS8OUGpb URZd6CzsO4zigXuHyZFo6y69vwMyBZxnrzq9CSG86XCON0xKLygSApi7gFyWsCSl rQMQ66JmOrdGhvkmwCN8deu0d8OJeGtytDaJUxV4P4Lke0f6g4MF6Gol0MFcfRqh O412NbLdbYVF/21gkGDsDCFk5B2h+kMsfQVPPlRzRx/86kmenHceHs3B7vXFvKpw zsxVSUxEmyjJQZwXnSZaSXoVvL5jQUO7fiQoyz4tCv9VRQ1lb3wts2ji8VcBZZqL YoslbMnW1jjAn1Yfl4kjVD+HyiMRJ5JFIKyT3N2rU8yRWtReFRHqd5ODw27mQmQk n9e64YEXGE8GyGaD3M45oZhDzGRqmiDfKtVniOnx4pqVLA8TVvtacW4Fkrdgf/E=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.vukoz.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.vukoz.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.vukoz.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Research Institute for Landscape</OrganizationName>
      <OrganizationName xml:lang="cs">Výzkumný ústav pro krajinu, v. v. i.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Research Institute for Landscape</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Výzkumný ústav pro krajinu, v. v. i.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.vukoz.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.vukoz.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.vzlu.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vzlu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech AeroSpace Research Centre</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Výzkumný a zkušební letecký ústav</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for Czech AeroSpace Research Centre employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance Výzkumnného a zkušebního leteckého ústavu, a. s. .</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vzlu.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vzlu.cz/</mdui:InformationURL>
          <mdui:Logo height="59" width="128">https://idp.vzlu.cz/idp/images/idp.vzlu.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAN5HcR5tNMPUfPbvt+x963NWFwxcMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUAblez7+yvFjHltpZYm0NUvs+S6MwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.vzlu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.vzlu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.vzlu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Czech AeroSpace Research Centre</OrganizationName>
      <OrganizationName xml:lang="cs">Výzkumný a zkušební letecký ústav, a. s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Czech AeroSpace Research Centre</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Výzkumný a zkušební letecký ústav</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.vzlu.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.vzlu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp1.fnhk.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">fnhk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University Hospital Hradec Kralove</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fakultni Nemocnice Hradec Kralove</mdui:DisplayName>
          <mdui:Description xml:lang="en">FNHK's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro fnhk.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.fnhk.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.fnhk.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="150" width="148">https://idp1.fnhk.cz/idp/images/logo_fnhk_150.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIVAMDdAlLXJ9V+XZHLZjU0yHeyWO49MA0GCSqGSIb3DQEB
BQUAMBcxFTATBgNVBAMMDGlkcDEuZm5oay5jejAeFw0xNTA0MjgwNTI5MzNaFw0z
NTA0MjgwNTI5MzNaMBcxFTATBgNVBAMMDGlkcDEuZm5oay5jejCCASIwDQYJKoZI
hvcNAQEBBQADggEPADCCAQoCggEBALTgxls1P8HtDD8Wa2bMd0gKRIWn/PXm/HDQ
k/U6iQz9AvZNDI89StYBWCKKkSdKUcSSXBhTZ8BAM3mHkY1BmuWnco3jTlSzBAlo
oorj3pukaWJ8vJD5/zoSRfVsQQ2mYHhYAuH2hhvy9zM1GneJL5yjwryb50mOejNj
b1XcO+sRBk3bxgwgDk1JelBr8CCeBImKrtZjF0Bi1Hy9qqWOc2dhtdiDA/O8H56B
A5mZYwIjO76RUGVu+cEOpMOz7RHKJeqdhOqQNwM83f8A+7jtXmtld16hzNOnHKsk
8qUkNrJIdzjEbRoEXa9ipGGj9Dd6p7nkhLP+KqU2D6k083SeJY8CAwEAAaNfMF0w
HQYDVR0OBBYEFGdJq+5e5T3DjTv3SxOuFBNpZvxKMDwGA1UdEQQ1MDOCDGlkcDEu
Zm5oay5jeoYjaHR0cHM6Ly9pZHAxLmZuaGsuY3ovaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQEFBQADggEBACuApmLtvB3O3fH4zokjP5x0cu73iF415MNzR+ngGt0X
ZFYq7BJh402PG4HArdGTwcpgRtiQfN3SNTLfxmeN5qt3fS3uIoAUIgxEcALhNSiI
6EXC7y1E6C6LUZkI6u4ttHkDs/4oIQWwQBKF/WIQeDV7zGc2r3AqKEr72s1nl2tP
rB0PclQIeSE9Zsw6pEWU1xQMLBfJz+GxB5JyBmSJ02PB0I3CzANbURWn334Vq3MM
96gk5nNZXL7jmj7DofAkBkQ/bLXBY5Y9wuLRFTFYan8y2T+49cTITAY159CpaXoG
yyMT5qP2yBNTKC69CRt/IHpNJI3Vka8mkZMM3Y6bUzM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAIyhki5nFe28JNBxPWdt6O4sC6xOMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp1.fnhk.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp1.fnhk.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp1.fnhk.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp1.fnhk.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University Hospital Hradec Kralove</OrganizationName>
      <OrganizationName xml:lang="cs">Fakultni Nemocnice Hradec Kralove</OrganizationName>
      <OrganizationDisplayName xml:lang="en">FNHK</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">FNHK</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.fnhk.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.fnhk.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Josef</GivenName>
      <SurName>Karliak</SurName>
      <EmailAddress>mailto:josef.karliak@fnhk.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp2.civ.cvut.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">cvut.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech Technical University in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">České vysoké učení technické v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for CTU in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro ČVUT v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.cvut.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cvut.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="53">https://idp2.civ.cvut.cz/cvutid/logo_cvut_40pix.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIUIwt1wtmowk/1gdrDzQIQmk8MKDUwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.civ.cvut.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp2.civ.cvut.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp2.civ.cvut.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp2.civ.cvut.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">ČVUT</OrganizationName>
      <OrganizationName xml:lang="en">CTU</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">České vysoké učení technické v Praze</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Czech Technical University in Prague</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">http://www.cvut.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">http://www.cvut.cz/en</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Strupl</SurName>
      <EmailAddress>mailto:strupl@vc.cvut.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp2.ics.muni.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/category/code-of-conduct/v2</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/category/anonymous</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://myacademicid.org/entity-categories/esi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">muni.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Masaryk University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Masarykova univerzita</mdui:DisplayName>
          <mdui:Description xml:lang="en">Primary Identity Provider for MU</mdui:Description>
          <mdui:Description xml:lang="cs">Přihlašování primárními hesly na MU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.muni.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.muni.cz/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.muni.cz/o-univerzite/uredni-deska/ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
          <mdui:Logo height="80" width="80">https://id.muni.cz/muni-80x80.png</mdui:Logo>
          <mdui:Logo height="40" width="85">https://id.muni.cz/muni-85x40.png</mdui:Logo>
          <mdui:Logo height="906" width="1920">https://id.muni.cz/muni-1920x906.png</mdui:Logo>
          <mdui:Logo height="1920" width="1920">https://id.muni.cz/muni-1920x1920.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC/TCCAeWgAwIBAgIJAJ18Q00DtkMIMA0GCSqGSIb3DQEBCwUAMBUxEzARBgNVBAMMCmlkLm11bmkuY3owHhcNMTYxMTA0MTQ0OTMwWhcNMjYxMTAyMTQ0OTMwWjAVMRMwEQYDVQQDDAppZC5tdW5pLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwDHZ5X2M7lJN7t2e5zw3L3m3mme777OG0Qgoct5NpmgNbsHJ+9bh3sLxTkkf7F7I0kaCyxNyrFOaIvWQ75ndr4XHQRj5r/n+bp+8/sjn3Fnp2yzxNae8Sg74G8Sw1du74coJ8Ftjqo/ODyamRW4wgk+DkNIk8VSOD0CJkEpFxdwwBMsPZMgXRYIxRCOIzjpyo/R38ai4w+rf0zVry+duX0Xyv1ByNgrYAG02/AgRcXcFsODvxL1M47ubbpgmks1gcXxR4+jINz0mQNpEGtu/EZ5JZerZM2J99CVpTcI6KP4anf3yDgKYjoQTzdBQALFIwpt5BseYI7E1yxeLZBu9/QIDAQABo1AwTjAdBgNVHQ4EFgQUibREYbTm5VVSnoTFcZxMvWsH+mUwHwYDVR0jBBgwFoAUibREYbTm5VVSnoTFcZxMvWsH+mUwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAQoIIi4XnqWbGRZ1gXmhcJVTiDdcf39dp1IiQZ7X0fAWLR4h9AO5ww8JFzj5aQMeybM+ZSl8t6HspVAKNz3fqEoYPSixK32uKV/GP46sos/Dwp04U4XR+smAsc5jbTwndP7tiMPMf03Own4mG1ZeR2s9LYf8sFV+FSjOBP3zlwWK8RAOJwRQXs5Bn9rtYAOdDrqqqwUWUSNXE2o9hq0/W65DmqbnUTOCOAe72FqLryS0ytFZGXm8R1gMZI1uMfEM76/+WvYFuCeMvROAoVwJH8aK7davxoM0w3JqUpzZy1dqQ9rTys3u2GffiPCsju+OJ7uEsbhR7eYegxCpRKLp58Q==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.muni.cz/simplesaml/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.muni.cz/simplesaml/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.muni.cz/simplesaml/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.muni.cz/simplesaml/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.muni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:Company>ICS MUNI</md:Company>
      <md:GivenName>IT</md:GivenName>
      <md:SurName>Service Desk</md:SurName>
      <md:EmailAddress>mailto:it@muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>ICS MUNI</md:Company>
      <md:GivenName>MUNI Unified Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:Company>ICS MUNI</md:Company>
      <md:GivenName>CSIRT</md:GivenName>
      <md:SurName>MU</md:SurName>
      <md:EmailAddress>mailto:csirt@muni.cz</md:EmailAddress>
      <md:TelephoneNumber>+420549494242</md:TelephoneNumber>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp3.caritas-vos.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">caritas-vos.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Caritas College Olomouc</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Caritas VOŠ sociální</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider of Caritas College Olomouc.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Caritas VOŠ sociální.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.caritas-vos.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.caritas-vos.cz</mdui:InformationURL>
          <mdui:Logo height="159" width="200">https://ldap.caritas-vos.cz/images/logo200.gif</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVANVLdT6BcKPVHkT3LqURS9PfPvobMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVAI0k5mgZcs9XceZQw7DkyrX8gqFDMA0GCSqGSIb3DQEB
CwUAMB4xHDAaBgNVBAMME2lkcDMuY2FyaXRhcy12b3MuY3owHhcNMjIwMzE2MTI0
MjU1WhcNNDIwMzE2MTI0MjU1WjAeMRwwGgYDVQQDDBNpZHAzLmNhcml0YXMtdm9z
LmN6MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAngzhgLYjLClrzBC8
MXKWQsFpKvZbO6rt7ccTkbbmUsj6rdOS9kg7UbL6IQBb0MitfC5p1fZjM3J+YV3u
bxKRDchqj0h/pkQ5m5tZt7kCTEZwF0J+AECqVQrW8vqr4VdhaJ95e4meJSEjuOyg
Qcms5OsWfgFM7jtjZu3spp7qheKJsGEcpYjHMq8VnDqxBvNZxDQgpjtD7ZfTAu1+
9zQqzxcmcuf9NO8QNW1uW6lv0h4Zk8CyN3ZVFVHJ9Mo0B5+TP8WYfQw8OQexIJZ1
EYBvsgNi30AlBNPxLmHcWxPyMUKBV3wpEiNF1QJAZMKxloadpnu9uiX1SWsAq11+
cix0raWSHQMklqOggZJmtUBCniubxM3Yq9hZNLbB3zJAQLhX/+1bKA0f6d8aXJfx
7VHH+7Knk3TpdIhr3x1uoSV3Bm/4I0WoAPmM6Z7WFAR/nJCgBiBa6PlLEYjIzffm
7ccSjEN1Hrk+vCsUIdTqOys/GhIXuM94JrZ6FT25pRlERCG5AgMBAAGjbTBrMB0G
A1UdDgQWBBTDpcoP7i0PvwLKG9vOeWn/updmCTBKBgNVHREEQzBBghNpZHAzLmNh
cml0YXMtdm9zLmN6hipodHRwczovL2lkcDMuY2FyaXRhcy12b3MuY3ovaWRwL3No
aWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBADbWC44wabMiXdRAcr+zrn0agMU9
xj0mb2V6KvG5dGQRZ1HsqGR/vMWXovoPRjEP4qb43j9RkySoCHIhXRMu/og78UwN
xE27m3MkNHYqIKELJN/wqGEhT2Wq12NwTVBieKBy+PNtos/mlNq1VrIZAiaWJ9Wf
s2WzbjfRq/UeTwew9Oyu3kQdosHErd/BcULlt+404NqEUs06Ul0i6MklZQrUTz68
gYGlxLjAsrVIxx34BJBhe8xlm2kHd9J+GrmvtGBqQfMc5BlohJ8FD7+yydm85EkU
pikCkOvJWbwThjqEzKWsquq+jsy5RPzKD+QdjfWsdA2Va483JaYXVohy/Yqrcain
jpKFKR9JpvmvhdynfQWFqOphSHFDp/+flov2odQ25WYONls1R7KJiFM1K4xzHnCv
TGaOLmesoC/t7nYIia3Q/72grMtevjbJg3gt+Q2vDDXX/1zuIxEUvwlv8xjXthjZ
rqIqiUC2O8VqQc7Wz8i3c1y4Mg0ZDkaDzRYjVg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUanxdp3qVB14M4LiWgu9FfAUKhigwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp3.caritas-vos.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp3.caritas-vos.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp3.caritas-vos.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp3.caritas-vos.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Caritas College Olomouc</OrganizationName>
      <OrganizationName xml:lang="cs">CARITAS - Vyšší odborná škola sociální Olomouc</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Caritas College Olomouc</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Caritas VOŠ sociální</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.caritas-vos.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.caritas-vos.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Tomáš</GivenName>
      <SurName>Svozil</SurName>
      <EmailAddress>mailto:tomas.svozil@caritas-vos.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idptoo.osu.cz/simplesaml/saml2/idp/metadata.php">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">osu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of Ostrava</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ostravská univerzita</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for University of Ostrava.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Ostravskou univerzitu.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://osu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://osu.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="40" width="86">https://spock.osu.cz/idp/images/logo40.png</mdui:Logo>
          <mdui:Logo height="150" width="324">https://spock.osu.cz/idp/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUWG5TKJk1qdEktx7J2tN27VZu54MwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUDgzMn29o0Aw5jMpkgldrKpvCjk0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUCkgvjWjarjK3Dg72f8lFGLU79TswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://spock.osu.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://spock.osu.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://spock.osu.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spock.osu.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://spock.osu.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://spock.osu.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">osu.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUWG5TKJk1qdEktx7J2tN27VZu54MwDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAwwMc3BvY2sub3N1LmN6MB4XDTE4MDEyNTE0NTM0NFoXDTM4
MDEyNTE0NTM0NFowFzEVMBMGA1UEAwwMc3BvY2sub3N1LmN6MIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvm7bYaFOTT2HcFbAMLcot/nCxBScI1hcs7BM
g2aJA12/2pzLc8rWcs4KIMVFMkYmY1h/MsK/9D3Dz64Ep4KwOb/xleiU2l6X7oF2
79BxUUZ29AVoSqjf9F8VbrNNJHY9TUPMrcbkhq3xfmYhftATM+dRsLLxBauFYmXU
Zb/TPZ0xJ2gJIs3Q/I80sxsGo8pPh9tU8w+r1m1V3SXnrU3KR75pGdRBjcOAyGOq
MyUxKPR0Yb2nUd/Ku8/fW3ACsFRc7W/GR5445ZMT6tDxBtN5iXXM7uKRBIgDfol/
GGCDBBymarsJ6++7PAn5B+Mgoct0Eq9wRF8E/PM2XzBGWBbvZQIDAQABo10wWzAd
BgNVHQ4EFgQUYxRDUymJvDHAEBmTJyPH/SHwHTEwOgYDVR0RBDMwMYIMc3BvY2su
b3N1LmN6hiFodHRwczovL2lkcC5vc3UuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZI
hvcNAQELBQADggEBAEq3KdB4gfqUD7DmwBPUHC0B+scv95zFNaEnqfDwbNnvvUl3
hlWI2w5y0x7xHgPuN27PdLK2DOk3N+uU6k39xFoXsQ9/0Wv8oa52Gu+/G2gR60/U
i5CZxY+qCzb92w88as0CnRIGz2MmDFjzfj201ySfSPiM+nRAAwHp/TrF59p41aRe
0k2k3Ld4C2hIelgA+NjxggUbj68CUviIRkmIjB08+sKAsz5xkB71/Ifc+prrP1sV
v0j7/+JVH4GY3+v3OyAexgolL7jSieYuC67Qzvb7K4HLWnOaG8dgaKsNHtlfTyJh
sA8iPYortfRIrKdc45unj59FyyHzQjKL2CjfQJk=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUDgzMn29o0Aw5jMpkgldrKpvCjk0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUCkgvjWjarjK3Dg72f8lFGLU79TswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://spock.osu.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Univerzity of Ostrava</OrganizationName>
      <OrganizationName xml:lang="cs">Ostravská univerzita</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of Ostrava</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Ostravská univerzita</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://osu.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://osu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Stachura</SurName>
      <EmailAddress>mailto:eduid@helpdesk.osu.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iga-test.uhk.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VERSO3-TEST server UHK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VERSO3-TEST server UHK</mdui:DisplayName>
          <mdui:Description xml:lang="en">VERSO3-TEST server UHK</mdui:Description>
          <mdui:Description xml:lang="cs">VERSO3-TEST server UHK</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://verso3-test.uhk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://verso3-test.uhk.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iga-test.uhk.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>verso3-test.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3-test.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUfnm+ROjvmtlJ/3gsyOtAn6SJ/TQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>verso3-test.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3-test.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUEY73fomQ4MRzJEcwTWm+lqD/+D4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga-test.uhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">VERSO3-TEST server UHK</md:ServiceName>
        <md:ServiceName xml:lang="cs">VERSO3-TEST server UHK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">VERSO3-TEST server UHK</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">VERSO3-TEST server UHK</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Hradec Kralove</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Hradec Kralove</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.uhk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.uhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:zemek@uhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iga.uhk.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VERSO3 server UHK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VERSO3 server UHK</mdui:DisplayName>
          <mdui:Description xml:lang="en">VERSO3 server UHK</mdui:Description>
          <mdui:Description xml:lang="cs">VERSO3 server UHK</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://iga.uhk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://iga.uhk.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iga.uhk.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>verso3.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+TCCAmGgAwIBAgIUZQMsleL5MJt1b2Iq+1EbFzB3NIIwDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAxMNdmVyc28zLnVoay5jejAeFw0yMTExMTIwOTE2MjVaFw0z
MTExMTAwOTE2MjVaMBgxFjAUBgNVBAMTDXZlcnNvMy51aGsuY3owggGiMA0GCSqG
SIb3DQEBAQUAA4IBjwAwggGKAoIBgQCz5+RycZbbl1316NOkW1YO/Q6tfJFP/2wU
MHyO38arw4Vbw9PMfk3u9fAO4I+hOXsxygS2Uf+Cysew1bf0HsFMiKQah7eTARVZ
H1j8lK+3Tx9Fiz9FzmL/ZPb2+Vd/D5GmyCrtYkDZHlfJShEuIvFLSoNpLYESUGm3
mCpYnqrGMVCE0ZqkHe60zjpDojzTduNjCwiw8q/SqyLr5Is9P4R5JjUym6crLjBd
B0a+HfCqLv93ATN+D+3aIWgBJ6s4sA7x1TEOFE8IsdPyhBDvtPWT62DvBkMXLQ0b
gg8dvhsNqTfygqqAGWpQrROtNREnkk0S3lO0+WvNkFAMmYUtuEWEWhbojk0KDZJr
WC9atgp8Pl5TL3Gz3XKFxCtZONm6IixZLZoS90mEeMqwMBslV2iWcBiBtoqE6ydF
Hspg9RfI5edSo/sEXvm73Cm95TPinSlak1jyaASvaQj6bdDz6op/OzM0jiRW26gQ
N0SO0+02iGbkWC6gPjaKLNTEwF5AGZ0CAwEAAaM7MDkwGAYDVR0RBBEwD4INdmVy
c28zLnVoay5jejAdBgNVHQ4EFgQUa6p7MsxmTThV+DTkX/hjb4cYXZ8wDQYJKoZI
hvcNAQELBQADggGBAFPL/b/Ea/YzdHEqe1fHAvROH9abq2YvNLadinNxB5D5X9Gd
PtR8NwNMhx4JEpmQe1S3v/Hgd2XEZKgH4k4tgMIqHxvpk6fFCJN4+pLHYIsTFpwd
jVEcBZcNhdwHpTTLtRz99GKySxExOzRHZkGCDKCvDJ1eXoNdhCS5Rs4KA4+FuboB
XzNg0nz6k1RR/JVqDoYMS36YjtGKv6Dw73eNDJFK7hrWNQCUhyNL5QCZYdcVEzAe
QTT40OS6FQv9hMI1+tPyjq15OdtGlWluZn8FKlzwkOrg9vvwVRqbg1WWbthCLcXt
BOB887F+qmKdNE7sucCSxAx9KC9heJmYveb4YGkC/5C4dxJXI/oUPbIK3f+lXpJK
IpOlI0+Tyv3M/Ai4I2SNqjIsk59CP91JWk7mdl6RjJoXffHb94Z0TPf0jn6mraTO
rMzA42XlmsaW0eYKybBisBpHIxHUzDL06CSf3n/2q0LG0D+1+HLOUicJNJZcUxVE
52vMX2fT0iIAhn1fdA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>verso3.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+TCCAmGgAwIBAgIUTdV1eyYjw+G9OJ65EnpjaTfUExcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga.uhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">VERSO3 server UHK</md:ServiceName>
        <md:ServiceName xml:lang="cs">VERSO3 server UHK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">VERSO3 server UHK</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">VERSO3 server UHK</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Hradec Kralove</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Hradec Kralove</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.uhk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.uhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:zemek@uhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://iir.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">iir.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of International Relations</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav mezinárodních vztahů</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the library Institute of International Relations</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře knihovny Ústavu mezinárodních vztahů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.iir.cz/en/static/library-services</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.iir.cz/static/sluzby-knihovny</mdui:InformationURL>
          <mdui:Logo height="40" width="125">https://iir.knihovny.cz/logo.png</mdui:Logo>
          <mdui:Logo height="61" width="356">https://iir.knihovny.cz/logo_c.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iir.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iir.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iir.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iir.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of International Relations</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav mezinárodních vztahů</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of International Relations</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav mezinárodních vztahů</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.iir.cz/en/static/library-services</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.iir.cz/static/sluzby-knihovny</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://index.bbmri.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">BBMRI-CZ</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">BBMRI-CZ</mdui:DisplayName>
          <mdui:Description xml:lang="en">Biobanking and biomolecular resources research infrastructure</mdui:Description>
          <mdui:Description xml:lang="cs">Biobanka klinickych vzorku</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://bbmri.cz/index_en.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.bbmri.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">http://bbmri.cz/BBMRI_CZ_files/BBMRI_Logo_square.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://index.bbmri.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://index.bbmri.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>index.bbmri.cz</ds:KeyName>
          <ds:KeyName>www.bbmri.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.bbmri.cz,O=Masaryk\C5\AFv onkologick\C3\BD \C3\BAstav,L=Brno-st\C5\99ed,C=CZ,serialNumber=Government Entity,1.3.6.1.4.1.311.60.2.1.3=#1302435A,businessCategory=Government Entity</ds:X509SubjectName>
            <ds:X509Certificate>MIIHLzCCBhegAwIBAgIQAoNR2cwyY9Xb3xqa6gvNmDANBgkqhkiG9w0BAQsFADBz
MQswCQYDVQQGEwJOTDEWMBQGA1UECBMNTm9vcmQtSG9sbGFuZDESMBAGA1UEBxMJ
QW1zdGVyZGFtMQ8wDQYDVQQKEwZURVJFTkExJzAlBgNVBAMTHlRFUkVOQSBTU0wg
SGlnaCBBc3N1cmFuY2UgQ0EgMzAeFw0xODAzMjIwMDAwMDBaFw0yMDAzMjYxMjAw
MDBaMIGwMRowGAYDVQQPDBFHb3Zlcm5tZW50IEVudGl0eTETMBEGCysGAQQBgjc8
AgEDEwJDWjEaMBgGA1UEBRMRR292ZXJubWVudCBFbnRpdHkxCzAJBgNVBAYTAkNa
MRQwEgYDVQQHDAtCcm5vLXN0xZllZDEnMCUGA1UECgweTWFzYXJ5a8WvdiBvbmtv
bG9naWNrw70gw7pzdGF2MRUwEwYDVQQDEwx3d3cuYmJtcmkuY3owggEiMA0GCSqG
SIb3DQEBAQUAA4IBDwAwggEKAoIBAQDAQ+CPAi9rQLMVX3ofo7/7ZE1P+0sIkxbY
1bcZ2eHXaU/t4KsaHMeGEWCLUTWvlQUC8gdAo0o+6hvK6+r7UuZn+d79aI4nS95H
YkDc5i8dgS2QbTPaccvluCHs9LX04jfeiHHM4/ZxTRGYzoHwMeHgeCRiYOymqJj7
TvXbAtRfuyHj5Gktbufh8OvSMtQV+IcxaJD7FU1VB2361iPumY1wMf/PC5RGfpAb
1Rgv6nconKyJrz5z7NOxQ1RWcWRWOidiDI4tzqSwt8LkBU7aAayfa08ALlFdDi/D
0iOH6FjSwdRHg4RNcIjf8B1LrBtrpIC1EZ11Mc/CkQenU6ALyTzzAgMBAAGjggN/
MIIDezAfBgNVHSMEGDAWgBTCuIXX4bkTvdFIvP1e3H2QQnqKqTAdBgNVHQ4EFgQU
/UZLhRkI4API65fvSc43cZ0ZdSswJwYDVR0RBCAwHoIMd3d3LmJibXJpLmN6gg5p
bmRleC5iYm1yaS5jejAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUH
AwEGCCsGAQUFBwMCMIGFBgNVHR8EfjB8MDygOqA4hjZodHRwOi8vY3JsMy5kaWdp
Y2VydC5jb20vVEVSRU5BU1NMSGlnaEFzc3VyYW5jZUNBMy5jcmwwPKA6oDiGNmh0
dHA6Ly9jcmw0LmRpZ2ljZXJ0LmNvbS9URVJFTkFTU0xIaWdoQXNzdXJhbmNlQ0Ez
LmNybDBLBgNVHSAERDBCMDcGCWCGSAGG/WwCATAqMCgGCCsGAQUFBwIBFhxodHRw
czovL3d3dy5kaWdpY2VydC5jb20vQ1BTMAcGBWeBDAEBMHsGCCsGAQUFBwEBBG8w
bTAkBggrBgEFBQcwAYYYaHR0cDovL29jc3AuZGlnaWNlcnQuY29tMEUGCCsGAQUF
BzAChjlodHRwOi8vY2FjZXJ0cy5kaWdpY2VydC5jb20vVEVSRU5BU1NMSGlnaEFz
c3VyYW5jZUNBMy5jcnQwDAYDVR0TAQH/BAIwADCCAX8GCisGAQQB1nkCBAIEggFv
BIIBawFpAHYApLkJkLQYWBSHuxOizGdwCjw1mAT5G9+443fNDsgN3BAAAAFiTiHO
1AAABAMARzBFAiEAtuEuFzNyt5WEZCitPQccVHb1Mi2eTgIe/0t4UnOndy8CID5y
nJaW3iIfyfkSsKzFQVU/Yw9sJbFW3WzgFfh5p76ZAHYAVhQGmi/XwuzT9eG9RLI+
x0Z2ubyZEVzA75SYVdaJ0N0AAAFiTiHP/QAABAMARzBFAiEAssQTH2kEJXfSBgKl
qpzN3mW/JpP2Re2ta45TeAijI4MCIDlwv+JjCPZEZtz+R1yMvk54RKWFvNdftKLb
sD7sLaMDAHcAu9nfvB+KcbWTlCOXqpJ7RzhXlQqrUugakJZkNo4e0YUAAAFiTiHO
+AAABAMASDBGAiEAsn8drsdNlnlMVs4FE1m5fH8wu+dn8lB2DHHGpmtoJYYCIQDH
McUr2fFu3yTHb/+XfLYmWCgBxlXSGHS/0teHnPJfxDANBgkqhkiG9w0BAQsFAAOC
AQEASviGqDy+p+tfAFdQNVd+w2Lie9dzvcbOUxjZYmsWlR04l6RR9vTApNxqeACi
KzOnWuLLFOy97G4KCCHTpbcUiAPRMgE+/FaJ+bBQXPCEvY17YHvSlgoDBh/MD78N
4v1zsED5io/iSlEigjX8JA2b0lAF/jxODY5XDAxM5IuZke+7VrGo7k70f2KoAWMJ
o28sBWpehNFy0C6EdqfTscvuspEXWoIzuGrtK0z+CrDKHsbBukpYpg0biqLQGL9X
zhGobTj0NMptq0n7nGVcjkDygly6KBKnhigMTK4zdwQfdsdAgX5kJUu85bxR2Kce
pTCZvN+mfkulM6qw5981/FVKbQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2016</ds:KeyName>
          <ds:KeyName>https://index.bbmri.cz/shibboleth</ds:KeyName>
          <ds:KeyName>index.bbmri.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=index.bbmri.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJAMkFWtRBiAWnMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://index.bbmri.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://index.bbmri.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://index.bbmri.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CERIT-SC</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CERIT-SC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CERIT-SC</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CERIT-SC</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cerit-sc.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cerit-sc.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Holub</md:SurName>
      <md:EmailAddress>mailto:holub@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Vojtisek</md:SurName>
      <md:EmailAddress>mailto:vojtisek@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://intosh.app/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Intosh</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Intosh</mdui:DisplayName>
          <mdui:Description xml:lang="en">Intosh - Interlibrary sharing</mdui:Description>
          <mdui:Description xml:lang="cs">Intosh - Meziknihovní sdílení</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://intosh.app/about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://intosh.app/o-nas</mdui:InformationURL>
          <mdui:Logo height="70" width="128">https://intosh.app/intosh-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://intosh.app/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://intosh.app/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://intosh.app/shibboleth</ds:KeyName>
          <ds:KeyName>intosh.app</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=intosh.app</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUe7EN7fzhB7GyYVtqwuINU2mocuUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://intosh.app/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://intosh.app/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://intosh.app/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://intosh.app/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://intosh.app/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://intosh.app/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://intosh.app/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://intosh.app/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://intosh.app/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://intosh.app/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://intosh.app/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Intosh</md:ServiceName>
        <md:ServiceName xml:lang="cs">Intosh</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.bigdigdata.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.bigdigdata.com/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Bedřich</md:GivenName>
      <md:SurName>Košata</md:SurName>
      <md:EmailAddress>mailto:beda@bigdigdata.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ipos.ders.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IPOS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IPOS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Internal demand and order system.</mdui:Description>
          <mdui:Description xml:lang="cs">Interní poptávkový a objednávkový systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ipos.ders.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ipos.ders.cz/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://ipos.ders.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ipos.ders.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ipos.ders.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ipos.ders.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ipos.ders.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID6zCCAlOgAwIBAgIJAP2Ojx5KDNuyMA0GCSqGSIb3DQEBCwUAMBcxFTATBgNV
BAMTDGlwb3MuZGVycy5jejAeFw0xNzEyMDYxNDAyMjBaFw0yNzEyMDQxNDAyMjBa
MBcxFTATBgNVBAMTDGlwb3MuZGVycy5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGP
ADCCAYoCggGBAK3dPAAYmgBzK4gB5OxcdNiuktQGH1xull28p+AgEVuXVziunz39
ZlbM8+fFdb7g+J9z1UDZWeQhB5q8VL6D4e4cIWyzDNMOWBjwaURNwIGlkLXURWAJ
5ohOgDus+Pqv58i2bERBuGEUnn4FmVn0OSdc16ZcphwRM/xwp8YLxP6/YuNPpZz9
iRC8TgJS42aFkFK2u3ZLw2rjcJf7LK/9ODKn/jFiF9xZ+GSAJDrTiMuYKRZbNktZ
g0d1P0ZMCkS+bJC2F3c2iaepiK8g0lBLUj2sZNcB5ULiNvBdfBK4ruxhi2WcbJCI
qY8PDiZAm/PbaDsNs7DlkKnL/gyq+OdYyaTfQq+pGlsDR8hTm9VhQ6oRm408DZSp
wFcmjWKJOPXDYpEgs8OZPiI39KYMGuFS1LZmMe1ukEuXyCKKiztoRHFr2CBjutnE
Ul+QsscTOD2PmTazSCpg76kE8cap69Xxf4b1C9oMbWuf9hUCVQYd4yq1nolbcPJu
zUWJetlqpxmzGwIDAQABozowODAXBgNVHREEEDAOggxpcG9zLmRlcnMuY3owHQYD
VR0OBBYEFKVabr7Vc82rNGrHVvEJFM1cdyzwMA0GCSqGSIb3DQEBCwUAA4IBgQB1
O+34pnl+J2HsLE6Y2Guva6EEaBKyFVheYpcieQ1p0sLE2uOHP13GZOX1ZKGC6dBw
oLcxsefURsmuCFY8jJpbcJvTwy3Y0ZU2Sgjm75m+imIaB3g1ToJ5kPe2SrNRBn7n
kDA/sBEfWYvcfoQ70l/MQG28APzatqQA4omIfR4LhoHwScP77NTOrFbRsKtgokDY
2hi9QsDW0UNxxg2PhvbbmbIL87GeyLXbZLo2RfD3dSbUUHxjhcVprGSziy0+0QzC
E9/U7rrwAbMSdboCT8TPXz2gev1KrxS5Z1BIEboLGId8KzObRyzZ1/ZvHTN4PvEF
EqmhzVbEAz7PJAM+1NuW2JPnG26oC6P4QB4yRFP4YaDHcGNer9Sgh+P1vPH/QaCf
X1ENEyVwYO283GyuOjNyeKChDK6iilWp+3a8VvU+vqcqMJwzYhO+oMflvE4HT5w6
lD6SF3Kju6V0nbTSY2HT4WpCemXat2r3C0hMiRDGYXC3Y4TYlkXj4g5TgD9zGm8=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ipos.ders.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ipos.ders.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ipos.ders.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">IPOS</md:ServiceName>
        <md:ServiceName xml:lang="cs">IPOS</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:mace:dir:attribute-def:displayName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">DERS, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">DERS, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">DERS</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">DERS</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ders.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ders.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Adam</md:GivenName>
      <md:SurName>Kratky</md:SurName>
      <md:EmailAddress>mailto:kratky@ders.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ista.tacr.cz/ISTA">
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TAČR - Technologická agentura ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">TAČR - Technologická agentura ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tacr.cz/index.php/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLTCCAhUCBFhKqrowDQYJKoZIhvcNAQELBQAwWzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLTCCAhUCBFhKqrowDQYJKoZIhvcNAQELBQAwWzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirect" ResponseLocation="https://ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirectResponse"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ista.tacr.cz/ISTA/PUBLIC/saml/SAMLAssertionConsumer" index="0" isDefault="true"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">ISTA Attribute Service</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ISTA required attributes</md:ServiceDescription>
        <md:RequestedAttribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Technology Agency of the Czech Republic</OrganizationName>
      <OrganizationName xml:lang="cs">Technologická agentura ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Technology Agency of the Czech Republic</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Technologická agentura ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.tacr.cz/index.php/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.tacr.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Radovan</GivenName>
      <SurName>Lupták</SurName>
      <EmailAddress>mailto:luptak@tacr.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Vladimír</GivenName>
      <SurName>Kubíček</SurName>
      <EmailAddress>mailto:kubicek@tacr.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iszcu-test.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IS-test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IS-test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Data pump of university.</mdui:Description>
          <mdui:Description xml:lang="cs">Informacni system univerzity.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://iszcu-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>iszcu-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iszcu-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUelo2Q4ZkFigdPC31P7/q7oCzdKswDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAxMRaXN6Y3UtdGVzdC56Y3UuY3owHhcNMjAxMTMwMTI0MTI2
WhcNMzUxMTI3MTI0MTI2WjAcMRowGAYDVQQDExFpc3pjdS10ZXN0LnpjdS5jejCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAMy5FeZu1qW7FD10FzLnoACb
VayLnlXCQZDVj2knZr7oWeNONUSRXDSZz6xfDqW7D77z0BurgFMh26N518ebSN67
w8VsHQVhYoWjzrU71H6LTFUoCz8GeojJllZxPVoPVfcY+BHVyhoL9HeKEGc7Y8Iu
Dyz65cnWjDBE4uw1PLCwu17rw9nJrSepDsW6bX/Vpj6tMyUyttivI0k1+71OTseg
QYdBALZHEuerI4iuJsfpmuHFqhSf7OcrjyQlpNgYmcIYfKqdfpG4ZsvhR+PEAJl0
LbGEA7QT+LULulQ8zMCMyAo3miPFnq8t4+9G3f5Vp2O0EgzvmifKew8jrVR9fYdI
5xu7KraA9HexDpNForXeM7tPXYFMysPgwi6pGK0EJ9VQnZlc4bFjOivAeEFyVCBa
DIai7R0/TVPirzw3IyCH8U8h6ascZdoxku4vJtn7+McxLpQPEDOHdkeyatlBmj8P
pCAVNVSLI20Gx6M3Mw8KXHcYkPz0464K7eT/wiiMZwIDAQABo2UwYzBCBgNVHREE
OzA5ghFpc3pjdS10ZXN0LnpjdS5jeoYkaHR0cHM6Ly9pc3pjdS10ZXN0LnpjdS5j
ei9zaGliYm9sZXRoMB0GA1UdDgQWBBS2La+SbJBrs1XVBrW49vxb6BvJ8TANBgkq
hkiG9w0BAQsFAAOCAYEAfiX1Ynppdwqp57smnfo2rm8PtU244gRW4ZD41KkHiuIJ
RMvTMY+8UYBpdIYFc2KT/I3z1HFaYN5glk+/6bdYNkN3ZVIvl1ZG6bvnOicaSE6L
HqJzWdb+gWJBXnhLGywj2GP3sa2zVfaDqW7rFAZQjnEXvZuoR/y3k0NVtYODePPR
wkoLiOjLzy0Kq5ZSg/SBSCrsGUu2mFb8577jW0D8fMtNj6JcIplA7Zg+fzRhvxXr
S5G2AF1e/2amNcl2Iqvv9VAsVQa+dnrOcqKJ0G3yKF82g28qtD/it/SbbNkogCVY
ZzKpNFLq+a2AnPDmqocBRTjY2dPw5Qw1B7F3ohwVRs7weZXdvk/X6QWhaHMTQd+3
ZXW8DjK3A27IoDSHLqYF4jEBsjashWwELETCi3YXy3WBMReJe9ya1SO6rdtFCtjX
phAX0dz9b3Qtiro6qChUt37Cf4LSexVY6YN5F/W58rXjKshUWOu2ntlW++fI/k7I
UDBSq3fZD3VIAqvfqX3E</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IS-test</md:ServiceName>
        <md:ServiceName xml:lang="cs">IS-test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Data pump of university.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Informacni system univerzity.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iszcu.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Data nformation of university.</mdui:Description>
          <mdui:Description xml:lang="cs">Informacni system univerzity.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iszcu.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://iszcu.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>iszcu.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iszcu.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUEQB9eVw6ZoIGr1sbv6oZzK5k6UIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IS-test</md:ServiceName>
        <md:ServiceName xml:lang="cs">IS-test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Data pump of university.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Informacni system univerzity.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://itmulti.cz/simplesaml/module.php/saml/sp/metadata.php/portal4">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal4" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal4" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal4" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal4/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal4" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://jara.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Auror - DEV</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Auror - DEV</mdui:DisplayName>
          <mdui:Description xml:lang="en">Development and test server for Auror system.</mdui:Description>
          <mdui:Description xml:lang="cs">Vývojový a testovací server pro systém Auror.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://jara.vm.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://jara.vm.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://jara.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>jara.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=jara.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUNdC8rWTHM1F3fCvYimYSVZfcv8cwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Auror - DEV</md:ServiceName>
        <md:ServiceName xml:lang="cs">Auror - DEV</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Development and test server for Auror system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Vývojový a testovací server pro systém Auror.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, interest association of legal entities</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jaroslav</md:GivenName>
      <md:SurName>Svoboda</md:SurName>
      <md:EmailAddress>mailto:jaroslav.svoboda@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://journals.bmj.com/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>shibboleth.highwire.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibboleth.highwire.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIDOjCCAiKgAwIBAgIBADANBgkqhkiG9w0BAQQFADAiMSAwHgYDVQQDExdzaGli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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>shibboleth.highwire.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibboleth.highwire.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIDOjCCAiKgAwIBAgIBADANBgkqhkiG9w0BAQQFADAiMSAwHgYDVQQDExdzaGli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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML2/POST" index="1"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">British Medical Journal</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">British Medical Journal</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.bmj.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Olga</md:GivenName>
      <md:SurName>Biasotti</md:SurName>
      <md:EmailAddress>shibboleth-admin@highwire.stanford.edu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://k3bohumin.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">k3bohumin.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">K3 Bohumin - LIBRARY</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">K3 Bohumín, p.o. - středisko KNIHOVNA</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the K3 Bohumin - LIBRARY</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře K3 Bohumín, p.o. - středisko KNIHOVNA</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.k3bohumin.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.k3bohumin.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://bohumin.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+TCCAuGgAwIBAgIUYce3tbFSlzfe4VhBQP38vzyf76cwDQYJKoZIhvcNAQELBQAwgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEcMBoGA1UEAwwTYm9odW1pbi5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MB4XDTIxMDQxOTE1MjEwOFoXDTMxMDQyMDE1MjEwOFowgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEcMBoGA1UEAwwTYm9odW1pbi5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoQ7h0SAvsMRlLtCh2OTlGcxIOIq4pLU0mw51rl+lQHzwbGfsHA4O+1/recEDXWGXcM4opQWilvC5pwD1Ni+xMIgKJ+GmHoBZz9hL54DTvyFTlEBWTQhlZbI5BxHWT+CuuOnZOVcOls0ymtwODRchodsBBqrsphS9kLS9IZgjynXDI8QJjYA80WJxItaexcn+HyZJIWDzYTteKImNOlbVxBdesEeP63i40OwSCfpcLzSR5WHEClEEwieJs0bHUCRZCPO5QOQ0idn2fxkTo8ABFAsVxEPat18UeyadJY6DOJaBmxwho7JE8SwQ5zDIV59jgyEAV7aUOm2N7Iy7C9HEywIDAQABo1MwUTAdBgNVHQ4EFgQUvtRkyaa8kheHI6hpVAFumllBxyowHwYDVR0jBBgwFoAUvtRkyaa8kheHI6hpVAFumllBxyowDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAcOx4a8hJQa7pejEepnfNHfeYbX+oTNiRfDnWFfLwrVAHLMU5bWWSfQ6AfUMTPlKWXi395XASPhkvI3jQo71nxJR0+oBiMBe+V8e6e28lMNS2N26HPjXlT6Znt54eWfjtmarxXEl+YbwAkauRGDljEzW1aVm7cbYki5hqTJi2KeUINmuwWZXu+5t2nNJZF1F/ElTp64lwVxammWTxUx9XlfMwttVs57nYcZA59xkGbvp4QLPSpt/MXz9RtO5c/zIVAlGAwfnIPyiabNle9X16WnLB4O637dNT+wiEYY7QuykmnNl5mNU5LAI15/CzqJCeqC0vTXy72o6wNvjUvyV+bA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bohumin.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bohumin.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bohumin.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bohumin.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">K3 Bohumin - LIBRARY</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">K3 Bohumín, p.o. - středisko KNIHOVNA</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">K3 Bohumin - LIBRARY</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">K3 Bohumín, p.o. - středisko KNIHOVNA</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.k3bohumin.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.k3bohumin.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://katalog.cnb.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Česká národní banka</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Czech National Bank</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ČNB a čtenáře Odborné knihovny ČNB.</mdui:Description>
          <mdui:Description xml:lang="en">Identity Provider for employees of the CNB and readers of the CNB special library.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://katalog.cnb.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://katalog.cnb.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="252">https://katalog.cnb.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">katalog.cnb.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.cnb.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Česká národní banka</OrganizationName>
      <OrganizationName xml:lang="en">Czech National Bank</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Česká národní banka</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Czech National Bank</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.cnb.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.cnb.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://katalog.knihovna.jicin.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Knihovna Václava Čtvrtka v Jičíně</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Vaclav Ctvrtek Library</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Knihovna Václava Čtvrtka v Jičíně</mdui:Description>
          <mdui:Description xml:lang="en">Vaclav Ctvrtek Library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://katalog.knihovna.jicin.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://katalog.knihovna.jicin.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="22">https://katalog.knihovna.jicin.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">knihovna.jicin.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.knihovna.jicin.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Knihovna Václava Čtvrtka v Jičíně</OrganizationName>
      <OrganizationName xml:lang="en">Vaclav Ctvrtek Library</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Knihovna Václava Čtvrtka v Jičíně</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Vaclav Ctvrtek Library</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://knihovna.jicin.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://knihovna.jicin.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Andrea</GivenName>
      <SurName>Scháňková</SurName>
      <EmailAddress>mailto:andreaschankova@centrum.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://katalog.mekvalmez.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Městská knihovna Valašské Meziříčí</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">The Public Library Valašské Meziříčí</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Městská knihovna Valašské Meziříčí</mdui:Description>
          <mdui:Description xml:lang="en">The Public Library Valašské Meziříčí</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://katalog.mekvalmez.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://katalog.mekvalmez.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="137">https://katalog.mekvalmez.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">mekvalmez.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.mekvalmez.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Městská knihovna Valašské Meziříčí</OrganizationName>
      <OrganizationName xml:lang="en">The Public Library Valašské Meziříčí</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Městská knihovna Valašské Meziříčí</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">The Public Library Valašské Meziříčí</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.mekvalmez.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.mekvalmez.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://katalog.npmk.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Národní pedagogické muzeum a knihovna J.A.Komenského NPMK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">The National Pedagogical Museum and Library of J. A. Comenius</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Národní pedagogické muzeum a knihovna J.A.Komenského NPMK</mdui:Description>
          <mdui:Description xml:lang="en">The National Pedagogical Museum and Library of J. A. Comenius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://katalog.npmk.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://katalog.npmk.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="163">https://katalog.npmk.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">npmk.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD
WjEXMBUGA1UECBMOQ3plY2ggUmVwdWJsaWMxEjAQBgNVBAcTCVBhcmR1YmljZTEP
MA0GA1UEChMGS1AtU1lTMQ8wDQYDVQQDEwZLUC1TWVMwHhcNMTkwODAyMTMyMzQz
WhcNNDYxMjE4MTMyMzQzWjBcMQswCQYDVQQGEwJDWjEXMBUGA1UECBMOQ3plY2gg
UmVwdWJsaWMxEjAQBgNVBAcTCVBhcmR1YmljZTEPMA0GA1UEChMGS1AtU1lTMQ8w
DQYDVQQDEwZLUC1TWVMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJ
jOfJyf0W2Xa+WHrJtfVPKHgFnkB0KcSUoJZwbuUfZws9QHjjLLoX7P+wJvlooMh/
Fxgq42jLIwe6khw4hepw433DZ74uuffXeZwv1V60Ny8VQJWGNnCC5CrrI2Ny+RZ1
m1OoEyktLUe9IQIijNQCHGeU4L2fIMVMYudyanP3N0c3rZV6b6TKPqCLqNJMaytO
pw1bR+mc3CYEx9b2SmkBAymWAtRzhGcz5qNId6fwNO47skCT3BUNQfv9Ggr5WuvW
Xm8TeXrtQi4KyJ+IdEzSK4j2xTVcuBaCLyhSYoGTj4rJ8XoZfT3UXjZnv5ivcWIp
3DLoOT/wEiHp58hj7WnpAgMBAAGjITAfMB0GA1UdDgQWBBTczhMuvAh3s8qtN9LP
b+D52Xw/LDANBgkqhkiG9w0BAQsFAAOCAQEAmypjHZx0uQY6OwrUKZig4ETP6vxm
ObyFxw75pdxPYcPIzFrMh/QkRaJnWs/mYd6qPiQeluRpjrJvchZxWXl3N+juAd6S
uJfopMvjophrR8X76av3HlBdETNXj7rf0sF26K7EaZI9OFaYRXNQQ3edLoJGdh9b
RoHNia6Or4cCsJHiNwXoK1OQmTJQvjGMK8dlhzUXtNaDXppKUsWvdQSHiNk0THoR
rYoBP5RH783N4PMq8EnSZztea+Dl5hCaw8ge0j3nJUl9GDZO2d4CvzL2DobkGSJt
yMzare/MvieEWcoF72/DBneOiu9YOsd163FCZbyBEIFdFeEnJ4abiON4UA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.npmk.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Národní pedagogické muzeum a knihovna J.A.Komenského NPMK</OrganizationName>
      <OrganizationName xml:lang="en">The National Pedagogical Museum and Library of J. A. Comenius</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Národní pedagogické muzeum a knihovna J.A.Komenského NPMK</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">The National Pedagogical Museum and Library of J. A. Comenius</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">npmk.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">npmk.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Miloslav</GivenName>
      <SurName>Brada</SurName>
      <EmailAddress>mailto:brada@npmk.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://katalog.svkos.cz/idp/shibboleth">
    <md:Extensions xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">svkos.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Moravian-Silesian Research Library in Ostrava</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for patrons and staff of Moravian-Silesian Research Library in Ostrava</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro čtenáře a zaměstance Moravskoslezské vědecké knihovny v Ostravě</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.svkos.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.svkos.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="42">https://katalog.svkos.cz/logo/logo_40.png</mdui:Logo>
          <mdui:Logo height="90" width="94">https://katalog.svkos.cz/logo/logo_90.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDATCCAemgAwIBAgIJALlMhKjcFDETMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://katalog.svkos.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://katalog.svkos.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.svkos.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://katalog.svkos.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://katalog.svkos.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://katalog.svkos.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://katalog.svkos.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://katalog.svkos.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://katalog.svkos.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.svkos.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">svkos.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDATCCAemgAwIBAgIJALlMhKjcFDETMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://katalog.svkos.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://katalog.svkos.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</OrganizationName>
      <OrganizationName xml:lang="en">Moravian-Silesian Research Library in Ostrava</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Moravian-Silesian Research Library in Ostrava</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.svkos.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.svkos.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jiří</GivenName>
      <SurName>Nováček</SurName>
      <EmailAddress>mailto:jiri.novacek@msvk.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Miroslav</GivenName>
      <SurName>Prokel</SurName>
      <EmailAddress>mailto:miroslav.prokel@msvk.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://katalog.vcm.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Východočeské muzeum Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">East Bohemia Museum in Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Východočeské muzeum Pardubice</mdui:Description>
          <mdui:Description xml:lang="en">East Bohemia Museum in Pardubice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://katalog.vcm.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://katalog.vcm.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="111">https://katalog.vcm.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">katalog.vcm.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.vcm.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Východočeské muzeum Pardubice</OrganizationName>
      <OrganizationName xml:lang="en">East Bohemia Museum in Pardubice</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Východočeské muzeum Pardubice</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">East Bohemia Museum in Pardubice</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.vcm.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.vcm.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor entityID="https://keycloak.atlasgroup.cz/auth/realms/external-idp">
    <SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol http://schemas.xmlsoap.org/ws/2003/07/secext">
      <md:Extensions xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CODEXIS ACADEMIA</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CODEXIS ACADEMIA</mdui:DisplayName>
          <mdui:Description xml:lang="en">National and European legal information system CODEXIS®</mdui:Description>
          <mdui:Description xml:lang="cs">Národní a evropský právní informační systém CODEXIS®</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://codexisacademia.cz/o-produktu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://codexisacademia.cz/o-produktu/</mdui:InformationURL>
          <mdui:Logo height="187" width="1241">https://codexisacademia.cz/wp-content/uploads/2019/09/academia-logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <KeyDescriptor use="signing">
        <dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
          <dsig:KeyName>5uqxkYGhxkqlisTU_Bm6Z5dhVNkpbgWb0W1jGY2GYXM</dsig:KeyName>
          <dsig:X509Data>
            <dsig:X509Certificate>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</dsig:X509Certificate>
          </dsig:X509Data>
        </dsig:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
          <dsig:KeyName>5uqxkYGhxkqlisTU_Bm6Z5dhVNkpbgWb0W1jGY2GYXM</dsig:KeyName>
          <dsig:X509Data>
            <dsig:X509Certificate>MIICpzCCAY8CBgFxT9cIwDANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxleHRlcm5hbC1pZHAwHhcNMjAwNDA2MTQxMjA0WhcNMzAwNDA2MTQxMzQ0WjAXMRUwEwYDVQQDDAxleHRlcm5hbC1pZHAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDFAAOZvvpkt82BOfJHZzUQ2t3olU4Tvs+ztneyRV3J2NJxqQVyRmHNqQ1lkRV1THhSFVfyi7WLLHobfBnxBqdv7CMXr5IJxtuItvGp2UGPiypn1ib6PGENnXzva0yyY7BPvE0R1f22p3Jg3mWVHZiFxzMnBdgBdiwH+K3lczqjMDWJyoQcrGaHmgdWJgKgtK1k7fSVz8/SyrYvnktGu5H77JK79EOZV/OKeGwHiYXbcACCRQLqZGxWy8RN1ehTnkS87h3cnU58elf90POm1ajRAa2sxpZh+adHRb2IM+3BohdtqAVbrXUb/iR3CmURRqkKBCHRZjvSOoWhL38Agk9XAgMBAAEwDQYJKoZIhvcNAQELBQADggEBABr9ISEx1V6taWHKWp5szQINEoYhNN1vN330yL3YubQV91d7OScbJCEs6UU4HbxASRA1kSCaObfP8jsWagXFQgjU6Br5kspp+xD5wckEmQA1Z2fOiP7CWzmy55zFJjvjKHhhplOVGNZ8md4tvfGwyVS8s+vwlJqYmta/ryvOI9mPGaUcaOa25+OLKW0af5zLeb9WfRG91Zc2BPoVVUaqT6mL4Sht1Qz764C1lCsAaglEY7WD1uIdump/hPeTirbRuAwDvtnjkgVZ8uCDuVozscSTh2eRZxvzy1AakMTG7AO4/WgJeg4DXPBo0+PopsIjQMtXMassUPG/kRqcK///qVE=</dsig:X509Certificate>
          </dsig:X509Data>
        </dsig:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/muni/endpoint"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/upol/endpoint"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/cuni/endpoint"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/zcu/endpoint"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/muni/endpoint" index="1"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/upol/endpoint" index="2"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/cuni/endpoint" index="3"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/zcu/endpoint" index="4"/>
      <md:AttributeConsumingService xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" index="0">
        <md:ServiceName xml:lang="en">CODEXIS ACADEMIA</md:ServiceName>
        <md:ServiceName xml:lang="cs">CODEXIS ACADEMIA</md:ServiceName>
        <md:ServiceDescription xml:lang="en">National and European legal information system CODEXIS®</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Národní a evropský právní informační systém CODEXIS®</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">ATLAS Group</OrganizationName>
      <OrganizationName xml:lang="en">ATLAS Group</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">ATLAS Group</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">ATLAS Group</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.atlasgroup.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.atlasgroup.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>David</GivenName>
      <SurName>Siba</SurName>
      <EmailAddress>mailto:siba@atlasgroup.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://keycloak.k8s.prf.jcu.cz:8443/realms/jcu">
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Aplikace PRF JU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Aplikace PRF JU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Aplikace PRF JU</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace PRF JU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://edu-apps.k8s.prf.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://edu-apps.k8s.prf.jcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>v7RwaQD6BplnW7MgElBOaIjuNs0nLF0u7WqMn1hA9z0</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>uxYnXYXQG3s77otIYBgclCsM2jcOU4rfOl3gYsFCzLE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://keycloak.k8s.prf.jcu.cz:8443/realms/jcu/broker/edu/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://keycloak.k8s.prf.jcu.cz:8443/realms/jcu/broker/edu/endpoint" index="1" isDefault="true"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Sojka</md:SurName>
      <md:EmailAddress>mailto:sojkaj00@prf.jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kfbz.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kfbz.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Library Zlín</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Regional Library Zlín</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Krajské knihovny Františka Bartoše ve Zlíně</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.kfbz.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.kfbz.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="135">https://kfbz.knihovny.cz/logo.png</mdui:Logo>
          <mdui:Logo height="243" width="1304">https://kfbz.knihovny.cz/logo_c.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kfbz.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kfbz.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kfbz.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kfbz.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Library Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Library Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.kfbz.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.kfbz.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kgtrebic.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kgtrebic.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Katolické gymnázium Třebíč</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Catholic high school Třebíč</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Catholic high school Třebíč</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Katolického gymnázia Třebíč</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kgtrebic.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kgtrebic.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="56">https://kgtrebic.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kgtrebic.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kgtrebic.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kgtrebic.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kgtrebic.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Katolické gymnázium Třebíč</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Catholic high school Třebíč</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Katolické gymnázium Třebíč</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Catholic high school Třebíč</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kgtrebic.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kgtrebic.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kjd.pb.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kjd.pb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Jan Drda´s Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Jana Drdy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Jan Drda´s Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovna Jana Drdy</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.kjd.pb.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.kjd.pb.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="53">https://kjdpb.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID6zCCAtOgAwIBAgIJAKlObxyLiCN1MA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEWtqZHBiLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0xNzEwMTgwODAyMThaFw0yNzEwMTkwODAyMThaMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEWtqZHBiLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALPf0RTN7QciGJJLqt8vA/fQI9uXYN0xuoyPc970qCFkcf9/jYWq2SRvg95UzfT8QTRuu2pfDzD5WpS1RkIyt0gq26Nc3Ce5KPq5Y056DAMF4QGDTCXy1MQYPETe8u9o9fEd0xaHLwFVjcGkwqx5+vrIfHa5Lt15Sz7MmaqsJljLi6fePGT1THQdm0o/iZT220BgJzG4kAasYuLzk5JC7xo9C83A75E1ip9JmF4+0lrBSXT3XfQNHuc/pVFFlXoRmRMpbUKoX615oTvywRGh3GAlBDGsUEZwhp4/4nNgvBaGUkbe6BC3CWAxxFQkw9k6FOMWCLGsq1FGGskPDzVP9U8CAwEAAaNQME4wHQYDVR0OBBYEFN3yTD6lGbZcifYkqD/S9ujlQdUnMB8GA1UdIwQYMBaAFN3yTD6lGbZcifYkqD/S9ujlQdUnMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBADV2Oxw+eDZCxLm5gKTIAtoEHSDTJP36brxOQemu4KANJ6o9VTIf57C4qMKV5mm6yO54rRbzCbWdHypCajbLSBymMyR2xz743aJdU0lUtEXXfXtaJRz9F2xfJZD89bCbMgcV70eXWNqHNrDZqWRqelI7/lqDf3PO617s/yAc8KS0gHddbX/txD21iqIA2deB4yiJNI5qbB2CWhZn+yIL8jZHkUab8y5AwTs3HTp/fuOmDaXXxfMsgaSOGHJKZtGR43JbMxvL7YNdX5a2gaeWvtpScJHX2fzV32O9ln+Fv5oZOyFs+yRZGKO31qP61/8D5iZ9JdSGNA3S35u9KhfB5OE=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kjdpb.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kjdpb.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kjdpb.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kjdpb.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Jan Drda´s Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Jana Drdy</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Jan Drda´s Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Jana Drdy</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.kjd.pb.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.kjd.pb.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kjm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kjm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Jiří Mahen Library in Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Jiřího Mahena v Brně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Jiří Mahen Library in Brno</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Jiřího Mahena v Brně</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kjm.cz/about-library</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kjm.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="129">https://kjm.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID5zCCAs+gAwIBAgIJAO/8tVPi6aJ7MA0GCSqGSIb3DQEBCwUAMIGJMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGDAWBgNVBAMMD2tqbS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owHhcNMjAwNzE0MDk1NTIyWhcNMzAwNzE1MDk1NTIyWjCBiTELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMRkwFwYDVQQKDBBNb3JhdmlhbiBMaWJyYXJ5MRgwFgYDVQQDDA9ram0ua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4oOnUEqBbyRdrPXmSbedpJxe/P2mI9zVSnho7/D/YQNMhWYwjhTZTQ5XkfeXj8EpAC/TbUe6QR7qWDQyapNRaA8LXfUwLVmTChTKr2JpHNkyJUZUWX8mJnyHknBFG0QjPnIAn8QoX4c1DuCRMoS2HGG1TcPE9mifLZXv5Tyeog0J10UXoQzPIC7ZlJ+7W8Ns9VHhrKxJ+MRBgJuRpL7iU9lOKSSVichVUroVy7CtfaY4INeNt73Q75GGsSH6NIdcuYNf90BQWwRyIjW4fGL2aod7RemgqMNmEM6dY70g8zj8IyOnqwTXjmNOOcNtEEJdn5Tq9NXxBS3/z47zkKUZvwIDAQABo1AwTjAdBgNVHQ4EFgQU3aPiRaMnyWnn8xaxf7LVAErd6I8wHwYDVR0jBBgwFoAU3aPiRaMnyWnn8xaxf7LVAErd6I8wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAc1AyrM6MxHTXku/8XkQ0uaYh2nYN1tUVuC/HlNigSVDOR4ZUAsEaP7QAQN3WCiryU435JNHciz3i0OZvjdZ0ythqnndMmRqBeX2uq+2a93rk/U31DfkNt4OIUKQNS/KG0DK2vjg7miUUvx3vMO4ecUxkpmEu2SYciyELt3P8X5VgzvngLxU5Hotld/NKimEeh9fWmiIDfxM+rCzeXpfYKw/wJfMybH0KYIoGOy7d8wlpPLlZZ3Q+XvgSUReUmd4hacqVZ5eMON8RJrq4D/ADxecR1xf/4Vdtf1Tg9f/C9SEWOSbuDM0oYszYwmvGkBMjX0FL7uz8bqoFl1fLmOeQ/g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kjm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kjm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kjm.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kjm.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Jiří Mahen Library in Brno</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Jiřího Mahena v Brně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Jiří Mahen Library in Brno</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Jiřího Mahena v Brně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kjm.cz/about-library</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kjm.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kkdvyskov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kkdvyskov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Karel Dvoracek Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Karla Dvořáčka</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of Karel Dvoracek Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Karla Dvořáčka</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kkdvyskov.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kkdvyskov.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="125">https://kkdvy.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkdvy.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkdvy.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkdvy.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkdvy.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Karel Dvoracek Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Karla Dvořáčka</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Karel Dvoracek Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Karla Dvořáčka</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kkdvyskov.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kkdvyskov.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kkvysociny.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kkvysociny.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Library Vysočina</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna Vysočiny</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Regional Library Vysočina</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Krajské knihovny Vysočiny</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kkvysociny.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kkvysociny.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="177">https://kkvy.knihovny.cz/logo.png</mdui:Logo>
          <mdui:Logo height="76" width="336">https://kkvy.knihovny.cz/logo_c.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkvy.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkvy.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkvy.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkvy.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Library Vysočina</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Vysočiny</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Library Vysočina</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Vysočiny</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kkvysociny.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kkvysociny.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kmmb.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Library of Mladá Boleslav</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Library of Mladá Boleslav</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Library of Mladá Boleslav</mdui:Description>
          <mdui:Description xml:lang="en">Library of Mladá Boleslav</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kmmb.eu?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kmmb.eu</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://www.kmmb.eu/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">kmmb.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.kmmb.eu/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Library of Mladá Boleslav</OrganizationName>
      <OrganizationName xml:lang="en">Library of Mladá Boleslav</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Library of Mladá Boleslav</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Library of Mladá Boleslav</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://kmmb.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://kmmb.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kmol.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kmol.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Library of the City Olomouc</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna města Olomouce</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the The Library of the City Olomouc</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny města Olomouce</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kmol.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kmol.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="81">https://kmol.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kmol.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kmol.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kmol.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kmol.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Library of the City Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna města Olomouce</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Library of the City Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna města Olomouce</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kmol.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kmol.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knav.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Catalogue of the Library of the Academy of Sciences at Knihovny.cz</DisplayName>
          <Description xml:lang="en">Online catalogue of the Library of the Czech Academy of Sciences operated within the portal Knihovny.cz</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">Katalog Knihovny Akademie věd na portále Knihovny.cz</DisplayName>
          <Description xml:lang="cs">Online katalog Knihovny Akademie věd ČR provozovaný v rámci portálu Knihovny.cz</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knav.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knav.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knav.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Catalogue of the Library of the Academy of Sciences at Knihovny.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Katalog Knihovny Akademie věd na portále Knihovny.cz</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knih-ck.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knih-ck.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Cesky Krumlov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Českém Krumlově</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Cesky Krumlov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny v Českém Krumlově</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knih-ck.cz/index.php?page=en_welcome&amp;lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knih-ck.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="83">https://mkck.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID6TCCAtGgAwIBAgIJALG/bKgsoXhJMA0GCSqGSIb3DQEBCwUAMIGKMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGTAXBgNVBAMMEG1rY2sua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MB4XDTE4MTEwNTEwMTE1OVoXDTI4MTEwNTEwMTE1OVowgYoxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEZMBcGA1UEAwwQbWtjay5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDEwDBzJ2uvnan822zXrZYfh7G3Lr/9e7nZxanW87sVYlvuCtCsSCaH3le3gAK8+8n0OHJO2D66LdEv9Cnch2VJS5gfx1kuZA6+5fNQ4e+b0Ak8lHkcsNY8tcdPIcbD6g7gY6a6ikACdQuSBf9HUHA8bkz0KTnbUh+SfvUTD60K3i/SAZaITv4DNJ0J/3U7qAyViJRF8QV1+ooqNOs6/Cl+M1ufpt7wQ4JfhnaP4QGf8zt7CgyY66HaqvKgmAVSaaDVDUoNJ2LXwpH5Qo2VdRvUfFFT+ADVo7SPny2KnSMbBN3jzz2LnFqn+JYSLPtsKbk5aXBzLL7wo5rZXfwND8bFAgMBAAGjUDBOMB0GA1UdDgQWBBSqJ25yu6PLn5X7xkRAEsI1Kd4jpTAfBgNVHSMEGDAWgBSqJ25yu6PLn5X7xkRAEsI1Kd4jpTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCHDodpzvp26ew0+ITqbSVT5bn+wH4HN6z9KUn5Ul2pTIw6i9ZI/yLUrIkcI8hc1KQ4MuDe4uNawHzUYbrXYjXqE2oeW6T9+hl8X1pd5ZIzLucqLXn2dhQ+KkyKoWWdvgDWTnkMOy6zK55x7y0Mnt6AYYE798YdVgbPp56k9nWSRYiWdwuzlcSQUcWT2NfbEQF607ZQOurVVQ/HuMFTGS1ULr/M7qCaXX5f0RLVgWvtJ8DUGFeZnwqErktMhupF/G68T3OUEvdYag3O9YLMFGfkKhHwVqZk9eDuGD1rryxDFrdfR/to8A7HHJb639p0iEJFfrn4rjpRVmskkmlGFkjr</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkck.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkck.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkck.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkck.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Cesky Krumlov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Českém Krumlově</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Cesky Krumlov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Českém Krumlově</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knih-ck.cz/index.php?page=en_welcome&amp;lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knih-ck.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knih-havirov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knih-havirov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Havirov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Havířov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Havirov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Havířov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnahavirov.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnahavirov.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://havirov.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+TCCAuGgAwIBAgIUPjolEqvy8iSq01WNmFjYP+S5UCYwDQYJKoZIhvcNAQELBQAwgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEcMBoGA1UEAwwTaGF2aXJvdi5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MB4XDTIxMDMzMTA5Mzk0OFoXDTMxMDQwMTA5Mzk0OFowgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEcMBoGA1UEAwwTaGF2aXJvdi5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6KtKXeUYQ4JSZXMUPtjJee5e4v/SmxIWF80F6tjiZgtUgczuZ+4tORag63fj4Btd57D9RiAx+cLwzVPyFIf/Zo8Yy06eAZPYsdFce8JM0cT7+SyYQHEKGrCTu0P5DwsIATllvrpqObHBCAhDVQXZx+T8wcobURceFRCFeWPFITYbDCZueWLuiu0iybehR4hdSHc+OgVFy4KI4trPNxn7itE5rwN734aSAPLwgpcaDKFuwmqvxcVJ8fXJdZ5cogXySYoYUppkGUUyOux5Cqk4yfZHT2nHsU2OPT4YI8gY8NGfLuZXtPBilDcQBK4eX2GunSoQ75WEEN2zebMsl8XjAwIDAQABo1MwUTAdBgNVHQ4EFgQU+iWJ8ie7yvsg3KJUCaafLxuw5fwwHwYDVR0jBBgwFoAU+iWJ8ie7yvsg3KJUCaafLxuw5fwwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAlV9nwSHOXMBnrmZFAih1VVMKdgbwRJHzhBwJqB3FavuOlFnf7wu447SOqA/TGt2tqXRGTv4+TKrijkVFfLm+ia/82ae7mOaL2RHeoQpweFDzl9g7Nc+3g0UcuDACDfgxMji4RGnNqBXoXMxqZ3JL/6Y5UNJLEDuWLFkW9SYYGHRk958+Tlingrf+MU/hHWklPBm1FkI+YTflos62IwyeNA5POE8WEZsjJIyB5f9uYS9W28N10Hr8gnU3MJUvI8Y4QYhGt+KGUXq1f1P4EnZbYjbaqdtBhoCrbm9RDyoZaFRzcSReaY7TYPtZ6WcniXnGIcgwwhy986pdGSzXHHJbWg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://havirov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://havirov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://havirov.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://havirov.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Havirov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Havířov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Havirov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Havířov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnahavirov.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnahavirov.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knih-kt.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knih-kt.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Klatovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Klatovy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Klatovy</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Klatovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.knih-kt.cz/bri.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.knih-kt.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://mkklat.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkklat.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkklat.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkklat.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkklat.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Klatovy</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Klatovy</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Klatovy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Klatovy</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.knih-kt.cz/bri.php</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.knih-kt.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knih-pe.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knih-pe.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Pelhrimov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Pelhřimov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Pelhrimov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Pelhřimov</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.knih-pe.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.knih-pe.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://mkpel.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkpel.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkpel.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkpel.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkpel.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Pelhrimov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Pelhřimov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Pelhrimov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Pelhřimov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.knih-pe.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.knih-pe.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knih-pi.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knih-pi.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Pisek</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Písek</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Pisek</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Písek</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knih-pi.cz/english-version/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knih-pi.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="89">https://mkpisek.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkpisek.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkpisek.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkpisek.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkpisek.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Pisek</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Písek</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Pisek</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Písek</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knih-pi.cz/english-version/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knih-pi.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knih-st.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knih-st.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Smidinger´s Library Strakonice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Šmidingerova knihovna Strakonice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of Smidinger´s Library Strakonice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Šmidingerovy knihovny Strakonice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knih-st.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knih-st.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://strakonice.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://strakonice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://strakonice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://strakonice.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://strakonice.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Smidinger´s Library Strakonice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Šmidingerova knihovna Strakonice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Smidinger´s Library Strakonice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Šmidingerova knihovna Strakonice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knih-st.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knih-st.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihjh.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihjh.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Jindřichův Hradec</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Jindřichův Hradec</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Jindřichův Hradec</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Jindřichův Hradec</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihjh.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihjh.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="194">https://mkjh.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkjh.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkjh.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkjh.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkjh.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Jindřichův Hradec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Jindřichův Hradec</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Jindřichův Hradec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Jindřichův Hradec</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihjh.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihjh.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihkm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihkm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kromeriz Public Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Kroměřížska</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Kromeriz Public Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Kroměřížska</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihkm.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihkm.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="118">https://knihkm.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID7TCCAtWgAwIBAgIJAJ4BkIESdCLQMA0GCSqGSIb3DQEBCwUAMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGzAZBgNVBAMMEmtuaWhrbS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owHhcNMjAwNzEzMTExNDUyWhcNMzAwNzE0MTExNDUyWjCBjDELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMRkwFwYDVQQKDBBNb3JhdmlhbiBMaWJyYXJ5MRswGQYDVQQDDBJrbmloa20ua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5QTMHBiSTixGOppkQyCksxfz49vNp8QLYBy30xvLzTD2dFJ8mIqACi40/Ll5sToxPAkynMax4gt9SFUwjxCH30YGcoVRQQoSyRoGc/H1zC5ht45NhCp02Pvh6fVBw5tO+ausfn7Pf3vbSQqbv9YJazdgP1sH0i33mJd6Ndnq36ITvGcNh7zIKfUkA//SCNLc6eQp+hBAbKeSfYr4qQVIPIvsaNLcWbGZsyMXtD8xaJEA5CRGqctDqrV0hSj4kjAh76bDLbF1xy68BooG1u3vLbCBpFqECmWRkziSdyskxd/BgTFsVrHEHZrHJdfRdqKjr+GvwwC3rNDwBYgZT8P+jwIDAQABo1AwTjAdBgNVHQ4EFgQUlWfvWaOOxxHhLi1iN5OIS4T7HAEwHwYDVR0jBBgwFoAUlWfvWaOOxxHhLi1iN5OIS4T7HAEwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAFXug/DM6w6AIGIvr/LH/T8A5em5fSuXYQyETf6BVXYmAjFGszIDPVjVQYXROO47D/+54ojy6niqaZKFnSUReszup+mH83Zdhqbd+XTZxUOtktFTwsXn8xyjEK7clR5xjtGjF7ToBZnouwotH22D91QYIa49MiUZWkDgA26jt79j2lH7jcfAmLUtv4dqN5Gpd3KPoWPkgBnCaUORQEfdnwIDly0yE6xM7yT94f90qvhrwDEgieTh5STwYJUeZX4l0xpiYo6XxFj6z8YiO2vfn3qYKLv1t5jW1xZsAgoFJ7ZUS4WV4ybIwjy6ubEFq24K/2vw1RNs9O1PDXSKtA0Z3UQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihkm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihkm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihkm.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihkm.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Kromeriz Public Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Kroměřížska</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Kromeriz Public Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Kroměřížska</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihkm.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihkm.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihmil.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihmil.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Milevsko</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Milevsku</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Milevsko</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny v Milevsku</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihmil.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihmil.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://milevsko.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://milevsko.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://milevsko.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://milevsko.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://milevsko.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Milevsko</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Milevsku</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Milevsko</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Milevsku</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihmil.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihmil.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-benesov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-benesov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Benešov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Benešov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library of Benešov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Benešov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-benesov.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-benesov.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="179">https://mkben.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+TCCAuGgAwIBAgIUI9WnJyajH36WVZFckGS/ZErsrpwwDQYJKoZIhvcNAQELBQAwgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEaMBgGA1UEAwwRbWtiZW4ua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MB4XDTIzMDEwOTA2NTkyNVoXDTMzMDEwOTA2NTkyNVowgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEaMBgGA1UEAwwRbWtiZW4ua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqjqNo5N9U/nfNUCOsQmf8EIzY+oWUoVOLLzQGnmVOl2ax7EtzJSmgHCGOYiB4rMwVppQVn+N1KzauIhPNcelXOiQGuLsg32RbR52nLTH5Z8swe/ta2Vzy9B2QMp4C4vDW9v1gAbV/MDzS3Hq1VvtN9P+C1z4BRRnTipubaS2RKFeBUjNYy7AIR6OdjZtd01BVzR5E8XGAWRc9l6Q7lJ5cbKOA4g4mfEIivUd0Ba//tmTy1vu6GU9kreX+2tlElPe2bcTGhRjt2IZFlpjuDfsSakd7S3BoV7DWwa2eRmPm+NvXExscB3BTxo5zF49VUiWm3fDAV3SdJ9+raZ51r9BoQIDAQABo1MwUTAdBgNVHQ4EFgQUkRFwlQ+NsdTeg0Qk1Ri984OMrMUwHwYDVR0jBBgwFoAUkRFwlQ+NsdTeg0Qk1Ri984OMrMUwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAokQO9q0NhrGrQ5o3rE3xlXWASGBthCyU1yfKxAs56qN4uP0bH6cwgJz2nRdxxjJpLdZNgs/7Vg7wD326IdsrBVLysZ20+yQ3em4v+41HXYFSWDXYB7W0IG3w8HXZ0B3XukrIAw3tDipdaUXTGPmKSR+tqiVd+SJojdUjc3aXG3dXoEfnS+fvXor4bACla6lJ9lokUa/PGlMkIKirLDfBTp36lPCrxixK8+PF9zVerWTLGNiq+bSZamBYAgM91j4CYRpQvJgeqvKZwHyUjTFwOtS1FmGSqUI6tbUmebnLBWTqUOxxma+J4PygMR9qKzXdPY18eXFALlICATEvJ5Wrkg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+TCCAuGgAwIBAgIUI9WnJyajH36WVZFckGS/ZErsrpwwDQYJKoZIhvcNAQELBQAwgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEaMBgGA1UEAwwRbWtiZW4ua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MB4XDTIzMDEwOTA2NTkyNVoXDTMzMDEwOTA2NTkyNVowgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEaMBgGA1UEAwwRbWtiZW4ua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqjqNo5N9U/nfNUCOsQmf8EIzY+oWUoVOLLzQGnmVOl2ax7EtzJSmgHCGOYiB4rMwVppQVn+N1KzauIhPNcelXOiQGuLsg32RbR52nLTH5Z8swe/ta2Vzy9B2QMp4C4vDW9v1gAbV/MDzS3Hq1VvtN9P+C1z4BRRnTipubaS2RKFeBUjNYy7AIR6OdjZtd01BVzR5E8XGAWRc9l6Q7lJ5cbKOA4g4mfEIivUd0Ba//tmTy1vu6GU9kreX+2tlElPe2bcTGhRjt2IZFlpjuDfsSakd7S3BoV7DWwa2eRmPm+NvXExscB3BTxo5zF49VUiWm3fDAV3SdJ9+raZ51r9BoQIDAQABo1MwUTAdBgNVHQ4EFgQUkRFwlQ+NsdTeg0Qk1Ri984OMrMUwHwYDVR0jBBgwFoAUkRFwlQ+NsdTeg0Qk1Ri984OMrMUwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAokQO9q0NhrGrQ5o3rE3xlXWASGBthCyU1yfKxAs56qN4uP0bH6cwgJz2nRdxxjJpLdZNgs/7Vg7wD326IdsrBVLysZ20+yQ3em4v+41HXYFSWDXYB7W0IG3w8HXZ0B3XukrIAw3tDipdaUXTGPmKSR+tqiVd+SJojdUjc3aXG3dXoEfnS+fvXor4bACla6lJ9lokUa/PGlMkIKirLDfBTp36lPCrxixK8+PF9zVerWTLGNiq+bSZamBYAgM91j4CYRpQvJgeqvKZwHyUjTFwOtS1FmGSqUI6tbUmebnLBWTqUOxxma+J4PygMR9qKzXdPY18eXFALlICATEvJ5Wrkg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkben.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkben.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkben.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkben.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Benešov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Benešov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Benešov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Benešov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-benesov.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-benesov.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-cl.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-cl.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Česká Lípa</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Česká Lípa</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Česká Lípa</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Česká Lípa</mdui:Description>
          <mdui:InformationURL xml:lang="cs">http://www.knihovna-cl.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">http://www.knihovna-cl.cz/</mdui:InformationURL>
          <mdui:Logo height="102" width="295">https://mkcl.knihovny.cz/logo.png</mdui:Logo>
          <mdui:Logo height="40" width="116">https://mkcl.knihovny.cz/logo_c.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkcl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkcl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkcl.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkcl.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Česká Lípa</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Česká Lípa</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Česká Lípa</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Česká Lípa</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.knihovna-cl.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.knihovna-cl.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-cr.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-cr.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Chrudim</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Chrudim</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Chrudim</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Chrudim</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-cr.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-cr.cz</mdui:InformationURL>
          <mdui:Logo height="56" width="56">https://chrudim.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+TCCAuGgAwIBAgIUbdg0hteFdFPzSjBTKK4uRZTc5k4wDQYJKoZIhvcNAQELBQAwgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEcMBoGA1UEAwwTY2hydWRpbS5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MB4XDTIxMDYwMzA4NDczNloXDTMxMDYwNDA4NDczNlowgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEcMBoGA1UEAwwTY2hydWRpbS5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5QW7IfxBfdHcAvMpUmbc4BzyDBL4Ore+UeprehLMxZgkO5J6il0smCRPqyLl9cQvuMrXqwgPTyKQg3fgON3QIO519pNvU1CvXcll/NmAdbRbwI3JuJWauoAwrjFwrVvKGQyMZ5097dnY3jaYtg+cV1HqXrF5eCoeiDNOF1sf2bLOkcWatvaeQvXYG+FXFgfeqfuYmmONbMwO2oZVCE3oQ8mfBbhYvgJc+C9oNALbXZ9Iubk/Xc6RP5lH43IYvb+BQ7Vgm9u82jWp7KMRAHnMBzyAps8qcoagyL5Jka1N1gbKHLCBqHXWXJKtzzpB+fyoRYevLIRKZZY1yyThoOlSOQIDAQABo1MwUTAdBgNVHQ4EFgQUm/CYmCXn6qqv46KmO6VUHe33Dd4wHwYDVR0jBBgwFoAUm/CYmCXn6qqv46KmO6VUHe33Dd4wDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAuPjE+GaNbavU2RbE5endxC3dDPW+7iN/EESpKdpHuuy+w/jLexWkcRDzoiXE6/2D8l90Ny9E6Kg/Bl96HvWN3AoR+AlxrM+qiPetNBBtKhoiS8QOusBGBa6awu+kJCleRuGCe3CT2KqsNY3metSpIYRMjWx94Zen8bproM1Qpi5p0uKHgdQ0pdshiQphfT7nfU0IFVTZB/KJwtHX3jczA8drdyY5ydy/zPv8fIDVJoT6bg/Ebm5tSSQaVUFWUEyBXH4MJLG8k0fMwXDg3NpV8ngTcbKy1R/FYtpt/spkA547jhb/hYmGxW2hRYGUaRgUz7fGYu3xklXLsLvHd8rzSQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chrudim.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://chrudim.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chrudim.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://chrudim.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Chrudim</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Chrudim</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Chrudim</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Chrudim</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-cr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-cr.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-dobra.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-dobra.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Dobra</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Místní knihovna Dobrá</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Dobra</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Místní knihovny Dobrá</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-dobra.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-dobra.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://dobra.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID9TCCAt2gAwIBAgIUJ44noScb+GUTyhIcO3/apoWdCxMwDQYJKoZIhvcNAQELBQAwgYkxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEaMBgGA1UEAwwRZG9icmEuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yMjAzMjUxNTM5MTNaFw0zMjAzMjUxNTM5MTNaMIGJMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxGjAYBgNVBAMMEWRvYnJhLmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDedtRqDDue/ymjF0o+h7htRa9xTi3dCdMCYrZv7WKVWgokrlP2oK25Y8qbRKQkrsB+DPkj6z09ajHBFaHQU8BbL38dpqL5FvaYOCpA37xFkr0dv4sx7NUdrpNRVp2+KZdwUglESGFRogd+0x83A9DWN3boUBPL4528S0uQ0fGWvBYTBKqMBXa4jtyNexhlc3/GraY0jdzr9voBpATkDV/5a+Q9OWVbC1GXFsvbdXP+xcsHhLWpjz4ySsUYoy9dzKEcL9TBX+TycYSIpIN7+uL10fD6cnY7Q1JV1X/DXYlXYTDZoxi1zRYaIlKTzHJ/wt4bRAxeCs+FKKrY/6HUbcMdAgMBAAGjUzBRMB0GA1UdDgQWBBSk28hUScTrVRwXBw65wSNU7BI+qDAfBgNVHSMEGDAWgBSk28hUScTrVRwXBw65wSNU7BI+qDAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQDNQlzVSx8OT+LVXXBQMPBtDd8XlJfBD1Gl8GgSXf3ljmVNV8p8kjdxtiQDh5I36L5+Wa5vUC/v1C5JMWXYtq8XRlvj7CGOEbs8FWfO8nG2BOf5tMlwEctWYTIheDIgHk2rPSYGlqNC+nGiliggk43rKUeFLXrasZXqIft182BWtLfvE7wZj0YiswgeyDflLWU5jXhT44fxn6k8ei1NDclvA4GUjLyr3Y2/RH1vJ2u6dRB6NXw+bq8VYyyaBZ022+4tXuAH8WWxtQCk49w+nBnfww1eXTHxtT7C8CU4HX8kMAfaE4i8dLDAQisbdgjPnQA8jmfFT1XJ6kdP+kuAFdDb</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dobra.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dobra.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dobra.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dobra.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Dobra</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Místní knihovna Dobrá</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Dobra</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Místní knihovna Dobrá</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-dobra.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-dobra.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-ji.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-ji.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Jihlava Town Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Jihlava</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Jihlava Town Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Jihlava</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-ji.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-ji.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="47">https://mkjihlava.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkjihlava.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkjihlava.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkjihlava.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkjihlava.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Jihlava Town Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Jihlava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Jihlava Town Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Jihlava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-ji.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-ji.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-kh.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-kh.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Kutná Hora</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Kutná Hora</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Kutná Hora</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Kutná Hora</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-kh.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-kh.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="91">https://mkkh.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkh.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkh.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkh.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkh.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Kutná Hora</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Kutná Hora</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Kutná Hora</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Kutná Hora</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-kh.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-kh.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-kunovice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-kunovice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Kunovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Kunovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Kunovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Kunovice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kunovice.knihovna.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kunovice.knihovna.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="54">https://kunovice.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+zCCAuOgAwIBAgIUfTpkf000DdQRmo17+cGDrCHVpYwwDQYJKoZIhvcNAQELBQAwgYwxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEdMBsGA1UEAwwUa3Vub3ZpY2UuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yNDAyMjMxNzE3MTBaFw0zNDAyMjMxNzE3MTBaMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxHTAbBgNVBAMMFGt1bm92aWNlLmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC7+UYh7s4mDQzKPZgQgnX37QunL0IDyPg9tS6dLomSAJ5GVPavebGbggShlFJ1IT/uKv5QUwqEk3t1TdV63tUVgW8kSynxCDbEcPr1BZpSYA1bai6+dONIOam+ITF71WpFVzFxQbt0PRJfQIrh8YmCvE2TohSdYU9ffIZaMXMGwtr4yqfHDdlW/7XBxlIkc8Gpm6HllPlit+UwbVmILfeEpYncYgv+1OOXwSz2545XN03IcdOPfgIhJNUFO4QfRaRju2DX4UCmeQXx58JUR7AE85YaYZOZHSXMpgijEnv62PgzcYDUQ0paJsgNoe1+0pcsVCe7in1PeuNgfMfoGItrAgMBAAGjUzBRMB0GA1UdDgQWBBTgfJMj2c7JsyueRqomVRMJblBmsDAfBgNVHSMEGDAWgBTgfJMj2c7JsyueRqomVRMJblBmsDAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCqdouPYfycyLGFGiWkOC00bacuIaGbALMtVX3n3NxXbSlixzML9Vi1ZpyfAe10gM2kDoWxusQPBKVXTHvSfwdO7lkqf5U5pIq2oPzuxNwwnb080zPzSyJH/ZFi+TGckHUQqwTz0IJ7rexVBzTafMas3Acmpqu08XnY3e51nRpq8XqaJdBIoUacE1TEfokgzpll2lqKw57ZdpBxf+TcpZnYr/XdW3rI8qkoSp0OwoX37CSlhafzGynN7xcObgzhA3kF9kJ4RH9BoRpJMthiEnoz59OuGzfU230yUEc4FLGBGGjZUpWMhKKndkkZy4Q3ngOK0rvQT7ZQLmULpLe+Xwd2</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kunovice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kunovice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kunovice.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kunovice.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Kunovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Kunovice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Kunovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Kunovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kunovice.knihovna.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kunovice.knihovna.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-kyjov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-kyjov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Kyjov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Kyjov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Kyjov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Kyjov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-kyjov.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-kyjov.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="94">https://kyjov.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID9TCCAt2gAwIBAgIUTZ/rz31Xh/xLLmNf2oCtrf9aNNswDQYJKoZIhvcNAQELBQAwgYkxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEaMBgGA1UEAwwRa3lqb3YuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yNDA4MDYwOTIxMjZaFw0zNDA4MDcwOTIxMjZaMIGJMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxGjAYBgNVBAMMEWt5am92LmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYVOewLtIJ3X+ckkp6NS6Nilkr9RJT4q4+mLy9+mcJBBlg4D9kUCal2+6rPcsAvLvBtw/CfbhyYoZslf8OOyifkIpLH+hfE787SZcTBQ7DwrObjV1owpX+CoCAeyXSvS5zTkkVDJYHAGsnDGSm+NRKlO6whep2I7YoanVQEvMw1PL/MZRXnUr9o7mFYbaauQBTi/K3dIJZnCCb+txmyo9lqzlQzEUOR6bVxgLxalhyb5/ARRUh81pS4OutGj7sz10+GAVgxN3TGdnKiMRjHt31ZuI6HKjZn2IY+DGxuwbW4FKXsToXlnuEy4nzfyuU57DTvzLoIEEAcvRY1a8eKAI5AgMBAAGjUzBRMB0GA1UdDgQWBBT6aimx5JZR9lNY3GGnSKv1q+ql9zAfBgNVHSMEGDAWgBT6aimx5JZR9lNY3GGnSKv1q+ql9zAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCsXkDBdc/TAjdVGiy44JLoVMsdo+UlbAydMauiTs5BOiv7drhZXopBvwKpSvYoohKBLFf3SL0jXcr6o9Z/rl3+Sr8uZXqdwJbF6QUwCb2BTGNFBP2C8k4H+qmj4zbA3knWE1c4njr9sYRfzsddxcEmZi2qAoeuLRnUDp/WJZup8N0wJO7P7c3tN+qFujLv78jHgPAHUWLUSyE/BQ7CDimVd1UyZkEczDtdEtIeEx2bXQ32FRErSpI1nEJi01uIV96z42Xm+ucAKMfjue6Mjbbnxn/tq7AxSIAWmXSeTNPYkFRXEiVHF8X+Rh187zdo0lEZUI0Nuq/hTgbHPfg/ox/R</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kyjov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kyjov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kyjov.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kyjov.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Kyjov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Kyjov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Kyjov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Kyjov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-kyjov.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-kyjov.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-litomysl.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-litomysl.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Litomyšl</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Litomyšl</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Litomyšl</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Litomyšl</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.litomysl.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.litomysl.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="39">https://litomysl.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://litomysl.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://litomysl.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://litomysl.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://litomysl.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Litomyšl</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Litomyšl</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Litomyšl</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Litomyšl</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.litomysl.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.litomysl.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-litvinov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-litvinov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Litvinov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Litvínov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Litvinov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Litvínov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-litvinov.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-litvinov.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://litvinov.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+zCCAuOgAwIBAgIUYpqeDb+NFpC2uhcZl31BAFcGCeUwDQYJKoZIhvcNAQELBQAwgYwxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEdMBsGA1UEAwwUbGl0dmlub3YuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yMTAzMzExMjMyMzlaFw0zMTA0MDExMjMyMzlaMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxHTAbBgNVBAMMFGxpdHZpbm92LmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDDJF8am3MK4vxmNKtB4BWXpSp5a+hNhzvuzsI/NHVZwF8RezMnFvLtU5NbphxfzJ0GhyKGcKDazBQlNV6x+9FYD286cQHMziLjk7+x1cARYHblVsWdIOuZ32qu6PcY6u4L3s8DG1Abk595xHrAVtkg2jaA/HNaDM+iRvtI1CqJi61impbaqcW7+8FITsYMs+3z/5IBbehpgb+ldb5pIkN8NiANIBH+iHvVzAgT3qE3VJ7bK4MBuOjRD0KOB4qvDdYFnC4VbS9iJANg1nq9Kk14c4uZQLE6BmYPL/wbZK+Vi0qv9Q2AOpqA3R3/jY3D/otIzjpMnxSwQWMQgroOBLZBAgMBAAGjUzBRMB0GA1UdDgQWBBRMuuoBkdh7/i9MU4h5SNdZfcOH0zAfBgNVHSMEGDAWgBRMuuoBkdh7/i9MU4h5SNdZfcOH0zAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCv8ZYk80Ek1MPbFjiwef3XB5z6F9UKEBA3x9HDOK+hMHRKloxDNXrmeB118RT8W6aWZO6s+37ia9i9y2ZsxEyjwPe9hul39/l23gBKT5e9ecqkLED2G20b8hq2e5Ubgfxd/aWSXd8JcSJqRT4FFNZwGZJol7ehoL/ICc8PPFom0ZTJSyFH+nNzkbRNcSC8KTdzCStPWiMDOyV3TWDrKz8DLh6QHa2qRJ5R8OIu1IM/ZiTi9WlkxqxCd1C7Fz11zlO6uO+4+Zeq+KnRX06rxMp+dLqLVOX5FHNP8z0hX4bigKWe/MyvTLZpfg0fxv4HWCrOX8rX00ti8k+wFetApQDh</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://litvinov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://litvinov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://litvinov.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://litvinov.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Litvinov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Litvínov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Litvinov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Litvínov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-litvinov.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-litvinov.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-nbk.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-nbk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Nymburk</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Nymburk</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Nymburk</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Nymburk</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-nbk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-nbk.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="155">https://mknbk.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mknbk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mknbk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mknbk.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mknbk.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Nymburk</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Nymburk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Nymburk</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Nymburk</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-nbk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-nbk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-orlova.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-orlova.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Orlova</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Orlová</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Orlova</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Orlová</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-orlova.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-orlova.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://mkor.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID9zCCAt+gAwIBAgIUfCzzpZmOUrFmTaIiuHylZnV7BsIwDQYJKoZIhvcNAQELBQAwgYoxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEZMBcGA1UEAwwQbWtvci5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owHhcNMjAwOTMwMDg1MDIxWhcNMzAxMDAxMDg1MDIxWjCBijELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMRkwFwYDVQQKDBBNb3JhdmlhbiBMaWJyYXJ5MRkwFwYDVQQDDBBta29yLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKJqAaqcUDTe367bYCaOyjgMdpPsva+xz19rMgPyZjVTmq02foUQ2yfXBafgGnAXZPK5Ba7nHjA/tZv+3/VkzZVrOlPfKug1ObjaW2qnwmqeHfyNYSSzdXuka7yo+n0OOArO6NejDN3PeiySwih6N1KnK2ZPDLcvlEeXSQfzvjh6kB1G7V7pqAB0lMC/MGnd/F7ANE3vb6xkKJkcMPMTDjQ9el2ovARIgyy6lIUHbBzzld+g/zi14scNF2taxEVe4K3PAPP9BXiYH5s84Njhm1/fSWmlazaUO+l8ks+PVwAEY8UIZPISkuUIaVkVCGu75LNLw8B70AJV5dfY6XGuu58CAwEAAaNTMFEwHQYDVR0OBBYEFEueex4TscdvDXMBBJnfykoAXHHlMB8GA1UdIwQYMBaAFEueex4TscdvDXMBBJnfykoAXHHlMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBABzW6ZIjji1HsB3iQLrFTToJXOlUYgV8jNgBYNgFm80r2nkXVIdwuExQZT5ZWG0QEhdbFfg2GPaWkWE/OouDlZVyBkh3cjOpVhwGGcVH2SX9nx6YEJT0ZHjPtKfq5u+megV/1sZUDab1LHqdyr5hxBk+VUcosj9hdTuMsMdYf540Ys//G7vPaaRFsZiqLhK33360FeGJ1yobUKDgkCG0McPaMfcJV6oFCIunmwvZqoCKLxtqUP6xDfjJSkdFqbiDcbKiwpaSDO/gOIEbBFCFCcqsAD90u+XhIg5RwQ4wITXPxrns6OC9R+1JYHfZreCUymHp7GCWJ0AP8zqPV3PSomU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkor.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkor.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkor.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkor.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Orlova</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Orlová</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Orlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Orlová</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-orlova.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-orlova.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-vamberk.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-vamberk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Vamberk</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Vamberk</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Vamberk</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Vamberk</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-vamberk.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-vamberk.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://vamberk.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vamberk.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vamberk.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vamberk.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vamberk.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Vamberk</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Vamberk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Vamberk</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Vamberk</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-vamberk.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-vamberk.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-vm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-vm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal library Vysoke Myto</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Vysoké Mýto</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal library Vysoke Myto</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Vysoké Mýto</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-vm.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-vm.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://vmyto.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vmyto.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vmyto.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vmyto.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vmyto.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal library Vysoke Myto</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Vysoké Mýto</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal library Vysoke Myto</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Vysoké Mýto</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-vm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-vm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-vratimov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-vratimov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Vratimov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Vratimov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Vratimov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Vratimov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-vratimov.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-vratimov.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://vratimov.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+zCCAuOgAwIBAgIUFHurbHrbj17V0xv/zxjk4HRSj1QwDQYJKoZIhvcNAQELBQAwgYwxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEdMBsGA1UEAwwUdnJhdGltb3YuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yMzAxMDkwODM4MzFaFw0zMzAxMDkwODM4MzFaMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxHTAbBgNVBAMMFHZyYXRpbW92LmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDPBwa3YhuQTNEoPWqVvLRq7fk1e0CqKfNf3X5bQKexkaVmjrB6NAc/A5j8m/vDsK2LgTHFiboqoW7ZBsjvKgt1H3PsHpx4FeFqqL/ghjM0D0BE1pNkUhWt9y+lYYhHavC4+3nuvCP5I6ROCERYkupEolzzY+s5sT3Sy/QdmMlKti0qcj2cl1OjhwTbShn5l43W+ZCC2qWtZ/gc29HvVCBHP3OJSXHTlBon3UVorjrojYWIkwgdOhDqUZRzq8vBRwGMQY1Xw0HakV96rdzHA2j1lCq652/ShOGuiuO+Zt2oY0SwbCDN76RF3Lbo3YqT6rqsPT9HGDU4RflbMzJhlL37AgMBAAGjUzBRMB0GA1UdDgQWBBQfAhuyYjG5ugRA+bdjbQ7BOjbLYTAfBgNVHSMEGDAWgBQfAhuyYjG5ugRA+bdjbQ7BOjbLYTAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA1fYUEZ8Nj6hQEWghNZ3fdmpgHhKNLg3rLfMK2+eZPS/vpxkjuf9lGqT3HVKLteHRPuOsLpoGpDxVbCIfPKWp47QPN2G8OYYLuutAEmG+Rt6MiXY3P9zPS5PKXsgNnt2P0yEY0dwcXyPl2yYxwO9KqnhBJ6rEI1zk5WJ0Dk3Pm+Wyq5LX+88OF2oMM9mIa73fkZ/it0d39GD7bTY5FFFORayrG7+pg7xRQfUQ9+SQ0g5ESpN8aILEY8dhXJgcLxcVjy7VnYFF4XciDuycKim+YmRnK8ImO8hdGsXx9Gea7WnZr5TUdPFStE5ewHtIt8rNufZQeCXV3xI9+9Wc4B2pB</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vratimov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vratimov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vratimov.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vratimov.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Vratimov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Vratimov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Vratimov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Vratimov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-vratimov.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-vratimov.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna-zbraslav.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna-zbraslav.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Zbraslav Local Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Místní knihovna Praha-Zbraslav</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Zbraslav Local Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Místní knihovny Praha-Zbraslav</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna-zbraslav.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna-zbraslav.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://zbraslav.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zbraslav.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://zbraslav.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zbraslav.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://zbraslav.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Zbraslav Local Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Místní knihovna Praha-Zbraslav</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Zbraslav Local Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Místní knihovna Praha-Zbraslav</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna-zbraslav.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna-zbraslav.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.brandysnl.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.brandysnl.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Eduard Petiska Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Eduarda Petišky</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Eduard Petiska Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Eduarda Petišky</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.knihovna.brandysnl.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.knihovna.brandysnl.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="97">https://knep.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knep.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knep.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knep.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knep.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Eduard Petiska Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Eduarda Petišky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Eduard Petiska Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Eduarda Petišky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.knihovna.brandysnl.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.knihovna.brandysnl.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.celakovice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.celakovice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Čelákovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Čelákovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Čelákovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Čelákovice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.celakovice.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.celakovice.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="360">https://mkclk.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkclk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkclk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkclk.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkclk.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Čelákovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Čelákovice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Čelákovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Čelákovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.celakovice.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.celakovice.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knihovna.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knihovna.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knihovna.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knihovna.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knihovna.cuni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Standby</ds:KeyName>
          <ds:KeyName>knihovna.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=knihovna.cuni.cz,O=Charles University,L=Prague,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDsTCCApmgAwIBAgIJAJaFVaj0QDd8MA0GCSqGSIb3DQEBCwUAMG8xCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Central Library of Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústřední knihovna Univerzity Karlovy v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Central Library of Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://knihovna.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://knihovna.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knihovna.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Knihovna Futurebooks</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Futurebooks</mdui:DisplayName>
          <mdui:Description xml:lang="en">Elektronická knihovna, umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="cs">Electronic library, allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://knihovna.futurebooks.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://knihovna.futurebooks.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://knihovna.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="184" width="440">https://knihovna.futurebooks.cz/storage/app/media/logo-DwKk4x5a.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://knihovna.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>knihovna.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=knihovna.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUb8tOWi65I+h6rbLdiY+WTdP0FH0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna, umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library, allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.holesov.info/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.holesov.info</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Holešov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Holešov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Holešov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Holešov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.holesov.info/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.holesov.info/</mdui:InformationURL>
          <mdui:Logo height="40" width="101">https://mkhol.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+TCCAuGgAwIBAgIUX43nM7M4qyxyViS5vgnJP+DiYlAwDQYJKoZIhvcNAQELBQAwgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEaMBgGA1UEAwwRbWtob2wua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MB4XDTIwMTAwODA1MzQ0MFoXDTMwMTAwOTA1MzQ0MFowgYsxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEaMBgGA1UEAwwRbWtob2wua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy8aAbbx/Tb+LJuxo1I6Y22WjQrNrOKHjOW1muafqsflZDtU6XW6Pq9myQc/ykUox7/L9k0zs0CXoTAWYdNl26JWcBsrDE+mxYsexkKVV2p9GeNFlOJpg8hTHgw0qstri+vTvL++M/J+kCmkP/DSYYgfsav9NjB8OVvq7NcOpA1nAQInEItLi1lR1HRg/InGvX9GTtL9ooqUTOyVWWoWmi42PQD9mmFYllan+lt7HXMBYyc6TLj+S9VCJFrXQyQpy/t2uX4BE7NsTNodPK7ZP8tLXcBeGOCj4lousG/kyhi0EWNi0z0gxxBz2krunrJ3IXkPS+oNzxH8/iq0m3GsxNwIDAQABo1MwUTAdBgNVHQ4EFgQU2v+qqxPDw6SuHfLZRXKIGCXRAjcwHwYDVR0jBBgwFoAU2v+qqxPDw6SuHfLZRXKIGCXRAjcwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAteLxpe9dipQlTzW1G+sow0pzUPCpkWfTs4bSGsJc3iQ1F1dnA2TjIMcuAYZp3DBgKLkBVg6Zq6SUE5t9cu0NcwWOY38EHQgpiLPPcMfzaH1jnBtlcssw8fc9CF1r+cElBK5OJ6nHMC/VnRlYhp6ZU6oEcqTrNVqSU+/Zd8DAvTA5OFfqnjjPp7p2OOTeo8NZ+sjc0wQp6H5ZcJDyqd9AjgzdOdPNX01NOhgkGijTU9amX8XIry0IHpvS6RC+O7FThEm91WmKQ2Ls4HGAM8SKpLNGOdiGzr2iRHbUZM6Z5OGKHFPbUvhXUs1b6H42pgiQejdDdpIxKGLl3+X7eaR64g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhol.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhol.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhol.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhol.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Holešov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Holešov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Holešov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Holešov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.holesov.info/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.holesov.info/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.libochovice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.libochovice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Libochovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Libochovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Libochovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Libochovice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.libochovice.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.libochovice.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="275">https://mkliboch.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkliboch.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkliboch.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkliboch.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkliboch.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Libochovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Libochovice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Libochovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Libochovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.libochovice.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.libochovice.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.lovosice.com/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.lovosice.com</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Lovosice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Lovosice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Lovosice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Lovosice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.lovosice.com/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.lovosice.com/</mdui:InformationURL>
          <mdui:Logo height="40" width="96">https://mklovosice.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mklovosice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mklovosice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mklovosice.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mklovosice.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Lovosice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Lovosice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Lovosice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Lovosice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.lovosice.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.lovosice.com/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.mesto-klimkovice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.mesto-klimkovice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Klimkovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Klimkovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library of Klimkovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Klimkovice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.mesto-klimkovice.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.mesto-klimkovice.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="44">https://mkklimkovice.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEBzCCAu+gAwIBAgIUJK+SGTL2nklW0xQrTa639KzdFjswDQYJKoZIhvcNAQELBQAwgZIxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEhMB8GA1UEAwwYbWtrbGlta292aWNlLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0yMzA1MTAwNTU4MzdaFw0zMzA1MTAwNTU4MzdaMIGSMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxITAfBgNVBAMMGG1ra2xpbWtvdmljZS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCrri1VzMDvv2JskmQ5IcDy9kzFIrQCtaZo3hVsYtUyaI7jm1i4NalBdr7cAI2v8zkruxgqMPB8vctvtM1a1Kp+utpFTH1E547wmJUrLUieyPZBwGJpXuUOwnGzLevt9F+G7Www/CQYhvZGH3AkN73vJN8Zsq1+YmxywdasB9HP3UK6TfIOYd/fjZz01I7wJrHgzIQTawvM6eooC/ABrsqs1yPUR+jA38KUtamaxu8+fhonTpMO2I0EbDCeC8qNqx+pEApaVgS5235i3rlIwGZAJy0jPNeCL5l8qqgE23C3Dp4wkQot5ud/KnkHHwcDDZ26fAGLJlfxL/X3QWmQjuWxAgMBAAGjUzBRMB0GA1UdDgQWBBRPy4EsGPgunEnwINdu+rOdN4Y+RjAfBgNVHSMEGDAWgBRPy4EsGPgunEnwINdu+rOdN4Y+RjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBQjjRjY7eYWGM/hhMBthB5LZSiq+1YYQQZF4lhYJAA7ezPuBK1kBaJhtZKINuHYqxEGdcX8SWSThAmJQcA4PTMMkRV3uOHQbiTXOZTsMiHwVQQg9AhlvGPL6SO81fRcpl3PbeU/LAFmK94AL7CqsOyLGyIGpAq7fXL9sG4Kp9ePoc8RxJ2iC20rNXWMeX0CPApUfpnKxf2v/rSgCN7TckSsxHO38TqC0qrEjW99EalXyh4R0mpLmUMnZf/340maXkQayN4i8R4gWHTwRUY2OnhMlZ9BKC7SApa/ARaawnwCcozEm1TBMURqtfeAI0IZsTDUVgmbVjeQ8Xfp6TzcrFF</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEBzCCAu+gAwIBAgIUJK+SGTL2nklW0xQrTa639KzdFjswDQYJKoZIhvcNAQELBQAwgZIxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEhMB8GA1UEAwwYbWtrbGlta292aWNlLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0yMzA1MTAwNTU4MzdaFw0zMzA1MTAwNTU4MzdaMIGSMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxITAfBgNVBAMMGG1ra2xpbWtvdmljZS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCrri1VzMDvv2JskmQ5IcDy9kzFIrQCtaZo3hVsYtUyaI7jm1i4NalBdr7cAI2v8zkruxgqMPB8vctvtM1a1Kp+utpFTH1E547wmJUrLUieyPZBwGJpXuUOwnGzLevt9F+G7Www/CQYhvZGH3AkN73vJN8Zsq1+YmxywdasB9HP3UK6TfIOYd/fjZz01I7wJrHgzIQTawvM6eooC/ABrsqs1yPUR+jA38KUtamaxu8+fhonTpMO2I0EbDCeC8qNqx+pEApaVgS5235i3rlIwGZAJy0jPNeCL5l8qqgE23C3Dp4wkQot5ud/KnkHHwcDDZ26fAGLJlfxL/X3QWmQjuWxAgMBAAGjUzBRMB0GA1UdDgQWBBRPy4EsGPgunEnwINdu+rOdN4Y+RjAfBgNVHSMEGDAWgBRPy4EsGPgunEnwINdu+rOdN4Y+RjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBQjjRjY7eYWGM/hhMBthB5LZSiq+1YYQQZF4lhYJAA7ezPuBK1kBaJhtZKINuHYqxEGdcX8SWSThAmJQcA4PTMMkRV3uOHQbiTXOZTsMiHwVQQg9AhlvGPL6SO81fRcpl3PbeU/LAFmK94AL7CqsOyLGyIGpAq7fXL9sG4Kp9ePoc8RxJ2iC20rNXWMeX0CPApUfpnKxf2v/rSgCN7TckSsxHO38TqC0qrEjW99EalXyh4R0mpLmUMnZf/340maXkQayN4i8R4gWHTwRUY2OnhMlZ9BKC7SApa/ARaawnwCcozEm1TBMURqtfeAI0IZsTDUVgmbVjeQ8Xfp6TzcrFF</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkklimkovice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkklimkovice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkklimkovice.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkklimkovice.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Klimkovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Klimkovice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Klimkovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Klimkovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.mesto-klimkovice.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.mesto-klimkovice.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.mesto-milovice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.mesto-milovice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Milovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Milovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Milovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Milovice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.mesto-milovice.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.mesto-milovice.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="140">https://mkmilovice.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkmilovice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkmilovice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkmilovice.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkmilovice.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Milovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Milovice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Milovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Milovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.mesto-milovice.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.mesto-milovice.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knihovna.nacr.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Knihovna Národního archivu</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Library of National Archives</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Knihovna Národního archivu</mdui:Description>
          <mdui:Description xml:lang="en">Library of National Archives</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.nacr.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.nacr.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="59">https://knihovna.nacr.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">nacr.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD
WjEXMBUGA1UECBMOQ3plY2ggUmVwdWJsaWMxEjAQBgNVBAcTCVBhcmR1YmljZTEP
MA0GA1UEChMGS1AtU1lTMQ8wDQYDVQQDEwZLUC1TWVMwHhcNMTkwODAyMTMyMzQz
WhcNNDYxMjE4MTMyMzQzWjBcMQswCQYDVQQGEwJDWjEXMBUGA1UECBMOQ3plY2gg
UmVwdWJsaWMxEjAQBgNVBAcTCVBhcmR1YmljZTEPMA0GA1UEChMGS1AtU1lTMQ8w
DQYDVQQDEwZLUC1TWVMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJ
jOfJyf0W2Xa+WHrJtfVPKHgFnkB0KcSUoJZwbuUfZws9QHjjLLoX7P+wJvlooMh/
Fxgq42jLIwe6khw4hepw433DZ74uuffXeZwv1V60Ny8VQJWGNnCC5CrrI2Ny+RZ1
m1OoEyktLUe9IQIijNQCHGeU4L2fIMVMYudyanP3N0c3rZV6b6TKPqCLqNJMaytO
pw1bR+mc3CYEx9b2SmkBAymWAtRzhGcz5qNId6fwNO47skCT3BUNQfv9Ggr5WuvW
Xm8TeXrtQi4KyJ+IdEzSK4j2xTVcuBaCLyhSYoGTj4rJ8XoZfT3UXjZnv5ivcWIp
3DLoOT/wEiHp58hj7WnpAgMBAAGjITAfMB0GA1UdDgQWBBTczhMuvAh3s8qtN9LP
b+D52Xw/LDANBgkqhkiG9w0BAQsFAAOCAQEAmypjHZx0uQY6OwrUKZig4ETP6vxm
ObyFxw75pdxPYcPIzFrMh/QkRaJnWs/mYd6qPiQeluRpjrJvchZxWXl3N+juAd6S
uJfopMvjophrR8X76av3HlBdETNXj7rf0sF26K7EaZI9OFaYRXNQQ3edLoJGdh9b
RoHNia6Or4cCsJHiNwXoK1OQmTJQvjGMK8dlhzUXtNaDXppKUsWvdQSHiNk0THoR
rYoBP5RH783N4PMq8EnSZztea+Dl5hCaw8ge0j3nJUl9GDZO2d4CvzL2DobkGSJt
yMzare/MvieEWcoF72/DBneOiu9YOsd163FCZbyBEIFdFeEnJ4abiON4UA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihovna.nacr.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Knihovna Národního archivu</OrganizationName>
      <OrganizationName xml:lang="en">Library of National Archives</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Knihovna Národního archivu</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Library of National Archives</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://knihovna.nacr.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://knihovna.nacr.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.plzen.eu/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.plzen.eu</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Pilsen City Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna města Plzně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Pilsen City Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny města Plzně</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.plzen.eu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.plzen.eu/</mdui:InformationURL>
          <mdui:Logo height="40" width="217">https://mkplzen.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkplzen.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkplzen.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkplzen.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkplzen.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Pilsen City Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna města Plzně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Pilsen City Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna města Plzně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.plzen.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.plzen.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.policka.org/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.policka.org</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Polička</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Polička</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Polička</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Polička</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna.policka.org</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna.policka.org</mdui:InformationURL>
          <mdui:Logo height="40" width="54">https://policka.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://policka.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://policka.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://policka.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://policka.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Polička</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Polička</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Polička</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Polička</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovna.policka.org</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovna.policka.org</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovna.ricany.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.ricany.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Huss' Library Ricany</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Husova knihovna Říčany</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees
and readers of the Huss' Library Ricany</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Husovy knihovny Říčany</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.ricany.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.ricany.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="139">https://mkricany.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkricany.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkricany.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkricany.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkricany.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Huss' Library Ricany</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Husova knihovna Říčany</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Huss' Library Ricany</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Husova knihovna Říčany</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.ricany.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.ricany.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnabbb.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnabbb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Library of Bedřich Beneš Buchlovan Uherské Hradiště</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Bedřicha Beneše Buchlovana Uherské Hradiště</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Library of Bedřich Beneš Buchlovan Uherské Hradiště</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Bedřicha Beneše Buchlovana Uherské Hradiště</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnabbb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnabbb.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="65">https://kbbb.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kbbb.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kbbb.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kbbb.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kbbb.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Library of Bedřich Beneš Buchlovan Uherské Hradiště</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Bedřicha Beneše Buchlovana Uherské Hradiště</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Library of Bedřich Beneš Buchlovan Uherské Hradiště</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Bedřicha Beneše Buchlovana Uherské Hradiště</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnabbb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnabbb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnaberoun.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnaberoun.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Beroun</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Beroun</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Beroun</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Beroun</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnaberoun.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnaberoun.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://beroun.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beroun.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://beroun.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beroun.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://beroun.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Beroun</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Beroun</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Beroun</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Beroun</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnaberoun.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnaberoun.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnabreclav.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnabreclav.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal library in Breclav</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Břeclav</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal library in Breclav</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Břeclav</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnabreclav.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnabreclav.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://breclav.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://breclav.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://breclav.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://breclav.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://breclav.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal library in Breclav</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Břeclav</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal library in Breclav</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Břeclav</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnabreclav.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnabreclav.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnabrtnice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnabrtnice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Brtnice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Brtnici</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Brtnice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny v Brtnici</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnabrtnice.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnabrtnice.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="119">https://mkbrtnice.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEATCCAumgAwIBAgIUNyHEr6q18T/gmwABk6yrLUjvIdIwDQYJKoZIhvcNAQELBQAwgY8xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEeMBwGA1UEAwwVbWticnRuaWNlLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0yNTEyMDMxMTIzMjdaFw0zNTEyMDQxMTIzMjdaMIGPMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxHjAcBgNVBAMMFW1rYnJ0bmljZS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJdA5tEgF+t00ZZOmO+wldx6oXjMiIlaEKR4D+hJYIQb4+H7sYdtkvR4MXsbvWiMHUbWXGF6/cHIQMCuT+hvl1zQSB6uongZK2GyrH//mgARy3HJ/PjyUVxFPt4fqkY2yDp66S+orrSlacrI1VD1IYuWACctZj0yuZh8reHxxhMKD5g7E/czoCa3uWK3DAypNSZ4RSvr5UMmIgss4JevAkjsgDfjHqw91duH+PJkW/r2mghREIJ303QN6qpll1izph0xVq9qU81GtVA7S1QPnYntDcAiRH/G8Zefcwly86HIXDXWxV1t5NhhkILs9Nmjkk9iEOYt0bXY0DKfZqaEQzAgMBAAGjUzBRMB0GA1UdDgQWBBQkDR3NTpUh45hPwsBvsjaxmLgMkTAfBgNVHSMEGDAWgBQkDR3NTpUh45hPwsBvsjaxmLgMkTAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCyx34Ppye/GkjhL9RjmlM+mw4P2Betm6NLdhcxfnMyjpWbjyEer5otXmeICjwZ8L6u0ruLZi71UL7fvvVUJilrYF4mIIClKcCBWnptAdDtxbZIi0tOTXJkP3aKVfGnHKWmLUpcZi1CmAJhAV/r4FISvJ4ScXuwoxJNk0QpANhs9rrX9DifGiTJvHOsB5imGwgYxa519VOEyg7TxYcNv9uhWvdB//0SPziDX544uFB3d6BHBdn9eQIsuIU596ozBeH/yKELVDQOTMApcV/ewpXbLIhWxtrgaaWg67HTlB4Sm2o2XNyd1fm5UpQcEmiv+iSESI8G6S2E6/v2PyWqzyU+</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkbrtnice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkbrtnice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkbrtnice.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkbrtnice.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Brtnice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Brtnici</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Brtnice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Brtnici</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnabrtnice.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnabrtnice.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnachocen.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnachocen.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Choceň</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Choceň</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Choceň</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Choceň</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnachocen.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnachocen.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://chocen.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chocen.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://chocen.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chocen.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://chocen.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Choceň</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Choceň</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Choceň</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Choceň</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnachocen.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnachocen.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnachodov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnachodov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Chodov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Chodov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Chodov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Chodov</mdui:Description>
          <mdui:InformationURL xml:lang="cs">http://www.knihovnachodov.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">http://www.knihovnachodov.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="172">https://mkcho.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkcho.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkcho.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkcho.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkcho.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Chodov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Chodov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Chodov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Chodov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.knihovnachodov.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.knihovnachodov.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnachotebor.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnachotebor.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Chotěboř</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Ignáta Herrmanna Chotěboř</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Chotěboř</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Ignáta Herrmanna Chotěboř</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnachotebor.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnachotebor.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="134">https://mkchot.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkchot.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkchot.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkchot.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkchot.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Chotěboř</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Ignáta Herrmanna Chotěboř</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Chotěboř</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Ignáta Herrmanna Chotěboř</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnachotebor.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnachotebor.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnafm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnafm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Frydek-Mistek</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Frýdek-Místek</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Frydek-Mistek</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Frýdek-Místek</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnafm.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnafm.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="244">https://mkfm.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID9zCCAt+gAwIBAgIULtH8aNf28ohI7AC8pI05UwTmpZUwDQYJKoZIhvcNAQELBQAwgYoxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEZMBcGA1UEAwwQbWtmbS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owHhcNMjEwMjI0MTQzOTU4WhcNMzEwMjI1MTQzOTU4WjCBijELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMRkwFwYDVQQKDBBNb3JhdmlhbiBMaWJyYXJ5MRkwFwYDVQQDDBBta2ZtLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAPEY4BuFqGUKwHXe6wWZDAImpPu7D2IEMTNZhU4HD3Xzl+dMaKj1Er/72/nD7/ubCjxLJI0L9qHrk7SNXmtg0b4py6h70O/v1hzrNK1H85KAP2B7BAQHsrsKye+/rGiC5F9pvSTnpCli5vVnNBmIMNTjuNH9C5CqLrXfvwXGW9WMQiB71NV40xkj2ZT5J+ce7PZ/+BicXyYfG31HA8I5h51v6e0Ipuz7oBJiH80y2QxhtiWJyUKszT5VfBL8A77q9V7TwvIMIb/Fko9iRUYk1HGaBSpp1uUQ0GBsqr6/U8GtkeEeZIIjZ6ngIs6rLgw4aLV0Bml550Z69S7AgJYUqBsCAwEAAaNTMFEwHQYDVR0OBBYEFFg2Re5IuX69eDdl8V95SYvYJD38MB8GA1UdIwQYMBaAFFg2Re5IuX69eDdl8V95SYvYJD38MA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAGf+wkfpknNcCP09l3zzMvfbvBflmsuvLs8ZaWF+id9zTRrrwScSm6ECpieCP6V25nWFLWvDuDDj+5VX+Kg4q/vnL0Wv5nBRezpYfg+hbb9NWFklYbzuE2n88zB5iDra3uEWDkEQ9vh61TkthdCR1XF67VRXibZgPW39OlAQDn5c1WJleoPeEIutR1uHc3UsRicFDdras71cKLruleTHnzzB9DWWHzRC9qF/CfdKh9zT7FxQ/M2lnS2JmKEUpdiC3SYBUXzVkSQhu8reaQEBfBIx6WOwPhUSkswdomJBHjhvxNqr5az3cBhhvXXid9T97IDcp+csaJvsNjj7rWnJVQ4=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkfm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkfm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkfm.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkfm.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Frydek-Mistek</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Frýdek-Místek</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Frydek-Mistek</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Frýdek-Místek</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnafm.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnafm.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnafrenstat.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnafrenstat.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Frenštát pod Radhoštěm</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Frenštát pod Radhoštěm</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Frenštát pod Radhoštěm</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Frenštát pod Radhoštěm</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnafrenstat.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnafrenstat.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://frenstat.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+zCCAuOgAwIBAgIUcq+5S1+guKHt8kZS7ZWi0+p+bIwwDQYJKoZIhvcNAQELBQAwgYwxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEdMBsGA1UEAwwUZnJlbnN0YXQuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yMTA2MDMwODQ3MzZaFw0zMTA2MDQwODQ3MzZaMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxHTAbBgNVBAMMFGZyZW5zdGF0LmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCY2z6oxtc5FgWiawmFm8VEluHCFsO5vbmJff8idf4M7Nifc+T6m0jkI2rQfJRTKWxRHkzTDeMsnDa7kjy+zoO2Pq1bJUCcmgrELem/Rg41eTajYikxYwfGuMMaS6L7wOl1B6QeHiT37MsRh1sPNsMmJVF9sm9hYo+XJWKRIxjTDKYy2rrGU5xefMu+Cu6mywHeLVPEzMV1OlFyHonVpYOmIt80Sxtz1KFGDpPiu60m8kpxJZniBWzmT3lexhYHrH9lxJQNUEAuJfQoBAprfXXcGCWsb5ux+xeSqw0kaO3Esn+Uy1OSVCBMnmcuzpy+YKAMgPWSKKxN8HCs7NmKyR9lAgMBAAGjUzBRMB0GA1UdDgQWBBTYv1XrBafOxdQQoO3eSKE39rWeljAfBgNVHSMEGDAWgBTYv1XrBafOxdQQoO3eSKE39rWeljAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA+IRAZcyD4ndQ7dMbdJ2fHmEcoe8kLTreLwbeoA0ykpAPNXrOq42ZW8Vpke7LbaGSUEuVfPHMbDbaeamyiD+4GqZlS/MWDe8vEg7s2rrEVLK7Jq43eJ331OtMlMmvlQCVi35iNAlaxyYop2BJ8CWCKPtFXio6YCrTod71EsVvoEpgB5oiYLt/nOTMsa89G+hOse0heDdv8HJH6VmktK0GO1UgwHth5fTBDYVegRqL7iVdFDoVkLCE6pSdZzGa1x8Ax0a0FBvLHtBqJEIzRNKtrSGuXVag2XBjlIO2HtMSU+mfSfMAzGHWI7lS1K+B765DKd2stdf4nZsem2k2DHnby</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://frenstat.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://frenstat.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://frenstat.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://frenstat.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Frenštát pod Radhoštěm</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Frenštát pod Radhoštěm</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Frenštát pod Radhoštěm</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Frenštát pod Radhoštěm</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnafrenstat.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnafrenstat.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnahk.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnahk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library of Hradec Kralove</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna města Hradce Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library of Hradec Kralove</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny města Hradce Králové</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnahk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnahk.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="119">https://mkhk.knihovny.cz/logo.png</mdui:Logo>
          <mdui:Logo height="276" width="668">https://mkhk.knihovny.cz/logo_c.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhk.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhk.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhk.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library of Hradec Kralove</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna města Hradce Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library of Hradec Kralove</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna města Hradce Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnahk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnahk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnahod.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnahod.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Hodonin</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Hodonín</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Hodonin</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Hodonín</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnahod.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnahod.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="146">https://mkhod.knihovny.cz/logo.png</mdui:Logo>
          <mdui:Logo height="225" width="225">https://mkhod.knihovny.cz/logo_c.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID6zCCAtOgAwIBAgIJAMNPFBnWpzHnMA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEW1raG9kLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0xODExMDUxMDEyMDBaFw0yODExMDUxMDEyMDBaMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEW1raG9kLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANyk4ELldLcX5io0iSf+HF6GBOB+Mhafjz9I7+6h8qWgsmLzzw2jdo3R7fYAruO6NMWC32SqxW+kJZ0rgzXIOdK+jlElNPds9VFKVuFr2UDn59UksjrIXLoCQmnmxbOyKNqQjQeS/sK41bM/pAOQIGDnLVdKSwBlo/YRdWQBa2soD8j4juQsxiQXHO2zM9ijTOFc2qqAoymCHarYNRAz1ucoAj96HhNSUPpCSW9AmxB5vx7KcEUdS1l4Dlgw9VSOPpvWoj5eU8ZXlgGCqlniAgix9XgmE5LLywFP7KetCp5OoQYa05tc7SefN9eYYMe/uNEpxHjuaob2H/zE3wwLiuECAwEAAaNQME4wHQYDVR0OBBYEFJOetLK8868paCPfQGsmvJkZCiBXMB8GA1UdIwQYMBaAFJOetLK8868paCPfQGsmvJkZCiBXMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBACir6vnVZ1eK4zIgfFeNIPzsRn15KKDQmHy0UMi6TbWJO+EwDGjR1qIc2I+xLqe2KarFcRWJM5sqz3CWHYNg23GENwrZ2PFZsESzI7kL1oMv7z81dAwDy8Ev2kKU0cVs6RxiPtnqd6eWeT6/Ca46zl+NFTd3JxhP0w72Pk36QcUdH3bxxo/IuS7RSjUEeuU2TTiW33zQFmoTdioPwd2YmX4vub13hRr1rk8v/JUOjFuys0s76J82FGE5/PpYQ6tFg9XLgZO3iL0qxmhahJy4lX2PEtha0dPbHa7r1SdQFVK/7aaUb/xSe53jxTzalQ9WZqY+IiQpK8iGwTAleYTTaRM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhod.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhod.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhod.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhod.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Hodonin</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Hodonín</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Hodonin</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Hodonín</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnahod.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnahod.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnahradec.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnahradec.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library and Information centre of Hradec nad Moravicí</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna a informační centrum Hradec nad Moravicí</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library and Information centre of Hradec nad Moravicí</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny a informačního centra Hradec nad Moravicí</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnahradec.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnahradec.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="104">https://mkhnm.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhnm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhnm.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkhnm.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkhnm.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library and Information centre of Hradec nad Moravicí</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna a informační centrum Hradec nad Moravicí</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library and Information centre of Hradec nad Moravicí</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna a informační centrum Hradec nad Moravicí</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnahradec.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnahradec.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnajaromer.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnajaromer.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Jaroměr</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Jaroměř</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Jaroměr</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Jaroměř</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.knihovnajaromer.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.knihovnajaromer.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="111">https://mkjar.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkjar.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkjar.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkjar.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkjar.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Jaroměr</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Jaroměř</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Jaroměr</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Jaroměř</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.knihovnajaromer.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.knihovnajaromer.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnakolin.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnakolin.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Kolín</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Kolín</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Kolín</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Kolín</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnakolin.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnakolin.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="230">https://mkkolin.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkolin.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkolin.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkolin.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkolin.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Kolín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Kolín</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Kolín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Kolín</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnakolin.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnakolin.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnakv.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnakv.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Library Karlovy Vary</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna Karlovy Vary</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Regional Library Karlovy Vary</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Krajské knihovny Karlovy Vary</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnakv.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnakv.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="115">https://kkkv.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID9zCCAt+gAwIBAgIUVlddae/KipAuqs4YYbgdRvGBvKEwDQYJKoZIhvcNAQELBQAwgYoxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEZMBcGA1UEAwwQa2trdi5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owHhcNMjEwMzAxMTIxNzU5WhcNMzEwMzAyMTIxNzU5WjCBijELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMRkwFwYDVQQKDBBNb3JhdmlhbiBMaWJyYXJ5MRkwFwYDVQQDDBBra2t2LmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAK2T7o6QfEAkHnpmqhTilagkfW7RK2KG2WnAIQKeVHo8wm/TshlBA/m9G+kpTRm+biREvfn5sSVHad+8WvNQ+DaDC1U+qP8OuWwfdYmkWuQ2qEF0Lj5QFM4T14aoHPwBb0AJnzZCOieGNblt5byuiAe45yK5TpxBWGK4SCL6Ovbc8SBVdAmGbV/zIP1MW1zpLkqkd/Z13VH/KDJzjMz9j9kztDFb2THDD295oamcZ2owLbcZxwBBdGknVmFaMR+wSSMKlpVe+0cQsrne/3dzYYbja/Jkq235KIxkFwbo0fGlW04ILnkAVvs39YSJii8eKLAR5Up9qbTs98SLN2ykiS8CAwEAAaNTMFEwHQYDVR0OBBYEFBNM/V1+aV/EdKY1I0bO3ZmDnsQCMB8GA1UdIwQYMBaAFBNM/V1+aV/EdKY1I0bO3ZmDnsQCMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAG7TVSSlP8mfzzcJ2+3YUHklMhng8xU6bYzIYe+5P8hq4kwYMhqtInrKanykj1h8aBVywq/A7YQD6gJO4dmZXnTx48Dk+IRNTlbofBW9TfEPg1avqv4G6iYYFmEX/0kezRVks442PWHFLOYJTCRZ7yZHs2xji49aJDLdoJ08mq8ur5tinveYuXRjdlJ3kKmCGGQ2aNWSJbOvneSOLqT68xPYFn65sQgSUWE1LkyZjGuPgRCkPydvUpqr3SHQSKJ+t1WbFwKiVKlaOkrdb1dX35ab247e9hZS0gFOdHmHsyUG/eZRuWLmUrevfozhODdZXMG6UjHvjucw8p2DO/2ztKg=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkkv.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkkv.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kkkv.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kkkv.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Library Karlovy Vary</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Karlovy Vary</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Library Karlovy Vary</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Karlovy Vary</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnakv.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnakv.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnalitomerice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnalitomerice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Karel Hynek Mácha Library in Litoměřice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Karla Hynka Máchy v Litoměřicích</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Karel Hynek Mácha Library in Litoměřice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Karla Hynka Máchy v Litoměřicích</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnalitomerice.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnalitomerice.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://litomerice.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID/zCCAuegAwIBAgIUdCl70EWmvFevciNlSj5vU4u/AAIwDQYJKoZIhvcNAQELBQAwgY4xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEfMB0GA1UEAwwWbGl0b21lcmljZS5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MB4XDTI2MDIyNDExMDIzMVoXDTM2MDIyNTExMDIzMVowgY4xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEfMB0GA1UEAwwWbGl0b21lcmljZS5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxdcVeNMNGED7ZtFj7cz2y2F+muhJS4G5HOm+fQX1H7dbFcgZ9fZ/FYPIBGCjjfxtvOzMASJfQLp6hPj/1ti+ZBelj+8PaYgO8QMoo+pnN8j1xslCnbRz97gX0EBX0pl0YomP+TsrOaPIlDJdCqmcZ3QMskzfm+EcYRzcMTgsVIgzuqldL3s1Q4Qx1oZM+6e/LaCRiieMUy0eIweVvCK75v0Z0Vh3dPAWK0SL/vXlajXaPyLFh1lxexIx7ry3p5FTmMlH5HmrX2lBZhprwnjV1zQG6XMgL+TW0lhmjJICkQhqxp9NFGyXB2u2x7nkz1eiiKtLTThqe+23b3vUt6PaDQIDAQABo1MwUTAdBgNVHQ4EFgQUGjaT8MwTY+PDH5TEezSTFaqpADUwHwYDVR0jBBgwFoAUGjaT8MwTY+PDH5TEezSTFaqpADUwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAsfTAYy03gO6JQ/r1TVhlT2+MBO2cnRUB/ga4bd8QYjfg89NW2smCvNi2mjSfhfWr8ybgW0YCv8HG8QNUVi+/GFARouQRkJf+ir5Gsjw8TDZTAcRsUZVjE5ngCwZfZiPXtT8twNX/2DyKL2zTWlC6+1d9Hu0pCg3pKEb8UChJSs91XG+weMwNejWq7K/G5cAhJE/s4NOiQBNyVgRfQxeVssag4d/OP2oNYuMZU0dusDjpXAtx62drmTfIPfYxSYpEHkTW2ybuoxKjrOdyYDIFYdPhzQ8YxB6FcjBHTrRhgXkeWopuf0VENOe1Hk9JC7JQQMn0ZWPemo6gG2RakifK8w==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://litomerice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://litomerice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://litomerice.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://litomerice.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Karel Hynek Mácha Library in Litoměřice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Karla Hynka Máchy v Litoměřicích</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Karel Hynek Mácha Library in Litoměřice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Karla Hynka Máchy v Litoměřicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnalitomerice.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnalitomerice.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnamilin.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnamilin.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Library of Dr. Emanuel Bořický</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Dr. Emanuela Bořického</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Library of Dr. Emanuel Bořický</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Dr. Emanuela Bořického</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnamilin.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnamilin.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="46">https://milin.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://milin.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://milin.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://milin.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://milin.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Library of Dr. Emanuel Bořický</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Dr. Emanuela Bořického</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Library of Dr. Emanuel Bořický</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Dr. Emanuela Bořického</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnamilin.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnamilin.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnaml.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnaml.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Marianske Lazne</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Mariánské Lázně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Marianske Lazne</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Mariánské Lázně</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnaml.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnaml.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://mkml.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkml.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkml.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkml.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkml.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Marianske Lazne</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Mariánské Lázně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Marianske Lazne</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Mariánské Lázně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnaml.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnaml.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnamost.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnamost.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Most</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Most</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Most</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Most</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.knihovnamost.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.knihovnamost.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="91">https://mkmost.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkmost.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkmost.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkmost.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkmost.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Most</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Most</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Most</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Most</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.knihovnamost.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.knihovnamost.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnaneratovice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnaneratovice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Neratovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Neratovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Neratovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Neratovice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnaneratovice.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnaneratovice.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://neratovice.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID/zCCAuegAwIBAgIUevFdxm5iNhq1RcFf1+4tHdYoLP8wDQYJKoZIhvcNAQELBQAwgY4xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEfMB0GA1UEAwwWbmVyYXRvdmljZS5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MB4XDTIyMDMyNTEzMTQyM1oXDTMyMDMyNTEzMTQyM1owgY4xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEfMB0GA1UEAwwWbmVyYXRvdmljZS5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxA67t5MXTPrxTHEkktoqO/3bzjqW2y8/UJkmw6ezsK/ztQytDszxGMpafE6Tm35h2SCx66HRzDx+nIdY8NvX2hZSqlP5wba7SG5tTDkHre86iDhXEW44QRfz/IBODE2C/591ZkRGheVYC5BQp4OMJGAxxGNtcwOTicjZpLU1ne/HIo3FGUK56vxQN0yIZGgCYQtAszN87R2qzBiNX7qxCs2yPCEmAlXbd8Hqn/9g1eH4SXAzFkxXc4j1Jgjrmp3cWByWtvARO4WhakM7G/zcAUTvwWzXAktW6PcJQ/pLj7hLuiA+xAraL+ZYmLnGqhqisr/bC7vT4yjCgR8kiNiQMwIDAQABo1MwUTAdBgNVHQ4EFgQU0p3nVOVB2HAvyiAsGoOubhcnB2EwHwYDVR0jBBgwFoAU0p3nVOVB2HAvyiAsGoOubhcnB2EwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAEWpN47OGVLR293n/pMTVoP+JbbDrHw3YNq6Xgs3v5RFh8a0PpVVf6WYJ6x7dvvjJC8Y6n+ukInKFxIOKLonme1e1GNxZJ2kHg7MTh1T3YlSFmfdCVfnhssUouhuu1oSwCu46zAp8TsTScI3VFGK8uAUKX0cpLFl4F+Ok5iNG/NFx5YQnsDHKnlM/CnNWUV2LhbBC4BCndoz/pPXOWsM8Rt/spSD2vV14FdwrCzCUD8A2iWEjBNKh4OWYqq8CE6kF7lWcZPigqUHGbiZUJIrDqAWqrtGie8MFQ+DBUyaoXjiAsBlhpTtx0eQ+/1a6o78eoGfnmSDB6AFHqb50cvDJYg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neratovice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://neratovice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neratovice.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://neratovice.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Neratovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Neratovice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Neratovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Neratovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnaneratovice.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnaneratovice.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnanpaka.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnanpaka.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Nová Paka</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Nová Paka</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Nová Paka</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Nová Paka</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnanpaka.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnanpaka.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="63">https://novapaka.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://novapaka.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://novapaka.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://novapaka.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://novapaka.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Nová Paka</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Nová Paka</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Nová Paka</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Nová Paka</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnanpaka.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnanpaka.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnaprerov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnaprerov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Přerov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Přerově</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the of the Municipal Library Přerov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny v Přerově</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnaprerov.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.knihovnaprerov.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="237">https://mkpr.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkpr.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkpr.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkpr.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkpr.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Přerov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Přerově</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Přerov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Přerově</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnaprerov.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.knihovnaprerov.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnapv.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnapv.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Prostějov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Prostějov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Prostějov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Prostějov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnapv.webnode.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnapv.webnode.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="90">https://prostejov.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://prostejov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://prostejov.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://prostejov.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://prostejov.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Prostějov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Prostějov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Prostějov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Prostějov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnapv.webnode.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnapv.webnode.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnasedlecprcice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnasedlecprcice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Sedlec Prčice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Sedlec Prčice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Sedlec Prčice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Sedlec Prčice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnasedlecprcice.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnasedlecprcice.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="36">https://prcice.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://prcice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://prcice.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://prcice.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://prcice.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Sedlec Prčice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Sedlec Prčice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Sedlec Prčice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Sedlec Prčice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnasedlecprcice.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnasedlecprcice.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnasemily.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnasemily.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library of Semily</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Semily</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library of Semily</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Semily</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnasemily.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnasemily.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="100">https://mksem.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mksem.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mksem.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mksem.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mksem.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library of Semily</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Semily</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library of Semily</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Semily</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnasemily.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnasemily.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knihovnaspk.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Městska knihovna T.G.Masaryka Šumperk</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Municipal library T.G. Masaryk Sumperk</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Městska knihovna T.G.Masaryka Šumperk</mdui:Description>
          <mdui:Description xml:lang="en">Municipal library T.G. Masaryk Sumperk</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://katalogspk.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://katalogspk.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="98">https://katalogspk.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">knihovnaspk.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalogspk.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Městska knihovna T.G.Masaryka Šumperk</OrganizationName>
      <OrganizationName xml:lang="en">Municipal library T.G. Masaryk Sumperk</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Městska knihovna T.G.Masaryka Šumperk</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Municipal library T.G. Masaryk Sumperk</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://knihovnaspk.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://knihovnaspk.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnatabor.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnatabor.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Tábor</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Tábor</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Tábor</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Tábor</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnatabor.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnatabor.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://mkta.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkta.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkta.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkta.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkta.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Tábor</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Tábor</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Tábor</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Tábor</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnatabor.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnatabor.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnatnv.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnatnv.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Týn nad Vltavou</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Týně nad Vltavou</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Týn nad Vltavou</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny v Týně nad Vltavou</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnatnv.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnatnv.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="42">https://mktnv.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktnv.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktnv.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktnv.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktnv.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Týn nad Vltavou</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Týně nad Vltavou</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Týn nad Vltavou</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Týně nad Vltavou</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnatnv.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnatnv.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnatr.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnatr.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Třebíč</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Třebíči</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Třebíč</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny v Třebíči</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.knihovnatr.cz/cze/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.knihovnatr.cz/cze/</mdui:InformationURL>
          <mdui:Logo height="40" width="72">https://mktrebic.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID/zCCAuegAwIBAgIUK33xVx+F3Pow/HvbAwgAzX06xeAwDQYJKoZIhvcNAQELBQAwgY4xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEdMBsGA1UEAwwUbWt0cmViaWMua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MB4XDTIxMDUzMTA5NDEyOFoXDTMxMDYwMTA5NDEyOFowgY4xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEdMBsGA1UEAwwUbWt0cmViaWMua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvtWa1Ok1dNuKYK1MV7rbpzTkY9Au+h16FiJx6uWrhIaIkbE5rz1KCSbLm/wFpsd/8iTGMngVJL7yU5roRL+OjsO8ZyKg2XFkklZVWXXYn6QVJd181Xb8l52L4AOpFnbMfv+HbfjlwBmIs90dKeigz9XCxxscieINzp6j/P2dy2Xr64q2mCCuPOzQ3vHJEbEmPohIa3SJ6+Jr6U3M438bCCj9p2oD7JWsXhle+8adudkCgzZlvDKwwSIkABoY+GpOPcrqkTAIZlwBd3A0NKeupHEswBz6BlSY2yL8F1ft4fQHj36f4SYfYSAq133BKthY0H9qOytoywe8VFVLYeyLmQIDAQABo1MwUTAdBgNVHQ4EFgQUXvca+AG/HZ3plxaQ/qP3lBVzNoAwHwYDVR0jBBgwFoAUXvca+AG/HZ3plxaQ/qP3lBVzNoAwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAb2p20Iwr0RMJVdFJJsJUjJTMxnC99vUa0xLXTTK6mXLOtsD5BFNutw2g4DM0pu60l9NrfJA0Dm0l1JxhQCWPlQ0CQ8QfczA5PmA5iAwnrGVoLcX4iVjSQUy6gi/b/FtV6X03dECOtljNpGlvK4xW323e1jcKc1PxKx9DsL0z6RSPpVnY9TyeZUqt67+2790Fl8/TrpNvLWyxknaEXnh3BUhi3bE5CfF0UmT7+W5srcR3IK68/EB2qMITc8KCBskwGwmO7DSdfcQ7X8Dwu3dXIIc/L/xGaEh8eDLT6QVmq+okQKC2oTBjv+YHKSZhZj3133IRICVi8E5dkdJ1FcDiuw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktrebic.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktrebic.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktrebic.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktrebic.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Třebíč</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Třebíči</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Třebíč</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Třebíči</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.knihovnatr.cz/cze/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.knihovnatr.cz/cze/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnatrinec.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnatrinec.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Library in Třinec</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Třinec</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Library in Třinec</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Třinec</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnatrinec.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnatrinec.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="194">https://mktri.knihovny.cz/logo.png</mdui:Logo>
          <mdui:Logo height="676" width="3275">https://mktri.knihovny.cz/logo_c.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID6zCCAtOgAwIBAgIJALLdPCFnMSS8MA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEW1rdHJpLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0xODEwMzAwOTM1MzZaFw0yODEwMzAwOTM1MzZaMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEW1rdHJpLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALlP4JVww7L7i+PnFRqHoIWy/HiyBAK7Fp6XZF6n9Ii2IwAM7w7XKUG0V/aJmBR2cmFvs4Ncb3YyEJCvBWx0/uBnIlVNLsbM5Va8U+V1LPSl4OAmTqMiI66zV1kLWA2JeyXiP/ClYG0rNyyA5vNLEbBAXRMeNhXcoY01GEWKlvIp7Ayp/ZDgDVpUHWeH0+U/UUvSTlL8n8FqX/jC/ZRMzBuykog6ABywqugaibVJ9hCMgCSXrhi85I4gitXYw+77twVDvt/sAo8yjzDwplxIx9SZ9LGNoE1JdpKqqceVjW3yZrDvPEbLFy+V9PVe7CpmIWb6Ax0fTjPPchd5y9m6gKUCAwEAAaNQME4wHQYDVR0OBBYEFGXVlbek38umsBui3fv4fAnuycVYMB8GA1UdIwQYMBaAFGXVlbek38umsBui3fv4fAnuycVYMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAKuB6PGzfcF28y4K7x1dUKyAju3a/aS407bts5CHP3JmNrckWi7DUNbddW7g17ujttM/NtMhwyfQwvYSQgZggLX+nwvzBohxEtzBkxnoo91yIIsq88tcA1GCzf3RLZrYFgc+teseoH4Eckj1TnGwG6JYuf7d2+QFTs4uz14zw9VL/eLIgLmQ18mFmBlhd4dafMhSut/omMBou0p7q2qbN6Uh1V9KBPwEARwMC8bwEI+Hv6UDLUj39hU3LwvE/O6N4Gt04nck2YGi7L1XhhkuHH/JANL+vZiimy4RdtiDUWdQGsrAZhmgcc5MRo//SXlsQ67OAPyRmlU780v7AfviAhU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktri.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktri.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktri.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktri.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Library in Třinec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Třinec</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Library in Třinec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Třinec</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnatrinec.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnatrinec.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knihovnazn.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovnazn.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal library in Znojmo</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Znojmo</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal library in Znojmo</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Znojmo</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovnazn.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovnazn.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="84">https://mkzn.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkzn.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkzn.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkzn.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkzn.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal library in Znojmo</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Znojmo</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal library in Znojmo</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Znojmo</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnazn.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnazn.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://knir.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knir.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Roznov pod Radhostem</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Rožnov pod Radhoštěm</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the the Municipal Library in Roznov pod Radhostem</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Rožnov pod Radhoštěm</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knir.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knir.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="169">https://knir.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID6TCCAtGgAwIBAgIJAJ3MwyAvMtdKMA0GCSqGSIb3DQEBCwUAMIGKMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGTAXBgNVBAMMEGtuaXIua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MB4XDTE4MTIwNDEyNDQzMloXDTI4MTIwNDEyNDQzMlowgYoxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEZMBcGA1UEAwwQa25pci5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCp3VkGnZ9TSBr+POAV7EGVkLIv6x2lqcWDhv1ZtQeI+a2w3X8CjGXpkE8JYfLjv2nUbf6H6g16iTxdWWcq9O0mU4EpkNtxIPIEb1sJLmsQgMwamkbpmwOofoHN6wIUWTLo3r/YIm47Wi06fwwbApjrXgOC5qiGg7K2h1xs0A9yUspq3lE36EKBKsd8bMwcjKWsqvQWdcjBlJE2YQEBkivBGlUZU6Fni0VeJaRpwYsx46WNVXxKGQgugMzz1flgtqDnt/SR200zWHXlgGa4boPUftpLLHLxu46RiHfVHSbhXyJMz/cKnkGjyXWHFMwft3EyeoldnKe2iDrioQu/Es+7AgMBAAGjUDBOMB0GA1UdDgQWBBSD8Y62JFw6KklpkIhwxHPoEg4x0jAfBgNVHSMEGDAWgBSD8Y62JFw6KklpkIhwxHPoEg4x0jAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCa3jGRFfgOc4CbKklzVDnN0bgWeN3+GUQ6EeEFqIqU+h/GrLfMH466G52LWdrKPXc5ECDXl27tUgpArVG9Z12x+mwZHSGXMPR54I3U8GcTq4ZatZta+MU6ekDHnkOWmr4Ay2G6IcC8Xj8CBO8VZ0uGnUbRWckw8+rsHqcMGgpxyYmhw44DVEj8fr0VM2U2OzvvgON9FklBKVYU2X1vD6ir+ywalNiccZeNUVqHAr/0yPt4WYBRn2TEYSkUc6LYO0VXqdRbxDgFm43R7d1MdkIcFB7jQNMvLgsJzm3fg1Zg6fpXwb9jbbhSbnG5EsaKSrRyv4M0JSSSnBAFiVoj665+</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knir.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knir.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knir.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knir.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Roznov pod Radhostem</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Rožnov pod Radhoštěm</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Roznov pod Radhostem</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Rožnov pod Radhoštěm</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knir.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knir.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kpbo.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kpbo.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">District Library of Petr Bezruč in Opava</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Petra Bezruče v Opavě</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the District Library of Petr Bezruč in Opava</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Petra Bezruče v Opavě</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kpbo.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://kpbo.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="260">https://okpb.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://okpb.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://okpb.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://okpb.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://okpb.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">District Library of Petr Bezruč in Opava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Petra Bezruče v Opavě</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">District Library of Petr Bezruč in Opava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Petra Bezruče v Opavě</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://kpbo.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://kpbo.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kpwin.knih-cheb.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Chebu</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Municipal Library in Cheb, contributory organization</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Městská knihovna v Chebu</mdui:Description>
          <mdui:Description xml:lang="en">Municipal Library in Cheb, contributory organization</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kpwin.knih-cheb.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kpwin.knih-cheb.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="97">https://kpwin.knih-cheb.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">kpwin.knih-cheb.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kpwin.knih-cheb.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Městská knihovna v Chebu</OrganizationName>
      <OrganizationName xml:lang="en">Municipal Library in Cheb, contributory organization</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Městská knihovna v Chebu</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Municipal Library in Cheb, contributory organization</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://knih-cheb.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://knih-cheb.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kram7.knihovnauk.cz:8443/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius 7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Kramerius 7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>0W21-3nfnAty3d_37P8kj_QqMIXCz_U1bv7T2snYmKk</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kram7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kram7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Ústí Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Ústí Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnauk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnauk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Luboš</md:GivenName>
      <md:SurName>Malý</md:SurName>
      <md:EmailAddress>mailto:lubos.maly@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zbyněk</md:GivenName>
      <md:SurName>Šachl</md:SurName>
      <md:EmailAddress>mailto:zbynek.sachl@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius-dnnt.nkp.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library - Kramerius WOC</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna - Kramerius DNNT</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius-dnnt.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius-dnnt.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALRcjcUc8+IRMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJAKVopkgCz7YuMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">National Digital Library</md:ServiceName>
        <md:ServiceName xml:lang="cs">Národní digitální knihovna</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Národní Digital Library</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Národní digitální knihovna</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="entitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdenko</md:GivenName>
      <md:SurName>Vozár</md:SurName>
      <md:EmailAddress>mailto:dnnt-it@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-eduid.cuni.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Charles University</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Charles University digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.cuni.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Univerzita Karlova</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.cuni.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.cuni.cz/assets/shared/terms/gdpr.cs.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.cuni.cz/assets/shared/terms/gdpr.en.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>p_DZ0N5bn8M2jbTlEARVgEn3UMym9P5W9d4GUmcfVnY</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-eduid.cuni.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-eduid.cuni.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://cuni.cz/UK-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Řihák</md:SurName>
      <md:EmailAddress>mailto:jakub.rihak@ruk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-login.lib.cas.cz/realms/Kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital Library of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library of the Czech Academy of Sciences / system Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.lib.cas.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.lib.cas.cz/gdpr</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna AV ČR / systém Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.lib.cas.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.lib.cas.cz/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>q2-9fULOCrr0omr7OHacxwQvLVVoH9-rNNKlU_-W2aU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-login.lib.cas.cz/realms/Kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-login.lib.cas.cz/realms/Kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Kramerius KNAV</md:ServiceName>
        <md:ServiceName xml:lang="en">Kramerius KNAV</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="edupersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Library of Czech Academy of Sciences</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Akademie věd ČR</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Library of Czech Academy of Sciences</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Akademie věd ČR</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lib.cas.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lib.cas.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Duda</md:SurName>
      <md:EmailAddress>mailto:duda@lib.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-login.svkhk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital Library of the Hradec Králové Region</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library of the Hradec Králové Region / system Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.svkhk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.svkhk.cz/gdpr</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Královéhradeckého kraje</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Královéhradeckého kraje / systém Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.svkhk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.svkhk.cz/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>pH9LJdDeV5o9o51nZyKJ2ON3MqTPrq4fuVnvK4azwhU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGPKmCPijANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjQwNDI5MTUwMDIyWhcNMzQwNDI5MTUwMjAyWjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC2Sj/Wtr1DP5x4YNOgFpFti1waf3S+3igeD/ZG7neqZyNozTU4EAOwAdmg/ODg2hcM288IpwD9G8FzFbs9zcxzq/ZHB6Pen5u0nNLMqnXLpzPJyDIDdUQm1WUxEK5yv9kQoekQbrjG4iBRp2LgNsjk6g9jwglvm7MiPfR1HBOvMckMViwYT65QB3IrzrdCl0/Xrm8HJvrVaMvS3wZCjXcVisy2z2Ky0xysYOqWK3yLqxt50LsoFkp0l3jJ9sZavhVoZOpR5pd0P8llmWraF1ECtLDyyap3Y1bXkLikyd3M4ARMEIjoJTxNgy7XLOXfoKcO2jgTiWMw7M8+MC1MLdUbAgMBAAEwDQYJKoZIhvcNAQELBQADggEBADgQlHVFHiuxeAnV7JXcjrbk9e4MYFP0vFYi4m59isKLHVAd4zs8GJkeOpJEoU8AZr+ifaBKEntjigGoCjrgxwlcTrNqzNdXU0j8776tADCJPDD65Gz0Pcp0RsET3RdJSnsP+18Y0RtkwOHncFQFrbgIjThBFgoy0uhNxq7PD7WpxyBevLZYq1USOMg/A6hSF3yBgw89x61GzPALG+ZXgLrcp1lEkO2x3YOT04rhRpWNSzg5UloKa5uRfOfHsy6GB/5wVveMDvG2GTdVjqaEqNIpxbEdoDkyEzgWpdJl+T06c0B/78UHSe3RDi1XuCDS8QBvuFu/GSe6xMNTv4vd/vQ=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-login.svkhk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-login.svkhk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="en">The Digital Library of The Research Library in Hradec Králové</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Kramerius / The Digital Library of The Research Library in Hradec Králové</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Kramerius / Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" Name="eduPersonTargetedID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">SVKHK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">SVKHK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.svkhk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.svkhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivan</md:GivenName>
      <md:SurName>Červený</md:SurName>
      <md:EmailAddress>mailto:ivan.cerveny@svkhk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Sklenář</md:SurName>
      <md:EmailAddress>mailto:petr.sklenar@svkhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-sp.umprum.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Academy of Arts, Architecture, and Design in Prague</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius UMPRUM digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.umprum.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius UMPRUM</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.umprum.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.umprum.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.umprum.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>lK0l1LQcWpaZeLCrbqCje7KaMf35SGkbVP9oTxFBnjU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGW6ZyX8zANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjUwNTE5MTczMjU2WhcNMzUwNTE5MTczNDM2WjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC2di9knj2+c1qnMnpXp878oOqxdRvqE/g9wv8bkSyXRVuQQRGWWjByF0wlqIauxsbfEp3WOHWcnusT3N2wqGGec0Pvd0UOWKcofTqERJWQvHJD8TbhMl/WMIKMtQxMuNWqSWLPYJbLqsfuRBl0s41Hhhz5x6XJ3iYmauC9l41jpTopKPs22u7TLj6Heu5eSAEnYsUxhx+vbMf2iCMRlPthiUt5NiM9kI9HcpNYsg1BHpdF00mpe3Ai2kK4bejNqu4+Wc/Ls0H3qa9Q+oiPfGWzqd7QWjXQzL1RjvhHSluJLey0wjqpY0kGyEi4m8l4xypraJkt5lWibPLt9H6nkogRAgMBAAEwDQYJKoZIhvcNAQELBQADggEBAIs5pOQ07Wvfewh2zYFWkplKQDlv5bhONNO32xIvVBcGV3lGjqhWYZHuqQL1uIu5MObbOksnORJAhgREdfYSiQ+rbRkt5EZ6XzYaxzjpuH100L3dnaPeFiehzBgVYG+wK8r34cPDcRkligDMduo1wrLnDLHak3D70Tg/JEBaO8rdGDWYsuPt0K+VoS4VANicid4/eUUZvfG68gS448XyVc3xkAGNQVgN5iO6QSH5DLbghNfmyCxb4Yk9vEjS+OE3U66xmx/mm+7E4RoeBS7Ir6yew2VkDmuuZ9Cg4i37MnuXACJy/jacLXMCLEDa2IBae+A2pEYzDcn9jUURt5avc1w=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-sp.umprum.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-sp.umprum.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of Arts, Architecture, and Design in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Academy of Arts, Architecture, and Design in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.umprum.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.umprum.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivan</md:GivenName>
      <md:SurName>Čapek</md:SurName>
      <md:EmailAddress>mailto:ivan.capek@vsup.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukáš</md:GivenName>
      <md:SurName>Mázl</md:SurName>
      <md:EmailAddress>mailto:mazl@vsup.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius-vs.nkp.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Digital library Kramerius</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Kramerius</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital library Kramerius</mdui:Description>
          <mdui:Description xml:lang="cs">Digitální knihovna Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius-vs.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius-vs.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kramerius-vs.nkp.cz/assets/img/nk-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>shibbkram1.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibbkram1.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAKYDjYK9DPSSMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>shibbkram1.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibbkram1.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAPcv2ws+k9TNMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV
BAMTEXNoaWJia3JhbTEubmtwLmN6MB4XDTIwMDMxODEzMTIzMFoXDTMwMDMxNjEz
MTIzMFowHDEaMBgGA1UEAxMRc2hpYmJrcmFtMS5ua3AuY3owggGiMA0GCSqGSIb3
DQEBAQUAA4IBjwAwggGKAoIBgQDnZrf3Cy8YJX4DWIswPMhZYqQod02sFl9aZlIF
yTwyqakEFj/FGqb7faQs6llehJsXidkHRzk0LAyPWzysqnlCAUQmiwIt8rXALI/e
YazVXZgAnt2zGWTk4p2OsOV4GmDmS+BlOk7PzgB2nXt6Im5h1E92DiAtaYskaf1E
cu0lyHeTv73z1Q4d5LLZCLYAlhYUbUW7F6xyf2aPTaiQvIGNtSTRpW9hop6nriyU
2zE/GxBmilxHXVe7RAzXZ8IQh7foG1VcMmOos7Xxyjz8HPL5kCV6Pz0WLDIVP1Oz
ADYuzr0M9kIu/OkLJJq6DJoFri6xeLPJ57hLDAs5QsuaZ0Uj65XwbjjAcwRuMhx8
b2CrvzcXdlLxYBsT6mhWCZ3eiWcZW/8IQcCMMnnjQkgS+ndzm8MCXFmUzE2mkYOO
RGXr9r2+28L6IwWzdLJSHTwQ2MY1nRb56X1/rS9MXW7oHZDNIvk6yVwwtSbNX/JI
TXvYLGAGLt6dLsvPYHnAFCSxghMCAwEAAaM/MD0wHAYDVR0RBBUwE4IRc2hpYmJr
cmFtMS5ua3AuY3owHQYDVR0OBBYEFAwQs1RdAydfeR7o3dL0axXQxO2pMA0GCSqG
SIb3DQEBCwUAA4IBgQA6e/JoOTEsr2uLni7eE60F/YmxCwJO230ykvMig0IMbP+P
vL554KQ1PHWB7g928amMY6Z9GODmDPTeYjxqOV9Mrod8qrbpyDKzCxWA97Zkrsv4
V+Sce8jaKh9/DbC8NrOcKV8vd63A1yByxrMbX0LPGrMbulTJmKKf2EtSEBZrJPFv
VDhWY61N2JEBO7bCsjToqMiPSDVv8aMHdsHL29Zalx8i0hvNxcng/h/fUX2PAAmO
DUKWxD2kF4EUyGO1DEIe70unREZk/w8hTXNYdKOLVo/8H2gZ+ft51eAY/US/5t8I
qGmUl69ADcrfXHq1iqgfIu4xM0WQJGUoqYILttsVULI9dgC+kZGX1KjRVFjJuM5T
14xOg17KzM9bXhAB4UicY8Lr/IbHyukmh7esK8g5LjtOjlFNFbZsP004T52UNRwm
VZfXVmqVzooF2tGPzkdLwIflYwM6o8v5VV5vIg2uHTM0uKO9KlM/oiEeIXkTnTjA
PjaflEHB4LIJvc695t4=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Digital library Kramerius</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Kramerius</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Digital library Kramerius</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Digitální knihovna Kramerius</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUnscopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdenko</md:GivenName>
      <md:SurName>Vozár</md:SurName>
      <md:EmailAddress>mailto:Zdenko.Vozar@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius.cbvk.cz/auth/realms/Kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital Library of the Research Library of South Bohemia in České Budějovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library of the Research Library of South Bohemia in České Budějovice / system Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.cbvk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.cbvk.cz/about</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna JVK</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna JVK / systém Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.cbvk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.cbvk.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>27zAmPuXWvXWtAMvRw9m4QE8jZHvXpBu_uCDimN8X8c</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.cbvk.cz/auth/realms/Kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.cbvk.cz/auth/realms/Kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">System Kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="edupersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Research Library of South Bohemia in České Budějovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Jihočeská vědecká knihovna v Českých Budějovicích</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Research Library of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská vědecká knihovna v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cbvk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cbvk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nechvátal</md:SurName>
      <md:EmailAddress>mailto:admin@cbvk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius.svkhk.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">The Digital Library of The Research Library in Hradec Králové</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius / The Digital Library of The Research Library in Hradec Králové</mdui:Description>
          <mdui:Description xml:lang="cs">Kramerius / Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.svkhk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.svkhk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kramerius.svkhk.cz/podminky-zpristupneni/img/kramerius-dnnt-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius.svkhk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius.svkhk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.svkhk.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.svkhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.svkhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUY59tTA77PAStpQDEtvlko1FzwVgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.svkhk.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.svkhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.svkhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUY59tTA77PAStpQDEtvlko1FzwVgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.svkhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">The Digital Library of The Research Library in Hradec Králové</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Kramerius / The Digital Library of The Research Library in Hradec Králové</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Kramerius / Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Research Library in Hradec Králové</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">SVKHK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">SVKHK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.svkhk.cz/Uvodni-stranka.aspx?lang=en-US</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.svkhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Sklenář</md:SurName>
      <md:EmailAddress>mailto:petr.sklenar@svkhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius.techlib.cz/auth/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius 7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.techlib.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.techlib.cz/en/82764-protection-of-personal-data</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Kramerius 7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.techlib.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.techlib.cz/cs/82763-ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>jYcju1PoaFNO_CQS8fso7bhR8JxmlF7xnY4lV1rCgEM</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.techlib.cz/auth/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/auth/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Kramerius NTK</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technická knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://techlib.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://techlib.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kurš</md:SurName>
      <md:EmailAddress>mailto:jan.kurs@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Lysoněk</md:SurName>
      <md:EmailAddress>mailto:tomas.lysonek@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius.techlib.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Kramerius repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Kramerius repozitář</mdui:DisplayName>
          <mdui:Description xml:lang="en">Repozitář pro digitalizovaná díle NTK.</mdui:Description>
          <mdui:Description xml:lang="cs">Repository for digitalized documents.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.techlib.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.techlib.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius.techlib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius.techlib.cz/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.techlib.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.techlib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.techlib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAOKiAYgIzAThMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.techlib.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.techlib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.techlib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAOKiAYgIzAThMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV
BAMTFGtyYW1lcml1cy50ZWNobGliLmN6MB4XDTIwMDMyMzEyMjQyOVoXDTMwMDMy
MTEyMjQyOVowHzEdMBsGA1UEAxMUa3JhbWVyaXVzLnRlY2hsaWIuY3owggGiMA0G
CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCqkCVeS+8tNJj5ke826839+GJNlEqL
7q3snktuNUBtERrcejqUopix8kYCD3ukY19Ahg8eXF2YsYp34gii9rJr9fsd9qKg
7ejI/2lCVQHez9RfVjNo0ZV1vX9Fb1b/HdaRkmzCT3RjUD3kHSdALBVUpgH43HZp
jAvNiqo2Kzjue36qAhhnQET5J1DfwTCOwTRPn4IsVnJ8e0DQjjVD1bf5ft/Sd5ht
0CsYZagKEpLkFJUKtA7ZSQiswTXjo/s5fp0oGAvyRxQAWnjY9QTCjUNminr6fIm9
zGif77toRl9JzOTytHDxgt72mtYQf8mqBymCA/cwXOXsdyodlUFTPez04TmqEyx7
v4sVWxv9/lLmrvIG/h9OiJ5JsE4xbpulgE1HfAqsc2IDJN6OaplWzBAKPeUdZQXd
/+miEeH7p3OYsvtLPk86ZqWzhC6i2K297SU5Wt90jmBTyrkz+sOFvH8nnVZjyHag
9TzYsBSN2qZz+2ybOoNXycAQX0Ql6qxYeM8CAwEAAaNrMGkwSAYDVR0RBEEwP4IU
a3JhbWVyaXVzLnRlY2hsaWIuY3qGJ2h0dHBzOi8va3JhbWVyaXVzLnRlY2hsaWIu
Y3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUWWKnr+M1eCo4XKCch1hSVfDtf90wDQYJ
KoZIhvcNAQELBQADggGBADuk9v/UleE/Pqvl5V2/PTifMwddVcgv4ZaOdy//T0C0
/01P3EXNgGNq6rMwiTLTiERRFUf2mGTABgAoVNLGaAvdQjCPWGbE3b/8LeBtHhTx
kfmebWk3FxTKDzGaYnWTP0VWt1e2Aka35o0FanXpayTDrT6HtSn0gEuj6GlMo0+z
bWjDIDTAxmyC1Ufhk1fwABbSHJUKAj+hzSGDTrlSiEGC8XqUo2/wWUNxDhYq3UR9
wF7kkRyxaZP/XJPq3ZXzddE8f+W/kLq7aYi9ogv1pBd+chtfHXeKgA2xqG4Q9n9Z
Lg3lWfurQiGleCJSXwsmLLWtJHD9LYmJa4Mp5mOQxSJojQfm0X3QvMCS4PQLJsvC
ylO6EnLOfg860UD6tohWgnxbe492/AkTctVffVOr7TONuahz4J8uxhrdwEpaYW7F
41B83ivsXco3vc/QC1uFBBbMWlvqSX0eVVZxE4xwjTkZVFpDkb5t6WnByqHVD85J
CXdDvlEyHSVTW2YlnVkWsQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.techlib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Kramerius repository</md:ServiceName>
        <md:ServiceName xml:lang="cs">Kramerius repozitář</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická kaihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National Library of Technology</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní technická knihovna</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius.uzei.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Digital Library - Library of Antonín Švehla</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Knihovny Antonína Švehly</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library - thousands of titles from our library collection online.</mdui:Description>
          <mdui:Description xml:lang="cs">Digitální knihovna - tisíce titulů z našeho fondu online.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kas.uzei.cz/themes/ouroboros/images/svg_icons/kas.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius.uzei.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.uzei.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.uzei.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.uzei.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUEl8stPuVB1/Obdaf7dy7eL0sKwIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.uzei.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Digital Library - Library of Antonín Švehla</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Knihovny Antonína švehly</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Digital Library - thousands of titles from our library collection online.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Digitální knihovna - tisíce titulů z našeho fondu online.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IAEI, Library of Antonín Švehla</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">UZEI, Knihovna Antonína Švehly</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IAEI, Library of Antonín Švehla</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">UZEI, Knihovna Antonína Švehly</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.iaei.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://uzei.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eliáš</md:GivenName>
      <md:SurName>Škrdlant</md:SurName>
      <md:EmailAddress>mailto:skrdlant.elias@uzei.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ks.techlib.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Goodatit</DisplayName>
          <Description xml:lang="en">Goodatit</Description>
          <InformationURL xml:lang="en">https://ks.techlib.cz/help</InformationURL>
          <DisplayName xml:lang="cs">Služby NTK</DisplayName>
          <Description xml:lang="cs">Služby NTK</Description>
          <InformationURL xml:lang="cs">https://ks.techlib.cz/help</InformationURL>
        </UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUdTuWBuaH73/bQa8u6Az7Vwy6apswDQYJKoZIhvcNAQEL
BQAwITEfMB0GA1UEAxMWa2F0YWxvZ3NsdXplYi5udGtjei5jejAeFw0yMjA4MjMx
NDU2MzNaFw0zMjA4MjAxNDU2MzNaMCExHzAdBgNVBAMTFmthdGFsb2dzbHV6ZWIu
bnRrY3ouY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQC/g60pmS7w
Xtd6vJ6TakweNYpY7TjPyo7AGG4p02nyKmopujMNYhNJ68udCrhYiT2VcCALSIHU
YFUxwUFzPACxlnVqJ71Pr8W8KzSztpCqKG1/dCnoL+GAJs9Y7OTIFRJLIOamPRUt
0OgCfCper1Au9NtjagKayVvoPm0F4oNbXvLnud54X/l6eKrZ5Dvqev+8g+CvKWIE
nVrkM+53JfXJ9oZeWGEw7nDxTR+I0Z55WzlAqbPD5hhfr7LJgf1z/unJiaqKfLzH
SAL6bI4yFmdjSeFaQqQh59ZpkOGj4BvKqz+GjuJkS61A3+KKqEzI8+1QzEAjQELv
3AppRMu4hg0I+3ebJHIvOdObI9JiRZu51RPZjsjZYh4+dlQwqZKzrDMfj0s1YONn
31D7aalOOoWNP5BrR4HAjyUVXUrgWwGfbCDUDhGJ2bV7G67mH49O3j7GcmXOUkRc
ogkmfhuAkhYI7ntBh6ZQwK5OqF+C/V63P9kAnZrSl3ZsR3faeyGK0GUCAwEAAaNE
MEIwIQYDVR0RBBowGIIWa2F0YWxvZ3NsdXplYi5udGtjei5jejAdBgNVHQ4EFgQU
eunB6SK4241kBOBxScyytLCv528wDQYJKoZIhvcNAQELBQADggGBAB6tEf0wZ7pL
rZM6MAo3lu8KJuhl/juuHXT4riglLgOndU4TCJNsbfKlPDwFRWRE+aOr7Zjc8A0q
DxY8IwxbvNjOfG8uwHXifsVD8qjPFMBVdZSfCfOAcnGi26wXfTvezeC7PDNI8jN+
IUT6Il1NmgbilMbbR4jL1HdrWDmRzVPI/pI61sx8//vMROuRNYR1f94bhSnF3Vv2
0OniDuT1bQDcFq9GwaqKbo8Qc1NPDDti6GSlndYuSh8ZDn5l0MJ4G1sDUcfbT6uN
wW02CAHMCh5mDAS31xGF+qUmkaKK42zX4k67KQiulFuYfqnnzmglhUjzJNd5BsmV
no9F2EvlRBrzc7m/DtB9puFAVcoj1Smxduoh+bZpwN4fM/m+pZLDld2RPtuCpAzw
rEFZil9YLdNGkpBlgk3VkP9BcObeqyEp2TC42PkRNIP1ce+TdyVhO+j9tthNZMyk
hzgqCb5dpGbtdfUhvxnnwqIPN2YxFB+9Q4eKaMgpBfbHJ9MtcJ9+Xw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ks.techlib.cz/shibboleth" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Katalog service</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Goodatit</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Goodatit</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://ks.techlib.cz/help/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://ks.techlib.cz/help/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ales</md:GivenName>
      <md:SurName>Hrtus</md:SurName>
      <md:EmailAddress>mailto:ales.hrtus@goodatit.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kulturaboskovice.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kulturaboskovice.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Boskovice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Boskovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Boskovice</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Boskovice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kulturaboskovice.cz/knihovna</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kulturaboskovice.cz/knihovna</mdui:InformationURL>
          <mdui:Logo height="40" width="174">https://mkboskovice.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEBTCCAu2gAwIBAgIUc3sIUjRN8czRsQj4P4Iyw4KpmYcwDQYJKoZIhvcNAQELBQAwgZExCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEgMB4GA1UEAwwXbWtib3Nrb3ZpY2Uua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MB4XDTIxMDMyNTEyMTk0OVoXDTMxMDMyNjEyMTk0OVowgZExCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEgMB4GA1UEAwwXbWtib3Nrb3ZpY2Uua25paG92bnkuY3oxHTAbBgkqhkiG9w0BCQEWDmNway1pZHBAbXprLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsVvHrE/FMpOIIdrUofxuVWXZCczhGMiXYpYuCSu/yMvna9U7Hc/3y64iahGMeqv/8mkFuSMZN4GEn+PGBGFzmN4APUvWme1YOfZY/bD3qnXfgSDbN30bKTbEkAdfiRla2iiqQ/aSjjoRZRElaCSf+dmioHWfp9JEVhAh2zcJvO8+7iswlQqqz0yC4UkmF5E0yU+BadCE676mAQhXTJZO62OqVO0hSD3Sgh2dwSkc4FahtqjxZrfirxKa3q92cR0BJXnoVUApYjbdEfdrpOGuTUYkTRJ5xu+ZhlKkCZaWRJIoOJMreRe2n8aaG5jvL5OMYcTEbMootvIKwTsV9enOyQIDAQABo1MwUTAdBgNVHQ4EFgQU7kJiNJMqk73V1tYfJ7Aq6u5hDegwHwYDVR0jBBgwFoAU7kJiNJMqk73V1tYfJ7Aq6u5hDegwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAqRbALR/jwKpnFGDHbtX8ZwZMlpo9h9I3jyt+l2KBus01Df0lWgO8md2Izi5nt9zfsG6uYdvukzZ7YPVbECdb6/OEqUdX4N8KPEXFz2pn7USSIa+TT3tYOqE8os+eVgACuyyUirUW+niK9nJ9zRWLE5SbCrZMao4i/BfhoELlbx9uPvTpkPNeRGUEJ7qfCE9yEIZDSyFFgCyRKf7JRIMfo5Nn5ApLFrzmD+SKHatCJmgA1IjyQ8OUyCZ6H6vuGh9pj5BJItoSxgjUUimo9rm+/y6U98n2DE7A6pub6vIc2jJrKr8c+bIIW7jax9MU9CjARYQo7tzsO1Rp8sv66O7WPg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkboskovice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkboskovice.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkboskovice.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkboskovice.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Boskovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Boskovice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Boskovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Boskovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kulturaboskovice.cz/knihovna</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kulturaboskovice.cz/knihovna</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kulturakurim.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kulturakurim.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Kuřim</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Kuřim</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Kuřim</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Kuřim</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kulturakurim.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kulturakurim.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="94">https://mkkurim.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID/TCCAuWgAwIBAgIUIhWehDiONHhZatKNC9C9M4Ydrs4wDQYJKoZIhvcNAQELBQAwgY0xCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEZMBcGA1UECgwQTW9yYXZpYW4gTGlicmFyeTEcMBoGA1UEAwwTbWtrdXJpbS5rbmlob3ZueS5jejEdMBsGCSqGSIb3DQEJARYOY3BrLWlkcEBtemsuY3owHhcNMjUwNDA0MDgwOTI2WhcNMzUwNDA1MDgwOTI2WjCBjTELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMRkwFwYDVQQKDBBNb3JhdmlhbiBMaWJyYXJ5MRwwGgYDVQQDDBNta2t1cmltLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJROVoZZ+hE5Q3bieVNuVSCMZiTWUSIx6r7TPezOoTVVi4mu61naya4/2U946tPp/NSxUZS0O12Ju3kq9xOjOB4rQG4/IjwUaJD/wbk9ngKjkSNpME5iIjVrmwdM8BazWVV/3CpSHyDXwipjJrJvZkG2lyzG9jEUIbR/j60J2UOR0WIConz6SAkry2Y76HXRESHN7pRTReqrHXkgK13snok5UTnil+KIscBbKIdR8inVqIGyGzmy9X5mFyVzqEPcZptAZpoAwDFEtthjx58Gn0zv37Qd7tNfhKh55DneTHQJwjNV7wNaOX7cleY7zH9I8Yynnp720IJFCp+hdDL1O2MCAwEAAaNTMFEwHQYDVR0OBBYEFFnjwaoHPZ/pE0w2lruEXrMJZ35nMB8GA1UdIwQYMBaAFFnjwaoHPZ/pE0w2lruEXrMJZ35nMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBADSbrywEUjeUcyqvhAsKLk7dHrYdJZk0WGnZtoz/zPXtf0y5ubIyFRBSLNpPlh0InriTubkcG+P4vwVYUpEiTXslxgGLmUswvM3O+8XqMuJ3OrLmDcTA1EkuLW1OdrHGZWJlHhZnyCN7h9zQhvIt7OHkaSYzNxm7N8BtJPut+2eJ7W0VnjHByQ//HryGOILZVGeUQfnVZ9fXngxCiv68kE3YtqmRFER6wEy477UjJpsXchjDc39X/GvliT11GVIe0ZZkX1piFssBSZYu3OzWqsDKgd7VcdQMeEzEVqdxqeTxqZeZ86uNVzuZMRjqPhFAqDt/mXgiamZXzoYUi0mitoY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkurim.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkurim.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkurim.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkurim.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Kuřim</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Kuřim</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Kuřim</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Kuřim</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kulturakurim.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kulturakurim.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kurzy.lf1.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">E-learning 1.LF UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">E-learning 1.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">LMS Moodle</mdui:Description>
          <mdui:Description xml:lang="cs">LMS Moodle</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kurzy.lf1.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kurzy.lf1.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kurzy.lf1.cuni.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://kurzy.lf1.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kurzy.lf1.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kurzy.lf1.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUCAi7CUZz2J+uVk2vwwYCsJzuO7YwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">E-learning 1.LF UK</md:ServiceName>
        <md:ServiceName xml:lang="cs">E-learning 1.LF UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">LMS Moodle</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">LMS Moodle</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University in Prague, 1st faculty of medicine</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze, 1. lékařská fakulta</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, 1st faculty of medicine</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, 1. lékařská fakulta</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://en.lf1.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lf1.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Feber</md:SurName>
      <md:EmailAddress>mailto:martin.feber@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kvkli.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">kvkli.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Research Library in Liberec</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Krajská vědecká knihovna v Liberci</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Regional Research Library in Liberec</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Krajské vědecké knihovny v Liberci</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kvkli.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kvkli.cz/cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="181">https://kvkl.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kvkl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kvkl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kvkl.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kvkl.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Research Library in Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská vědecká knihovna v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Research Library in Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská vědecká knihovna v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kvkli.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kvkli.cz/cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kw.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">2.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Servisni aplikace.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.lf2.cuni.cz</mdui:InformationURL>
          <mdui:DisplayName xml:lang="en">2.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Servisni aplikace.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.lf2.cuni.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cam142</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cam142</ds:X509SubjectName>
            <ds:X509Certificate>MIID2TCCAkGgAwIBAgIJAIImQ2X3/uKRMA0GCSqGSIb3DQEBCwUAMBExDzANBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Webmaster</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kz-idp.kzcr.eu/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">kzcr.eu</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Krajska zdravotni, a.s.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Krajská zdravotní, a.s.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Krajska zdravotni's Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Krajská zdravotní.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.kzcr.eu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.kzcr.eu/</mdui:InformationURL>
          <mdui:Logo height="90" width="340">https://www.kzcr.eu/Data/Files/340x92xxcp/2888f150-c3a3-4cf6-83b4-d77d7e5fce40-logo-kz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUH04oBR3fiJg+t+NmDUQ7w0cOx9owDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAITPrB/dbvDrcKJQKc3B68qBxnMYMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUNrIcRtGLjb6zSJnCiCcyI43UShgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kz-idp.kzcr.eu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kz-idp.kzcr.eu/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kz-idp.kzcr.eu/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kz-idp.kzcr.eu/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Krajska zdravotni, a.s.</OrganizationName>
      <OrganizationName xml:lang="cs">Krajská zdravotní, a.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Krajska zdravotni</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Krajská zdravotní</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.kzcr.eu/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.kzcr.eu/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jiří</GivenName>
      <SurName>Novák</SurName>
      <EmailAddress>mailto:jiri.novak2@kzcr.eu</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ldh.idu.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Institut umění – Divadelní ústav</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Arts and Theatre Institute</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Institut umění – Divadelní ústav</mdui:Description>
          <mdui:Description xml:lang="en">Arts and Theatre Institute</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ldh.idu.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ldh.idu.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="64">https://ldh.idu.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">ldh.idu.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ldh.idu.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Institut umění – Divadelní ústav</OrganizationName>
      <OrganizationName xml:lang="en">Arts and Theatre Institute</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Institut umění – Divadelní ústav</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Arts and Theatre Institute</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.idu.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.idu.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lef.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">lef.lf2.cuni.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">lef.lf2.cuni.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">lef.lf2.cuni.cz</mdui:Description>
          <mdui:Description xml:lang="cs">lef.lf2.cuni.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lef.lf2.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lef.lf2.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>bo142</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=bo142</ds:X509SubjectName>
            <ds:X509Certificate>MIID1jCCAj6gAwIBAgIJAKUXXtmehf/AMA0GCSqGSIb3DQEBCwUAMBAxDjAMBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>bo142</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=bo142</ds:X509SubjectName>
            <ds:X509Certificate>MIID1jCCAj6gAwIBAgIJAPGip2xQP6oTMA0GCSqGSIb3DQEBCwUAMBAxDjAMBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lef150.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">2nd Faculty of Medicine</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">2.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">2nd Faculty of Medicine</mdui:Description>
          <mdui:Description xml:lang="cs">2.LF UK</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lef150.lf2.cuni.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lef150.lf2.cuni.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.lf2.cuni.cz/themes/custom/pelican/logo-znak.svg</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>lef150.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lef150.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUFYjQZavsDYztpCWyMMJT28BrsWIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>lef150.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lef150.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUHzJ1TD9rJ1TG7L1xJts/8Ti0UpswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lef150.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lef150.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:postmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://leg.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Election</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby</mdui:DisplayName>
          <mdui:Description xml:lang="en">Election system.</mdui:Description>
          <mdui:Description xml:lang="cs">Volební systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://leg.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://leg.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://volby.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>volby.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=volby.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd8FOgOUKbVMzxY6KbKfRD44Vim8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://leg.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Election</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Election system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volební systém.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lf1.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">lf1.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">lf1.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna 1. lékařské fakulty Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library of First Faculty of Medicine, Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://lf1.futurebooks.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lf1.futurebooks.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://lf1.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lf1.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lf1.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lf1.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://lf1.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>lf1.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lf1.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUK+S5MDp/m0L29fMJjs9QfkBH9Y8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lf1.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna 1. lékařské fakulty Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library of First Faculty of Medicine, Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web pages</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Webové stránky</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web pages</mdui:Description>
          <mdui:Description xml:lang="cs">Webové stránky</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUdM2NW+y4FVIDluSZKD8XpoJgzvUwDQYJKoZIhvcNAQEL
BQAwFjEUMBIGA1UEAxMLbGZwLmN1bmkuY3owHhcNMjQwMzA1MTIxMTUyWhcNMzQw
MzAzMTIxMTUyWjAWMRQwEgYDVQQDEwtsZnAuY3VuaS5jejCCAaIwDQYJKoZIhvcN
AQEBBQADggGPADCCAYoCggGBAOd7wFOe5HXCyc2xigPJC1p8BHVZ58mC1422cNwy
aYRfjkuKn+xWAW3QtZMPZmh/QZxzuW3JZkUFDYNzvVs+050uklPT8BomDB5Y+2tF
4hW9jlyQwZgyHlWgauYdDD5najaor08JjxHwxAhikdeRddr5PMnLH0DU4kRrLskC
yhbpIOBipMW55ApgSHvG+mnZmULIl13wNomkv0DJWjCm4GOZgzOu0Gwg7S9NesQL
EiWm5pc03VFYfeObFCUwrOOeqRd1jOtVBNDq1rBKR6OsOyJ7vEzc2nNwRCvvFp7+
TwX8YUYBWWHyTVu1nrZ5Ipe++Kw6t/Wos9vE248zEatfpIIyuL6SR4FLx+37Umm+
qzCotNUpX1sfhzzEQMpg/k4DGuMJBpp7w4BG1o7Rzz1ACyp8VZtFKzpRkx40+TZk
IFQQdwcMNj8lEpX63Vflih2WQDkfKoykJHnkNno0wW0iVhc/rthLnFCrdS6Hu/rO
OUCRq69trWn2gOnydcmhzuJzhwIDAQABo1kwVzA2BgNVHREELzAtggtsZnAuY3Vu
aS5jeoYeaHR0cHM6Ly9sZnAuY3VuaS5jei9zaGliYm9sZXRoMB0GA1UdDgQWBBTP
KRHDlTcwqpHOIEah1lJiE8KJGzANBgkqhkiG9w0BAQsFAAOCAYEAzx3+9u/J5Swy
hOBWGdFP3G0E4nrwGexsrHEK9DTInbzQM6bHXwyiWCCm5VbrP/bf26Pjpj4FwIb/
LNxB0fYMnMIQINX/h93Qex0gpPHpVw7j3Yv33RahBIrg2R0l7NbmhFBz7CVxtzMA
9g3k1ZsCtIwXHAd0uKzyT0y2xPs/CO0sXrExFZ5Qjw4rkR8TzfZLcmCGhqFOFXcA
WGMwGGqOzg/JXKhUMYXsf8K7gQc23JIXrIB1yvaTeESM26ALCF0ZblJFRwxGFyKz
ejf68zu20yR2BmeoqC6dcVA/cNXH0657HZXrYys0IVVLJ57MkqN1uqr5s/Tb10qh
4SIjEzizFOGRYg8mn/w+F0E6rBQr14PUoawXYIhdulEv1DbXXQDHstknFs5xUjWu
j484kBf05IsHAxX4iGpnZnntLkQgJv/EXu327aUmfQVYXB1anXEMi9Ti7RDUeGBs
W2l328Ae73/5+dOxnOh14YXr1srrq7b8pqr3JRLB9/nt8V8QETOX</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lpf.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://library.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Central Library of Charles University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Central Library of Charles University</mdui:Description>
          <mdui:Description xml:lang="cs">Ústřední knihovna Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://library.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="102" width="543">https://knihovna.cuni.cz/wp-content/uploads/logo-ukuk.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://library.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://library.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://library.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://library.cuni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>library.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=library.cuni.cz,O=Charles University,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDfTCCAmWgAwIBAgIJAOx5Pp3ipecZMA0GCSqGSIb3DQEBCwUAMFUxCzAJBgNV
BAYTAkNaMQ8wDQYDVQQHDAZQcmFndWUxGzAZBgNVBAoMEkNoYXJsZXMgVW5pdmVy
c2l0eTEYMBYGA1UEAwwPbGlicmFyeS5jdW5pLmN6MB4XDTE4MDgzMDA4MTU1MloX
DTI4MDgyNzA4MTU1MlowVTELMAkGA1UEBhMCQ1oxDzANBgNVBAcMBlByYWd1ZTEb
MBkGA1UECgwSQ2hhcmxlcyBVbml2ZXJzaXR5MRgwFgYDVQQDDA9saWJyYXJ5LmN1
bmkuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC+sGW79J1p5Z/+
pOTrl58+5iGBXR8MgZo3vCki+nmlKlgFE4uead0cY9stq6za8qsgJDHrY9XLr24z
g47oMqdVYpwvkLtmKltHGP7kMl4HE3spr6Mz9jpsZIUF2zzN28qAEIDeA4LKMfk5
eC1JPux60Lq8tYlg+rwprc57HVXxJ+sHspy5Idq3wkxg2qfCNW+VW81Z9lUDmwXL
3a3NPRjGZpfI5ume41T6UshMqYJW4vVIKXPMtTvMY9D1LfuG2wVS4Hg2EqeKJ177
Nne2FNSnlfO93ho7Ny3pYoKHB5BfRQVqc/PEPAp5kqwJf3ZXq3soscXByXihUEXp
YPh2RPU/AgMBAAGjUDBOMB0GA1UdDgQWBBTFoSEkHazywYmh5pOUozDxAG0t4TAf
BgNVHSMEGDAWgBTFoSEkHazywYmh5pOUozDxAG0t4TAMBgNVHRMEBTADAQH/MA0G
CSqGSIb3DQEBCwUAA4IBAQA+DQXFFCeopAZkAq2fsCl90+pzlTXIVJjSucVcfNys
3mwC+tguZk8GKKVJSJXW9BN94xZJ5AG78er1SzFH6ufxTL4sS0QSlGRQjuf4Tn+Z
9In2dV/naCVHbyV0TmyDwfZtiAzoqxrXialtu+Y0r5ilRQyfTWjuyhX0lPsNJLge
F79qpoFs0KRL9T71TUgdc1fFIQJ5ZBwoiVWaM3M1VS3w74xc3qNcXl/sop2cjm34
f3CEvkGIfRuQGA9gi6voi3jv/lF4itQ+NVf/LUiEQDYSn6Y+Mm08yXvrrPWymCH/
yBAG1uFQyfDe/cR8r06+KPrGgDQa9I58B3lGcJn3HJqz</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://library.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://library.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://library.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://library.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://library.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://library.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://library.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://library.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://library.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://library.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://library.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Central Library of Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Central Library of Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://library.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://lms3-test.vsb.cz/auth/saml2/sp/metadata.php">
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava - lms3-test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">VSB – Technical University of Ostrava - lms3-test</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Poskytovatel služby pro VŠB-TUO - lms3-test</mdui:Description>
          <mdui:Description xml:lang="en">VSB-TUO Service Provider - lms3-test</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://lms3-test.vsb.cz/?lang=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://lms3-test.vsb.cz/?lang=en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+DCCAuCgAwIBAgIBADANBgkqhkiG9w0BAQsFADCBlDEPMA0GA1UEAwwGbW9vZGxlMQswCQYDVQQGEwJBVTEUMBIGA1UEBwwLbW9vZGxldmlsbGUxHjAcBgkqhkiG9w0BCQEWD2xtczN0ZXN0QHZzYi5jejEcMBoGA1UECgwTTE1TIE1vb2RsZSBWxaBCLVRVTzEPMA0GA1UECAwGbW9vZGxlMQ8wDQYDVQQLDAZtb29kbGUwHhcNMjYwMTE2MTEzMDI3WhcNMzYwMTE0MTEzMDI3WjCBlDEPMA0GA1UEAwwGbW9vZGxlMQswCQYDVQQGEwJBVTEUMBIGA1UEBwwLbW9vZGxldmlsbGUxHjAcBgkqhkiG9w0BCQEWD2xtczN0ZXN0QHZzYi5jejEcMBoGA1UECgwTTE1TIE1vb2RsZSBWxaBCLVRVTzEPMA0GA1UECAwGbW9vZGxlMQ8wDQYDVQQLDAZtb29kbGUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCfVXt2iwGGaMqJ4tGiIcKE9YEp0WBKc0aDZL6uyOy5RcIOisz/qqUV5MbS557ZEzcpt9XEBKMNmJ4L+l/fFAQHrT6gml8OetOEiA5xMiiWdvEE5u3sqc/lLKzJRYQEwJ0qFr2u45P++/9cqd+6hZsxJjUn65Ibs0pPSQS06emo1qaEEDBxCormB9LdX4HMErT6n1n0/TpV5COxDfJHS9kGOk8WzH8CBPB2yFGJ4QHNMjEuigTHc6yyVw07b0p8WjP0zD2HPjt8eax46vU131dKXrzH6VrUjUbzaJUkTnQZ46nAV9eczrmG/zDAJxjOjjJsr+evaMKp9FNi8UzmEtiXAgMBAAGjUzBRMB0GA1UdDgQWBBStUBIq8xZYcoYRWktEjWabLtPj2jAfBgNVHSMEGDAWgBStUBIq8xZYcoYRWktEjWabLtPj2jAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAcSICvBAoZ4/5Wv6iGkIMscbWOTmWDY6euzlPi/y2z7UOap7vzL+aSdbFtE4ddkqzoTHRKmnnKEDvjr1SB7WMa7bSmOmV7jLHWHQNLhghcJL/AQ3pTUyLXjwZe/XyZDGhFtsJM3pifzxxORQPKVPQI8cF9mAPbxOn9QcMRxYbuOW98bxsmC6c7NB6hUVKuiMLaAahSd33585XPlIb8fvc6HbVlq1AiN7/OhP7mkGzt6UbZ/GUDsj2l2A+VXhfwZc2ytnVFY47OeetV8wmmJDAu0mjaWQpfE0S2qnlA1nOgYQ+B9VALioGBwd/EIGRCKCceDgRABDHWeSD22pa6ptAD</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lms3-test.vsb.cz/auth/saml2/sp/saml2-logout.php/lms3-test.vsb.cz"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lms3-test.vsb.cz/auth/saml2/sp/saml2-acs.php/lms3-test.vsb.cz" index="0"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">VŠB – Technická univerzita Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="en">VSB – Technical University of Ostrava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">VSB – Technical University of Ostrava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vsb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vsb.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Adrian</md:GivenName>
      <md:SurName>Kapias</md:SurName>
      <md:EmailAddress>mailto:adrian.kapias@vsb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login-eduid.cis.vscht.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Login portal, CIS UCT Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:DisplayName>
          <mdui:Description xml:lang="en">Login portal, CIS UCT Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://login.cis.vscht.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://login.cis.vscht.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://tvp.vscht.cz/images/0!0/uzel/18546/logoVSCHT_zakl.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://login-eduid.cis.vscht.cz/shibboleth</ds:KeyName>
          <ds:KeyName>login-eduid.cis.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=login-eduid.cis.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIERzCCAq+gAwIBAgIUfwbwMxPScVwy3x0zk2YDx2ULLXMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Login portal, CIS UCT Prague</md:ServiceName>
        <md:ServiceName xml:lang="cs">Login portál, CIS VŠCHT Praha</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Login portal, CIS UCT Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Login portál, CIS VŠCHT Praha</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Horníček</md:SurName>
      <md:EmailAddress>mailto:jan.hornicek@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.aai.elter-ri.eu/proxy">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">eLTER AAI Login</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eLTER AAI Login</mdui:DisplayName>
          <mdui:Description xml:lang="en">eLTER AAI Login is the authentication gateway to the European research infrastructure eLTER RI</mdui:Description>
          <mdui:Description xml:lang="cs">eLTER AAI Login je autentizační brána evropské výzkumné infrastruktury eLTER RI</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://elter-ri.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://elter-ri.eu</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">elter</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">elter</mdui:Keywords>
          <mdui:Logo height="120" width="50">https://login.aai.elter-ri.eu/proxy/module.php/perun/res/img/elter_logo_120.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEazCCAtOgAwIBAgIUaKIDgZy0i2DvvP1bzMVpHL0MabgwDQYJKoZIhvcNAQELBQAwRTELMAkGA1UEBhMCQ1oxEzARBgNVBAgMClNvbWUtU3RhdGUxITAfBgNVBAoMGEludGVybmV0IFdpZGdpdHMgUHR5IEx0ZDAeFw0yNDAxMjQxMTQ1MDFaFw0zNDAxMjMxMTQ1MDFaMEUxCzAJBgNVBAYTAkNaMRMwEQYDVQQIDApTb21lLVN0YXRlMSEwHwYDVQQKDBhJbnRlcm5ldCBXaWRnaXRzIFB0eSBMdGQwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCO4orsaMWDCE1d+NzPwsUeuZFyzOixUZFtWqTWM3ZyUXNCxhbOB9zSvCyCK3AdvKlOIBDXVGSNAxdHPCs9zDLkYm2pMhpB+fX8BgxBPGkdsrsgXtp9j1pZi2aqHKEz+RSAAzjLcD0yutI/UHiQh2GxQlQdvbGfY0uZjmIqydBSGb26YQtx8Vvp9StnsL68hIpCUTElQSAX2BLeBKYFPwcuHyjYdTPsaPbEVAHyGFLVztVd8XdY68b6ulIfUyitkuqnWUFBYIgAl2a5Mer0TGw0h4zG1ekcnW8cuNpxEtxjv+Y+rUtrlhVB5HG2C4VBQHXmlWFviMz2CTnnuRZi1ub6cLOQRtQ8i3bw1HHo61ow9W73U6yn2jkc95Tk3ObU10ZxeBrtEaiUSSh4nJLyeTymxmfV5WDcnmDddqLoRWPYk3AUTbbT2fW0SuelQXR5dH6sh0OF1Zh/H6XHzqDHSgzkk/Srp/Y5KLhViou4uC7rjyy96Q3KuH9pfsh8QW6WYjECAwEAAaNTMFEwHQYDVR0OBBYEFKhm6lXDhUc3d4or+s92+o5nIIwDMB8GA1UdIwQYMBaAFKhm6lXDhUc3d4or+s92+o5nIIwDMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggGBAB9bOBlxAncpjsHxxnZ43/iaU5dXEhIRWkTrR+purCUD+dgA10GoWWoo3H7ribzMicLxTmS420qCEFxRG42X06QEh2VojzcGeUBeqj47Lc0x+0RRQ/fRNj0oiW1CkbTz5XQtxoh8UJUXZRZf40YzXU1aKfbRIZbXiWo09LTZ/pmBFMCxlwAMmfAuBKdzHWSzdDGPdj0g0Tdp0ocZpZLBAMU9jlPSSun3o/qtlDb3O/fPqsWKk8o0QtvTbbofr10Qfw8vajrK/WV/hoVHuibJjsX5a8sH92Kp+sP4D+Fie5galdRygilteGiqRBnNqRE/iBSzlh2s6fDtBMmvfRUBvAE0zzcm3mh2Jwrv1i+HBhqCPFrGqOeS/isTNZIY1zDNJrP0avLBLbZFFPSDRmQ0pL8p9X8iH7lK4zioXGWhMB9Y/XdoibgsZ5CUgaDk9usTo5OQepPowmR+Z+VcT3vJmFcKCPfe8nGlwlTb5GInLggxE8m8JNnouT6gd/lyPv1D8A==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.aai.elter-ri.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.elter-ri.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.elter-ri.eu/cas/login?client_name=fed" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">eLTER AAI Login</md:ServiceName>
        <md:ServiceName xml:lang="cs">eLTER AAI Login</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Research Infrastructure eLTER RI</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropská výzkumná infrastruktura eLTER RI</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Research Infrastructure eLTER RI</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropská výzkumná infrastruktura eLTER RI</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://elter-ri.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://elter-ri.eu</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.ceitec.cz/proxy/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CEITEC, Central European Institute of Technology</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CEITEC, Středoevropský technologický institut</mdui:DisplayName>
          <mdui:Description xml:lang="en">This service is the common gateway to the services of CEITEC, scientific centre in the fields of life sciences, advanced materials and technologies.</mdui:Description>
          <mdui:Description xml:lang="cs">Tato služba je přístupovým bodem ke službám technologického institutu CEITEC</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ceitec.eu/about-ceitec/t1107</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ceitec.cz/about-ceitec/t1107</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://login.ceitec.cz/CEITECPrivacypolicy.pdf</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://login.ceitec.cz/CEITECPrivacypolicy.pdf</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">ceitec proxy science technology</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">ceitec proxy science technology</mdui:Keywords>
          <mdui:Logo height="43" width="64">https://login.ceitec.cz/proxy/module.php/ceitec/res/img/logo_64.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CEITEC, Central European Institute of Technology</md:ServiceName>
        <md:ServiceName xml:lang="cs">CEITEC, Středoevropský technologický institut</md:ServiceName>
        <md:ServiceDescription xml:lang="en">This service is the common gateway to the services of CEITEC, scientific centre in the fields of life sciences, advanced materials and technologies.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Tato služba je přístupovým bodem ke službám technologického institutu CEITEC</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CEITEC</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CEITEC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CEITEC, Central European Institute of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CEITEC, Středoevropský technologický institut</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ceitec.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ceitec.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>CEITEC</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>CEITEC</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Institute of Computer Science</md:GivenName>
      <md:SurName>Masaryk University</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.ceskadigitalniknihovna.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech Digital Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service provider for Czech Digital Library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ceskadigitalniknihovna.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://ceskadigitalniknihovna.cz/assets/shared/terms/cdk/gdpr.en.html</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Česká digitální knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Service provider pro Českou digitální knihovnu</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://ceskadigitalniknihovna.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://ceskadigitalniknihovna.cz/assets/shared/terms/cdk/gdpr.cs.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>L4DI5kBr5jzRO8KgbFx3FsN7xrOmT2mOiFF9ZbEsRiE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ceskadigitalniknihovna.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ceskadigitalniknihovna.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Česká digitální knihovna</md:ServiceName>
        <md:ServiceName xml:lang="en">Czech Digital Library</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:petr.zabicka@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:remd="http://refeds.org/metadata" entityID="https://login.einfra.cesnet.cz/proxy/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET e-Infrastructure</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">e-Infrastruktura CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</mdui:Description>
          <mdui:Description xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/e-infrastruktura-3/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/e-infrastruktura-3/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Logo height="146" width="257">https://login.cesnet.cz/proxy/module.php/cesnet/res/img/cesnet_rgb_small.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.einfra.cesnet.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.einfra.cesnet.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.einfra.cesnet.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET e-Infrastructure</md:ServiceName>
        <md:ServiceName xml:lang="cs">e-Infrastruktura CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduroamUID" Name="http://eduroam.cz/attributes/eduroamUID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>CESNET-CERTS</md:GivenName>
      <md:EmailAddress>mailto:certs@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.envri.perun-aai.org/proxy">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">ENVRI Science Login</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ENVRI Science Login</mdui:DisplayName>
          <mdui:Description xml:lang="en">ENVRI Science Login is an intended gateway to the European Environmental Sciences research infrastructures</mdui:Description>
          <mdui:Description xml:lang="cs">ENVRI Science Login je připravovaná přístupová autentizační brána k evropským výzkumným infrastrukturám v oblasti environmentálního výzkumu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://envri.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://envri.eu</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">envri elter</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">envri elter</mdui:Keywords>
          <mdui:Logo height="120" width="72">https://login.envri.perun-aai.org/proxy/module.php/perun/res/img/envri_logo_120.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEazCCAtOgAwIBAgIUaKIDgZy0i2DvvP1bzMVpHL0MabgwDQYJKoZIhvcNAQELBQAwRTELMAkGA1UEBhMCQ1oxEzARBgNVBAgMClNvbWUtU3RhdGUxITAfBgNVBAoMGEludGVybmV0IFdpZGdpdHMgUHR5IEx0ZDAeFw0yNDAxMjQxMTQ1MDFaFw0zNDAxMjMxMTQ1MDFaMEUxCzAJBgNVBAYTAkNaMRMwEQYDVQQIDApTb21lLVN0YXRlMSEwHwYDVQQKDBhJbnRlcm5ldCBXaWRnaXRzIFB0eSBMdGQwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCO4orsaMWDCE1d+NzPwsUeuZFyzOixUZFtWqTWM3ZyUXNCxhbOB9zSvCyCK3AdvKlOIBDXVGSNAxdHPCs9zDLkYm2pMhpB+fX8BgxBPGkdsrsgXtp9j1pZi2aqHKEz+RSAAzjLcD0yutI/UHiQh2GxQlQdvbGfY0uZjmIqydBSGb26YQtx8Vvp9StnsL68hIpCUTElQSAX2BLeBKYFPwcuHyjYdTPsaPbEVAHyGFLVztVd8XdY68b6ulIfUyitkuqnWUFBYIgAl2a5Mer0TGw0h4zG1ekcnW8cuNpxEtxjv+Y+rUtrlhVB5HG2C4VBQHXmlWFviMz2CTnnuRZi1ub6cLOQRtQ8i3bw1HHo61ow9W73U6yn2jkc95Tk3ObU10ZxeBrtEaiUSSh4nJLyeTymxmfV5WDcnmDddqLoRWPYk3AUTbbT2fW0SuelQXR5dH6sh0OF1Zh/H6XHzqDHSgzkk/Srp/Y5KLhViou4uC7rjyy96Q3KuH9pfsh8QW6WYjECAwEAAaNTMFEwHQYDVR0OBBYEFKhm6lXDhUc3d4or+s92+o5nIIwDMB8GA1UdIwQYMBaAFKhm6lXDhUc3d4or+s92+o5nIIwDMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggGBAB9bOBlxAncpjsHxxnZ43/iaU5dXEhIRWkTrR+purCUD+dgA10GoWWoo3H7ribzMicLxTmS420qCEFxRG42X06QEh2VojzcGeUBeqj47Lc0x+0RRQ/fRNj0oiW1CkbTz5XQtxoh8UJUXZRZf40YzXU1aKfbRIZbXiWo09LTZ/pmBFMCxlwAMmfAuBKdzHWSzdDGPdj0g0Tdp0ocZpZLBAMU9jlPSSun3o/qtlDb3O/fPqsWKk8o0QtvTbbofr10Qfw8vajrK/WV/hoVHuibJjsX5a8sH92Kp+sP4D+Fie5galdRygilteGiqRBnNqRE/iBSzlh2s6fDtBMmvfRUBvAE0zzcm3mh2Jwrv1i+HBhqCPFrGqOeS/isTNZIY1zDNJrP0avLBLbZFFPSDRmQ0pL8p9X8iH7lK4zioXGWhMB9Y/XdoibgsZ5CUgaDk9usTo5OQepPowmR+Z+VcT3vJmFcKCPfe8nGlwlTb5GInLggxE8m8JNnouT6gd/lyPv1D8A==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.envri.perun-aai.org/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.envri.perun-aai.org/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ENVRI Science Login</md:ServiceName>
        <md:ServiceName xml:lang="cs">ENVRI Science Login</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Environmental Science Research Infrastructures</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropské výzkumné infrastruktury v oblasti environmentálního výzkumu</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Environmental Science Research Infrastructures</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropské výzkumné infrastruktury v oblasti environmentálního výzkumu</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://envri.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://envri.eu</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.europdx.eu/proxy/">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">EuroPDX research infrastructure AAI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Výzkumná infrastruktura EuroPDX - AAI</mdui:DisplayName>
          <mdui:Description xml:lang="en">This service is the common gateway to the services of the EuroPDX research infrastructure.</mdui:Description>
          <mdui:Description xml:lang="cs">Tato služba je přístupovým bodem ke službám výzkumné infrastruktury EuroPDX.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dataportal.europdx.eu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dataportal.europdx.eu/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.europdx.eu/privacy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.europdx.eu/privacy</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">EuroPDX proxy biology life sciences</mdui:Keywords>
          <mdui:Logo height="96" width="96">https://dataportal.europdx.eu/media/3142257/europdx-ri_logo_colours.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEUTCCAzmgAwIBAgIJALuWjo0j1/fcMA0GCSqGSIb3DQEBCwUAMIG+MQswCQYDVQQGEwJDWjEQMA4GA1UECAwHTW9yYXZpYTENMAsGA1UEBwwEQnJubzEbMBkGA1UECgwSTWFzYXJ5ayBVbml2ZXJzaXR5MSYwJAYDVQQLDB1JbnN0aXR1dGUgb2YgQ29tcHV0ZXIgU2NpZW5jZTEbMBkGA1UEAwwSKi5lbGl4aXItY3plY2gub3JnMSwwKgYJKoZIhvcNAQkBFh1hYWktY29udGFjdEBlbGl4aXItZXVyb3BlLm9yZzAeFw0xNjA4MTAwODA5MTNaFw0yNjA4MDgwODA5MTNaMIG+MQswCQYDVQQGEwJDWjEQMA4GA1UECAwHTW9yYXZpYTENMAsGA1UEBwwEQnJubzEbMBkGA1UECgwSTWFzYXJ5ayBVbml2ZXJzaXR5MSYwJAYDVQQLDB1JbnN0aXR1dGUgb2YgQ29tcHV0ZXIgU2NpZW5jZTEbMBkGA1UEAwwSKi5lbGl4aXItY3plY2gub3JnMSwwKgYJKoZIhvcNAQkBFh1hYWktY29udGFjdEBlbGl4aXItZXVyb3BlLm9yZzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMvZy0XHUJ/NW/ffIuSMzcpWJp+6gL3OXhl7oG8MPZHe1JmzgBrxQ9sLzFhRl34NVfSA8flN+nKbcekp8jpeoTY/hnr/IWIWNDYfg3xLCQxCSoN/QiSqrr8FizSam8IT2vTu+BUvnCngrwia/upGCHb7hivsEDfTroQcAEPDe/S9uVWCvv5ERGwfBKgH3+06xjrdGVpFNzoy+9m+/ZLkdqmPHVc6E87o2hy0jLrV+g55nCxwJ79Z5LTLPcn2WHkg0nWoh1BITYoyfg503OpUL1ja+IL7FlofIb0s6YfV0a1duSrwc7nG/V7KFjrWJS5RCh74SfWTaGiSN5XcqdwJsgECAwEAAaNQME4wHQYDVR0OBBYEFN/3g/caCmGJG1w+35mgGhAzryLnMB8GA1UdIwQYMBaAFN/3g/caCmGJG1w+35mgGhAzryLnMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAGlWHgjzeZ7VLn7ajPRr36aK/oXTOTetvzI7XcepAhDB/8suLabq55rV6ydtmuzA18ZJ/cdcb+LoIp/rqyY24siGYrNjwbjTgz9ai3legz5lFq7qnjYuAbGhc2OX4uJmzk/+jL5npKuMxkQSjgSqscYoBXsbNyJ/ou7PTXmalGkbFsr2ch0q1/McWSpDLAVzWTf1yZ85h3UYdxRyK0Evt4MWHYJ3DITK7xELYqNDg/Nrlr9So1sojSd1QIJ2yvOl8l9McMWlDwd31rPdNiT589F/UrryPEG2Xiapo75DgSyshNUOYxHKub4FYvDAZLjStjcmvhzeZo1v35jqLINp/bg=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.europdx.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.europdx.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">EuroPDX research infrastructure AAI</md:ServiceName>
        <md:ServiceName xml:lang="cs">Výzkumná infrastruktura EuroPDX - AAI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">This service is the common gateway to the services of the EuroPDX research infrastructure.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Tato služba je přístupovým bodem ke službám výzkumné infrastruktury EuroPDX.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">EuroPDX</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">EuroPDX</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">EuroPDX</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">EuroPDX</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.europdx.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.europdx.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>EuroPDX</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:it@europdx.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>EuroPDX</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:contact@europdx.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>EuroPDX</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:it@europdx.eu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.ezproxy.is.cuni.cz/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.ezproxy.is.cuni.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>login.ezproxy.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=login.ezproxy.is.cuni.cz,O=Charles University in Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIFKDCCBBCgAwIBAgIQC+AYvkU/WW7KgLD3QQxJyjANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ezproxy.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ezproxy.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Novak</md:SurName>
      <md:EmailAddress>petr.novak@ruk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.ezproxy.uochb.cas.cz:2443/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol ">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR - EZproxy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav organické chemie a biochemie AV ČR - EZproxy</mdui:DisplayName>
          <mdui:Description xml:lang="en">EZproxy server</mdui:Description>
          <mdui:Description xml:lang="cs">Proxy server zajišťující vzdáledný přístup k el. zdrojům předplácených pro zaměstnance ÚOCHB a pro zaměstnance integrované knihovny NTK-VŠCHT-ÚOCHB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ezproxy.uochb.cas.cz:2443/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ezproxy.uochb.cas.cz:2443/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://idp.uochb.cas.cz/logo/logo1.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIHmzCCBYOgAwIBAgIBCTANBgkqhkiG9w0BAQsFADCB6DEjMCEGA1UEAxMabG9n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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML/Artifact" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav organické chemie a biochemie AV ČR</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR, v.v.i.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav organické chemie a biochemie AV ČR, v.v.i.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.uochb.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.uochb.cz/cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimír</md:GivenName>
      <md:SurName>Kulhavý</md:SurName>
      <md:EmailAddress>mailto:kulhavy@uochb.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.ezproxy.vscht.cz/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol ">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIFRDCCAywCCQCLWqKkEc0WCTANBgkqhkiG9w0BAQsFADBkMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML/Artifact" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology, Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology, Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.vscht.cz/english</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.vscht.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Horníček</md:SurName>
      <md:EmailAddress>jan.hornicek@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.kramerius.mzk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius 7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.digitalniknihovna.cz/mzk/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.mzk.cz/en/personaldatainfo</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Kramerius 7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.digitalniknihovna.cz/mzk/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.mzk.cz/osobniudajeinfo</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>HDf7qIVbl_6b35qiT8q7CI5i2DYLKPQ6Q35PVVOyOHw</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.kramerius.mzk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.kramerius.mzk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Thanh Quang</md:GivenName>
      <md:SurName>Tran</md:SurName>
      <md:EmailAddress>mailto:quangthanh.tran@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabicka@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.techlib.cz/cas/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha512"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
        <ns0:UIInfo xmlns:ns0="urn:oasis:names:tc:SAML:metadata:ui">
          <ns0:DisplayName xml:lang="cs">Jednotné přihlášení NTK</ns0:DisplayName>
          <ns0:DisplayName xml:lang="en">NTK Single Sign-On</ns0:DisplayName>
          <ns0:Description xml:lang="cs">Služba jednotného přihlášení Národní technické knihovny pro přístup k online službám NTK.</ns0:Description>
          <ns0:Description xml:lang="en">Single Sign-On service of the National Library of Technology for access to NTK online services.</ns0:Description>
          <ns0:InformationURL xml:lang="cs">https://www.techlib.cz/cs/</ns0:InformationURL>
          <ns0:InformationURL xml:lang="en">https://www.techlib.cz/en/</ns0:InformationURL>
          <ns0:PrivacyStatementURL xml:lang="cs">https://www.techlib.cz/cs/82763-ochrana-osobnich-udaju</ns0:PrivacyStatementURL>
          <ns0:PrivacyStatementURL xml:lang="en">https://www.techlib.cz/en/82764-protection-of-personal-data</ns0:PrivacyStatementURL>
          <ns0:Logo height="40" width="67">https://www.techlib.cz/public/images/logo-eduid.png</ns0:Logo>
        </ns0:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICpzCCAY+gAwIBAgIBATANBgkqhkiG9w0BAQUFADAXMRUwEwYDVQQDDAxjYXMubnRrY3ouY3ow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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICpzCCAY+gAwIBAgIBATANBgkqhkiG9w0BAQUFADAXMRUwEwYDVQQDDAxjYXMubnRrY3ouY3ow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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.techlib.cz/cas/login?client_name=eduidcz" index="0"/>
      <md:AttributeConsumingService index="0" isDefault="true">
        <md:ServiceName xml:lang="cs">Jednotné přihlášení NTK</md:ServiceName>
        <md:ServiceName xml:lang="en">NTK Single Sign-On</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Autentizační služba Národní technické knihovny pro přístup k aplikacím a licencovaným zdrojům NTK.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Authentication service of the National Library of Technology.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">NTK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">NTK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.techlib.cz/cs/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.techlib.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Support</md:GivenName>
      <md:SurName>NTK</md:SurName>
      <md:EmailAddress>mailto:helpdeskict@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://loschmidt.chemi.muni.cz/fireprot/">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Fireprot portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fireprot portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">FireProt is a web server for an automated design of thermostable proteins.</mdui:Description>
          <mdui:Description xml:lang="cs">FireProt je webový server pro automatický design termostabilních bílkovin.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://loschmidt.chemi.muni.cz/fireprot/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://loschmidt.chemi.muni.cz/fireprot/</mdui:InformationURL>
          <mdui:Logo height="106" width="350">https://loschmidt.chemi.muni.cz/fireprot_logo_350x106.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://loschmidt.chemi.muni.cz/fireprot/</ds:KeyName>
          <ds:KeyName>loschmidt.chemi.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=loschmidt.chemi.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIJAKYCjDot4AtZMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">Fireprot</md:ServiceName>
        <md:ServiceName xml:lang="cs">Fireprot</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FireProt is a web server for an automated design of thermostable proteins.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FireProt je webový server pro automatický design termostabilních bílkovin.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Loschmidt Laboratories</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Loschmidt Laboratories</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Loschmidt Laboratories</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Loschmidt Laboratories</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://loschmidt.chemi.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://loschmidt.chemi.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Štourač</md:SurName>
      <md:EmailAddress>mailto:stourac@mail.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://lrrr.iba.muni.cz/simplesamlphp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Example Service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Example Service</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Lorem ipsum dolor sit amet.</mdui:Description>
          <mdui:Description xml:lang="en">Suspendisse imperdiet nulla in nisi efficitur.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://lrrr.iba.muni.cz/cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://lrrr.iba.muni.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDtTCCAp2gAwIBAgIUD2PMOxtzM+LnHo0NnkPVGCdDXGQwDQYJKoZIhvcNAQELBQAwajELMAkGA1UEBhMCQ1oxCzAJBgNVBAgMAkNaMQ0wCwYDVQQHDARCcm5vMQ8wDQYDVQQKDAZJQkEgTVUxDTALBgNVBAMMBHRlc3QxHzAdBgkqhkiG9w0BCQEWEHNtaWRAaWJhLm11bmkuY3owHhcNMjIxMTMwMTM0OTQ0WhcNNDIxMTMwMTM0OTQ0WjBqMQswCQYDVQQGEwJDWjELMAkGA1UECAwCQ1oxDTALBgNVBAcMBEJybm8xDzANBgNVBAoMBklCQSBNVTENMAsGA1UEAwwEdGVzdDEfMB0GCSqGSIb3DQEJARYQc21pZEBpYmEubXVuaS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKb/s9q3Wr3LCt8V6amdcFexjkeUPJpW0mxkpNSNFQcSKKgKhyzExt50KMf4bxd8px7Kw8ZpAGDkS7065sZ5xZGhpAM+/mY3uTgGS74XLlzNIZYAp85MNEzfngRASH7OmSQqSqKF9GUZ1u65wA0QeDFaY6AwRz7i9BwMXqllHfXfFs0BK4Ja+Mcb/5Yss8iDUhwp3jNluXv53tckJN8UP+UuaygCL7jRQ0H9LeC/p4uT4V8w3b7tRk7nW5COttMLpcW4v0aVmjv5MI86voD+UQUDAtgR/wKDh1IaFCYGsInRiOcv4YeDJBgxKDUugLjfPv3tCgySsRV1hyHQMA90wUMCAwEAAaNTMFEwHQYDVR0OBBYEFM63Gz1Gg1CWTImHps4+20b1Zk+7MB8GA1UdIwQYMBaAFM63Gz1Gg1CWTImHps4+20b1Zk+7MA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAFIcgnHvEFBUDzfdan4dTHIzG/KB3dRQDV5efd4fSmGs4AYBrcNiCCDVxU+w01Bmorydu9dyO3/TnHOtJ0qXvzo3q4K84oqBWAtm2Dcr/12tWxqrkqBHrnJCAmvZq6u1SbV7h7XUBsB+y2e5/a7tjgN4QoQLntzMmPWpIk9D6zZpAeGyRlXoM9knp19S3kTUdBhAyc2B9fIepwChnVMVlV8z+KDd3ho4UqmpDa3wDxj2A8OhHeCu3+UlIFV9pRxYlSVzyZZhmzWCNC6ATO5hD9T5KHxmO3Uu2r3eHxVY9DzuYHut22gQU4+m7i93/ic3x/6pQrZxX2nuRiIeFluDLPc=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">IBA LF MU</md:OrganizationName>
      <md:OrganizationName xml:lang="en">IBA LF MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">IBA</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">IBA</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.iba.muni.cz/cs</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.iba.muni.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>mailto:saml@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ma.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Matomo</mdui:Description>
          <mdui:Description xml:lang="cs">Matomo</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ma.upce.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ma.upce.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ma1.upce.cz/Shibboleth.sso/Login" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ma2.upce.cz/Shibboleth.sso/Login" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ma.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ma.upce.cz/Shibboleth.sso/Login" index="4"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://ma.upce.cz/shibboleth</ds:KeyName>
          <ds:KeyName>ma.upce.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ma.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUY12Eyrk2gdZn3YF1JWC6c0p9urswDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAxMKbWEudXBjZS5jejAeFw0yNDA0MTkwODUwMDNaFw0zNDA0
MTcwODUwMDNaMBUxEzARBgNVBAMTCm1hLnVwY2UuY3owggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQCImc5Y+j6PTnTQzoJAu2FvFmGzr9j06w0Vqigret+8
Cg6mQ/512sW78n7jNPG3di3NSY/QfeoCp+DnyPrj0UhlzuIkRE2bgvia4A/c3l/Y
h17V/vIcLwFphyG5tyZAcWut9itsBuWfoTrGoRny0FWJJTWSGDO8/V27PBE2DcLm
H5LZS1sF3+fwv9tETs2qJZScIUgz9/o7cv1VrI7QcepiEMlQzDHrhvUpg/2VuCgC
AdUDyPvUcfL/bYjvOhWc2hxhXLLGwXLtbwef7VCqb/R2I70PF4eMZG9tRLKJCWGJ
/3dDVyRFUJDfck8Cy5++mKj7M+n68u96o3G4GQ/gDIz5vaOa4B95Deqdl2jq5kdM
B8mz717bbNUDiQ6uVohTGE0qJVAqP0BxfO+KhE11YGI8VK8LRPKmQDgHtfA6ciLd
iPl81BvImmDq/RZi5gbEVHDXezUZMB9/0AWIrFO4lDxF3azocmMiIWdhHik79AQS
v/fP/BPSlcEmAy/WQSDyfrECAwEAAaNXMFUwNAYDVR0RBC0wK4IKbWEudXBjZS5j
eoYdaHR0cHM6Ly9tYS51cGNlLmN6L3NoaWJib2xldGgwHQYDVR0OBBYEFOARux0o
+YK0twvcWp8XbH3PMDtAMA0GCSqGSIb3DQEBCwUAA4IBgQAg85RcaOWsQQ7/zeVM
DrRtTMy1XCdRihVZOYmvCXh5iSQOF9pnZx6ON3lYAWlo4LfOyn2hDTPvAwNvnQRK
g5XokZ2jgLHM1MspmfvMsQwbEntFBljAT3jMyT+ehqk+jByB3ntCjdbJH0HaFPPl
jY07KZspJ5l3cA1NiGQL44NWYtATDkyFwTsjSp0qmod7+DnxOm+U9YwtnHq6MLyo
LoME1GXK0KRWLevfbhkRRXio7xc2ii7By6VO5o7SR+3/4VTfLCvBUe3T8FusqFDC
Myp3OzYX4YQ8VlwaZh0l17FO2tP4WSBSqzZneNx267ecN4mNPSYcWOv4uzYeKznd
NXk8oFCTzhTG152FNysLMhZN/GwS6erV6J4akHDjdnZHP/1P5CtKfq284YybjYAC
44W50v81Y+gFSPog7HZOlh/yXLVkaxi3j0/5JFu2Kx0JE35PP5K/qGkQ+1kGAJK/
SvVIj+GT0D4K8ZH37LPXFMjpGvWSPsGEiEw/9AnX/HgSHKs=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ma.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ma.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ma.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ma1.upce.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ma1.upce.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ma2.upce.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ma2.upce.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Matomo</md:ServiceName>
        <md:ServiceName xml:lang="cs">Matomo</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Project Matomo, multisite authorization.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Projekt Matomo, multisite ověření.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://maia-be.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Data repository of the University of West Bohemia.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Data repository of the University of West Bohemia.</mdui:Description>
          <mdui:Description xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna.zcu.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://maia-be.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://maia-be.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>maia-be.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=maia-be.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEITCCAomgAwIBAgIUcam3aB5Y6yoXEu29OmxqfTQuWMwwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAxMObWFpYS1iZS56Y3UuY3owIBcNMjQwODE1MTUyOTA4WhgP
MjEyNDA3MjIxNTI5MDhaMBkxFzAVBgNVBAMTDm1haWEtYmUuemN1LmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAwpSsdHCQhk8ftH6n45M2rCaXfDA9
Osssd8AnwDRjGnpAAN0+VpfyFSZJxjUVFe7G8CixtIb43O+Um4zD/cI6dPQJCP4M
XldgAVANTAt/sHOhlPiI8O4fStVSnJdQK4qXVW71r4XVot2OGUy6Tljj2BZ5niE0
0AOKOLGkvGjp/CuVq6XAunFm1mxHj9HI2e4YI4S16Vuo60ifAU8bIXIbU2TKKRxA
wu1hIiHsh3Fub5T9nK/1udd+If+BTxoYrpgnhT0g+8BT1qrWXLrLfkjuxGdF+e6/
Y7rzL5QdK3mWlYQIQpSheAX9k2y+Dm+SLuxtqgEMTEJUMBHQ8zMgixkiBzxFdkSX
5KU9V+E3OoppYU5gqx52k9jTKsUuats7Kib/va3OgqrYONLrqHWx4aNdJOhcU5yh
m2hWWbV8InHNJKItqyo0VVDSs3Dzu1e5L19JcJR8HpLA4vIxUPmdo5ziG8TQoyCS
FH3NAEkVCk+UYDe7cwtCj2CcnmDfolSo4MCpAgMBAAGjXzBdMDwGA1UdEQQ1MDOC
Dm1haWEtYmUuemN1LmN6hiFodHRwczovL21haWEtYmUuemN1LmN6L3NoaWJib2xl
dGgwHQYDVR0OBBYEFIoQZQp4paHXbAChLHgAqTEqQQ04MA0GCSqGSIb3DQEBCwUA
A4IBgQB5AYzDox/mN739PWOCgvgRFfQZAvEYWYa2hDPZydR08jWJDdRK9GfVNSW8
mZ7DIZ2e7WQ4GSE2BUXR/MSl/Lm1eNW0pHLKLqWHSTTHtmHMhsAd3U8Tsp4kYD2p
pgYXhDkgOM4tq/UIL2f7qK1+oqEW9Xv0RLT++gtegOq55ccwp+ENg9gOcOrSKwYM
OvJbxFF3XXb6U4AQnfmpGmzCCOQwIKr+wLz62NxW7VpzihHvDRbShwgFDPUU4Vso
yv5U4PPmy2PpbE8JpTXEWC0Ov7jWS2wmy/7faKam5gCARDcmj8tjPEZGiArl88d2
giOd9o0g1D0Kw7uldiGvfWp/Z2rHRmqURp7c6Ga2J6pb6wxiDjHgxC4ZNP5xBHHr
veeWi7ZHPiUerQyRYzG1uYyRCzPCxoTd321ctHxXrVr7bzApb8B3aOBclpsNvx1I
nxx1xl9HKMlLoJjnS7PZjFNpXX4526Bobhtoq1Pm4SA6bI060Y5pSoRXJXWOHMug
d6/W8A8=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://maia-be.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Data repository of the University of West Bohemia.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Data repository of the University of West Bohemia.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:mace:dir:attribute-def:eduPersonEntitlement" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://makovec.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Makovec</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Makovec</mdui:DisplayName>
          <mdui:Description xml:lang="en">An application to manage devices not using 802.1X to connect to network in Telehouse.</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace pro správu zařízení nevyužívajících 802.1X pro zapojení do pevné sítě v Telehouse.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://makovec.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://makovec.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://makovec.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://makovec.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>makovec.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=makovec.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUe5/3b9Hte167iHDyFITFYEoz9L8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://makovec.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Makovec</md:ServiceName>
        <md:ServiceName xml:lang="cs">Makovec</md:ServiceName>
        <md:ServiceDescription xml:lang="en">An application to manage devices not using 802.1X to connect to network in Telehouse.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Aplikace pro správu zařízení nevyužívajících 802.1X pro zapojení do pevné sítě v Telehouse.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Bělina</md:SurName>
      <md:EmailAddress>mailto:jan.belina@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Čáslavský</md:SurName>
      <md:EmailAddress>mailto:jan.caslavsky@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://marisa.uochb.cas.cz/simplesaml/saml2/idp/metadata.php">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">uochb.cas.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav organické chemie a biochemie AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for IOCB AS CR employees</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚOCHB AV ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.uochb.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.uochb.cz/cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">http://www.uochb.cz/en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">http://www.uochb.cz/cz</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">communication federated+session</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">komunikace federace</mdui:Keywords>
          <mdui:Logo height="40" width="40">https://idp.uochb.cas.cz/logo/logo1.png</mdui:Logo>
          <mdui:Logo height="60" width="173">https://idp.uochb.cas.cz/logo/logo2.png</mdui:Logo>
        </mdui:UIInfo>
        <mdui:DiscoHints>
          <mdui:DomainHint>uochb.cas.cz</mdui:DomainHint>
        </mdui:DiscoHints>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://marisa.uochb.cas.cz/simplesaml/saml2/idp/ArtifactResolutionService.php" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://marisa.uochb.cas.cz/simplesaml/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://marisa.uochb.cas.cz/simplesaml/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav organické chemie a biochemie AV ČR</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR, v.v.i.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav organické chemie a biochemie AV ČR, v.v.i.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.uochb.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.uochb.cz/cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Kulhavy</md:SurName>
      <md:EmailAddress>mailto:kulhavy@uochb.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimír</md:GivenName>
      <md:SurName>Kulhavý</md:SurName>
      <md:EmailAddress>mailto:kulhavy@uochb.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet-motol.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MEFANET-Motol</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MEFANET-Motol</mdui:DisplayName>
          <mdui:Description xml:lang="en">Multimedia support in the education of clinical and health care disciplines</mdui:Description>
          <mdui:Description xml:lang="cs">Multimediální podpora výuky klinických a zdravotnických oborů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet-motol.cuni.cz/index-en.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet-motol.cuni.cz/index.php</mdui:InformationURL>
          <mdui:Logo height="53" width="78">https://mefanet-motol.cuni.cz/images/tpl-motol/logo-mefanet-black.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mefanet-motol.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=CZ,O=Charles University,CN=mefanet-motol.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDZzCCAk+gAwIBAgIJAK6mPyZUqhjjMA0GCSqGSIb3DQEBCwUAMEoxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University - 2nd Faculty of Medicine</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova - 2. lékařská fakulta</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University - 2nd Faculty of Medicine</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova - 2. lékařská fakulta</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://mefanet-motol.cuni.cz/index-en.php</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://mefanet-motol.cuni.cz/index.php</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.fzs.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.fzs.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.fzs.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.fzs.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIJAIvDulrU0U08MA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of West Bohemia</OrganizationName>
      <OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of West Bohemia</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.zcu.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.zcu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Jindra</SurName>
      <EmailAddress>paja@civ.zcu.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.lfhk.cuni.cz/shibboleth/eduid/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mefanet - Charles univesity, Medical faculty in Hradec Kralove</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mefanet - Univerzita Karlova, Lékařská fakulta v Hradci Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Multimedial support in the education of clinical and health care disciplines</mdui:Description>
          <mdui:Description xml:lang="cs">Multimediální podpora výuky klinických a zdravotnických oborů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.lfhk.cuni.cz/index-en.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.lfhk.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="75" width="1306">https://moodle.lfhk.cuni.cz/moodleadds/loga/hlavicka_2017.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>marek.lfhk.cuni.cz</ds:KeyName>
          <ds:KeyName>mefanet.lfhk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.lfhk.cuni.cz,O=Univerzita Karlova,L=Star\C3\A9 M\C4\9Bsto,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGtDCCBZygAwIBAgIQChn2S8eRBEHzKPzmQ4dmWTANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfhk.cuni.cz/default.aspx/?lang=en-GB</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfhk.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Kváš</md:SurName>
      <md:EmailAddress>mailto:kvaso@lfhk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.lfp.cuni.cz/shibboleth/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Educational Portal of Medical Faculty in Pilsen</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Výukový portál Lékařské fakulty v Plzni</mdui:DisplayName>
          <mdui:Description xml:lang="en">Multimedia support in the education of clinical and health care disciplines.</mdui:Description>
          <mdui:Description xml:lang="cs">Multimadiální podpora výuky klinických a zdravotnických oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.lfp.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.lfp.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://mefanet.lfp.cuni.cz/img/logo-mefanet-large.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENTCCAp2gAwIBAgIUbDZizwms5GBM6e0mt3RenmUNt+AwDQYJKoZIhvcNAQEL
BQAwHjEcMBoGA1UEAxMTbWVmYW5ldC5sZnAuY3VuaS5jejAgFw0yNTExMjUxODIw
MjZaGA8yMDUwMTExOTE4MjAyNlowHjEcMBoGA1UEAxMTbWVmYW5ldC5sZnAuY3Vu
aS5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAMgYzG4b41woNX5k
QFOmHVhGHfu9glnDBudsHDSCitjMJoVyjpQo+wD3ZVwcBfTjUwNgnYwQxCJ+qlMR
p1wTwneLsyJgXW4tcq63Z77zBPZjjDr8pIoWL15s1y+9LtR3ES4Z1kB4yAJKWrjE
QQ3YYHdKibzYIWqL7G1w8tnHXuwWHaF3ipnrlZfrLdQuVTfUjbUt8Gjor0RUDLW2
Sk8qwo2kB3nI5PaOfiJ/Q/csM7IV2x+6GOSqTtQugr1HWzGkE4mplBFdeIIywB3k
XX7ThvgebnIT3Tup6+oL6btIKg7zKR2qr70PUHIuZe3KkBvifh+Lwan171bPJ9qV
pbkEZcefRHNSBSpdekMecAq/1D7Sp4+sDK3UrnAeqbJdmKJcICoJsNNZT5RWntvV
arM7EwBI57Y0DbNE0vjg+iok0eZEsovgHHBSmiS0IipCir5JSOukhf87kFMZhmbc
eJHvSVdwd7SPe1U4/78Z1of3TD3Qkt77BUs4MlMn11H5Nznt9wIDAQABo2kwZzBG
BgNVHREEPzA9ghNtZWZhbmV0LmxmcC5jdW5pLmN6hiZodHRwczovL21lZmFuZXQu
bGZwLmN1bmkuY3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUKZd0oB2FTWzpA7vLuqdF
op8b/LAwDQYJKoZIhvcNAQELBQADggGBAF0vqUTWx0+U0ME0eaU1DAU80+W2oosf
qnVOpbHt8BDK4Fsm7jlTdgsd8FAotwblCEWDgP81GCJW8T2BWXYOnS5xd3x2fOWx
t0SkBwynoRSr3zXUrMn43zUixbfmbpCgiLQGzDYTYq2N4nOqjiZhijpbV2nJZVun
x5ijTKpXIWJyI7+YO+zMkQw5nnyBGE8HkLiGHmb2lEajn/1Gv36EhHiwQLdmgzv/
ZN3X4/4nkqALiH7Upqptmk89hrZTAxO3LKVGVbyrjuVFuI2I1GwS+3WniorphV1s
73gyiWtWe7l2+1aEJ9lBEnNwN5hYz4HlsfvT7AOipfH63ZQRVyfjboJffp3X/vNP
Zj57Dsc7wPHR8Nwa5tz6spc9yXooced4j+96bNsQ7hBz/X2XJZGEdMP6WS3qArqV
ALUmcCxZaJK1K8EzV64WfIduir9c9+CHhGOqDPirSYa5PshkHkHNyjwEIy2pMNRd
okLFyfgSv9d8EvE61BoSfckLGAZdMfgS4Q==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENTCCAp2gAwIBAgIUGF0JiW482NihGMElu4bat1yE3jYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Educational Portal of Medical Faculty in Pilsen</md:ServiceName>
        <md:ServiceName xml:lang="cs">Výukový portál Lékařské fakulty v Plzni</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Multimedia support in the education of clinical and health care disciplines.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Multimadiální podpora výuky klinických a zdravotnických oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lpf.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Míka</md:SurName>
      <md:EmailAddress>mailto:mika@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">MEFANET</mdui:Description>
          <mdui:Description xml:lang="cs">MEFANET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.upce.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.upce.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.upce.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mefanetu.upce.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.upce.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGTCCAoGgAwIBAgIJAOlprQRL5PiEMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">mefanet.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">mefanet.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Educational portal of Faculty of Medicine and Dentristry, Palacký University in Olomouc</mdui:Description>
          <mdui:Description xml:lang="cs">Výukový portál Lékařské fakulty Univerzity Palackého v Olomouci</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.upol.cz/index-en.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.upol.cz/index.php</mdui:InformationURL>
          <mdui:Logo height="60" width="60">https://mefanet.upol.cz/images/tpl-olomouc/logo_mefanet.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.upol.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUCL2LcAtg6Z/EfCqSTvDlAg+jpIswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc - Faculty of Medicine and Dentistry</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackého v Olomouci - Lékařská fakulta</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc - Faculty of Medicine and Dentistry</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackého v Olomouci - Lékařská fakulta</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lf.upol.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lf.upol.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Kopečný</md:SurName>
      <md:EmailAddress>mailto:tomas.kopecny@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mensik.vm.cesnet.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Registration</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Registrace</mdui:DisplayName>
          <mdui:Description xml:lang="en">Registration for a conference</mdui:Description>
          <mdui:Description xml:lang="cs">Registrace na konferenci</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mensik.vm.cesnet.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mensik.vm.cesnet.cz/cs/info</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mensik.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mensik.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mensik.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUav15eeN8M9q9e8vTJIaxP0SxF60wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Registration</md:ServiceName>
        <md:ServiceName xml:lang="cs">Registrace</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Form for registration to a conference</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Forlmulář pro registraci na konferenci</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Cesnet</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Cesnet</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Cesnet</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Cesnet</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Menšík</md:SurName>
      <md:EmailAddress>mailto:Jiri.Mensik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mentat-alt.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Mentat - ALT</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Mentat - ALT</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Alternativní server pro systém Mentat.</mdui:Description>
          <mdui:Description xml:lang="en">Alternative server for Mentat system.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://mentat-alt.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://mentat-alt.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mentat-hub.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mentat-hub.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDAzCCAeugAwIBAgIJAKMZzQGlwd7tMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.ten.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, Síť národního výzkumu pro ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET, NREN for Czech republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Mach</md:SurName>
      <md:EmailAddress>mailto:jan.mach@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kacha</md:SurName>
      <md:EmailAddress>mailto:pavel.kacha@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mentat-dev.cesnet.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mentat - DEV</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mentat - DEV</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dev server for Mentat system</mdui:Description>
          <mdui:Description xml:lang="cs">Vývojový server pro systém Mentat</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mentat.cesnet.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mentat.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mentat-dev.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mentat-dev.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUHdAbsihSLMOI4dZvT8mLXMKhIYkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-dev.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Mentat - DEV</md:ServiceName>
        <md:ServiceName xml:lang="cs">Mentat - DEV</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dev server for Mentat system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Vývojový server pro systém Mentat</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:mentat-info@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mentat-hub.cesnet.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mentat - HUB</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mentat - HUB</mdui:DisplayName>
          <mdui:Description xml:lang="en">Main server for Mentat system</mdui:Description>
          <mdui:Description xml:lang="cs">Hlavní server pro systém Mentat</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mentat.cesnet.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mentat.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mentat-hub.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mentat-hub.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDAzCCAeugAwIBAgIJAKMZzQGlwd7tMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-hub.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-new.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">Mentat - HUB</md:ServiceName>
        <md:ServiceName xml:lang="en">Mentat - HUB</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Hlavní server pro systém Mentat</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Main server for Mentat system</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:mentat-info@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:remd="http://refeds.org/metadata" xmlns:xrd="http://docs.oasis-open.org/ns/xri/xrd-1.0" entityID="https://meta.cesnet.cz/sp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/sp-group/mojeid-edu</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET e-Infrastructure</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">e-Infrastruktura CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</mdui:Description>
          <mdui:Description xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/e-infrastruktura-3/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/e-infrastruktura-3/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">CESNET cesnet infrastructure grid data+storage</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">CESNET cesnet infrastructure grid data+storage</mdui:Keywords>
          <mdui:Logo height="146" width="257">https://login.cesnet.cz/proxy/module.php/cesnet/res/img/cesnet_rgb_small.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.cesnet.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.cesnet.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.e-infra.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET e-Infrastructure</md:ServiceName>
        <md:ServiceName xml:lang="cs">e-Infrastruktura CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>CESNET-CERTS</md:GivenName>
      <md:EmailAddress>mailto:certs@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://metaman-dev.eduid.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MetaMan-DEV</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MetaMan-DEV</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing version of the application to manage federations metadata.</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací verze aplikace pro správu metadat federací.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://metaman-dev.eduid.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://metaman-dev.eduid.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://metaman-dev.eduid.cz/shibboleth</ds:KeyName>
          <ds:KeyName>metaman-dev.eduid.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=metaman-dev.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIULfb9w7cn0VfAOcCt8quef+6uyxUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">MetaMan-DEV</md:ServiceName>
        <md:ServiceName xml:lang="cs">MetaMan-DEV</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Testing version of the application to manage federations metadata.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Testovací verze aplikace pro správu metadat federací.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://metaman.eduid.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MetaMan</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MetaMan</mdui:DisplayName>
          <mdui:Description xml:lang="en">Application to manage federations metadata.</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace pro správu metadat federací.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://metaman.eduid.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://metaman.eduid.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://metaman.eduid.cz/coco-en.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://metaman.eduid.cz/coco-cs.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://metaman.eduid.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://metaman.eduid.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://metaman.eduid.cz/shibboleth</ds:KeyName>
          <ds:KeyName>metaman.eduid.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=metaman.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAJr86z/8vy0FMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
BAMTEG1ldGFtYW4uZWR1aWQuY3owHhcNMTkwMjI1MDkzODAyWhcNMjkwMjIyMDkz
ODAyWjAbMRkwFwYDVQQDExBtZXRhbWFuLmVkdWlkLmN6MIIBojANBgkqhkiG9w0B
AQEFAAOCAY8AMIIBigKCAYEAvtFdPxOv137/aWoLZWqM3J9uXeqjc2OUtva12yMs
3bYjHhwvvFh33TxBiUc7yJ3ftNja+QmLk5AMIbRg7W5eU1nDDTtsGaoG3do8m9xo
t91kK32QVxfLpUrrheihi/JkhxPU7ihqUAFvOaWfv0NhcoIGyM/KRsVS3DYDzxZE
vxGwbbxDYm7Za23z5DYjNR6/PocIPrETS2pn8T894A+xXdXAKSKr4vTY3j7+nc4q
rrs+qriIwd2XHiuFRHu7RZdoDOaLI395BBPUxIeAfhbA3wk1erc3x+FEg6gGCVRs
+LWgOD2gd0r9yYnqUvPzkUoraC6AMo+FwTVH3U7hsOM5ngMqRHqYw7d/KCQDzORD
Dv5Ri0zTIxmz9g0iRiGCYhm59VlRepWFmtKTHccQklqEmHCHJhROh74lavxU3CaM
ZDF0CcjJ6ysLvSlEpQteAKcCE9G5FjE4/9PjStEWKjIeEzfJVi2zSkvnJMHI0l2o
HFWuYPE8DkjNdSiVj8ZWL3q1AgMBAAGjYzBhMEAGA1UdEQQ5MDeCEG1ldGFtYW4u
ZWR1aWQuY3qGI2h0dHBzOi8vbWV0YW1hbi5lZHVpZC5jei9zaGliYm9sZXRoMB0G
A1UdDgQWBBR+z8xoXuK2d+bzEV1Q6y8NKL9kaTANBgkqhkiG9w0BAQsFAAOCAYEA
t9le1aCgDbv2zdQrelJU5nU/kEqw36uB0PvLX+1QcPR3CLLrRuCo38dw5naVDOlL
eX9/hSdghXGEbsDhrxz/zO6ntvJLAZ8NZ9OkQUBTx2VtumUSsP3N1haRzvRdIOdW
uDR6B9RYW/SJYQSBaDKJzBVo1lwNRT4zr7YzPzV1PclHcJR9dOt3l7hbYAX4EMtj
ph63VmLC/WH/zg1XHxma+Uo+Uv59CgEAKpdiNkwsdBa5S36yeh2/NOKSHK9NOKPE
YX1WfHG0rAnTi3hj9q8C7QwjrcwRT7B/4upgsAYb2yzyS54cW4bKsSJpog7n1KNK
Qhp1XAdRyBY2bXXvUi5gHUABZK4DqCK3DUbKmFyG+ZV1mGiDPXp3pJo3UUHAxN0z
aXWdNEz73vA9tVpd+b/F8o60a+LqamkBOVksMGrU26HVfz+VbSX1qw5Dr1pH08jx
UrMtBWFdbDYHz8UWqq91hiKkz5TNcACnGFSlr+gUd8ZS3EHZR+pWFjC9vwSlrsU1</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">MetaMan</md:ServiceName>
        <md:ServiceName xml:lang="cs">MetaMan</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Application to manage federations metadata.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Aplikace pro správu metadat federací.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mfa.eduid.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">REFEDS MFA testing service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací služba REFEDS MFA</mdui:DisplayName>
          <mdui:Description xml:lang="en">A service to test REFEDS MFA support at Identity Providers within eduID.cz.</mdui:Description>
          <mdui:Description xml:lang="cs">Služba pro testování podpory REFEDS MFA na Poskytovatelích Identit v eduID.cz.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mfa.eduid.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mfa.eduid.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mfa.eduid.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mfa.eduid.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mfa.eduid.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mfa.eduid.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mfa.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUSC/uaVW7WFlybp3dX2L/gB7O7aQwDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAxMMbWZhLmVkdWlkLmN6MB4XDTIyMTAxOTEyNDYzMFoXDTMy
MTAxNjEyNDYzMFowFzEVMBMGA1UEAxMMbWZhLmVkdWlkLmN6MIIBojANBgkqhkiG
9w0BAQEFAAOCAY8AMIIBigKCAYEAmXb5x0p55k9XcBGrcDZiLHbf8lKUFNVpivs+
QMjpI6EqTYRL2kiBve6XBzdoz3JysufBRt5Nk387XgG6O3lDgwAuU80J7HiMf9St
+S23UrOYQoqECrzYlU1pH2gZjBskNwSydDOl4cFT8cJV91x1kgjFaC877K/37s4T
dHhPROctLcReAAYb1os4B8SZhaPTn3Im8BfM1wrfUoI1Wahp9rK4eLtZXJzmEzgG
85rExA+0HnmfIh4jY1mmn0oJplLnWSnNtPmnlZKSZDgVyoO2myJH6IIefz9/MHGG
m3TuNt4eeLp7ZDCZpMVYANT/3Jg4KT8/wiR48+lnamFprFdwgdYYiEy4QhT2vyq8
scvNEnvpRGWsQ6h+IEW2GxRgZ6ANSUvumYD6z8X/H7k+LTjTIctf2RbkUdS5FJzi
qcbG+ruLGu16eomTReAZIxKzZ81ku9nGlRF4Op7zdsj3Xgy1fHCQ+YoZEFtrQCih
tL74r5DQ/g1HKJ1/A2zsxdBANKzvAgMBAAGjWzBZMDgGA1UdEQQxMC+CDG1mYS5l
ZHVpZC5jeoYfaHR0cHM6Ly9tZmEuZWR1aWQuY3ovc2hpYmJvbGV0aDAdBgNVHQ4E
FgQU8NNFVEY2RpGSMVplPMMBH5/rT0owDQYJKoZIhvcNAQELBQADggGBAEqwx8gS
2GmcJPxjqOjo1qn8G7FbVGpKmpKzpxjRl+qVaMfg+vwldHqDdUDWJizVSPHMROFG
nFMQCOvsL/+7eS1k+6FffG+C1WpmFyg0Aa9jvDn6Kzk9E+aqIWsu3PzKcrlH4a1b
84xd093l05724tNOfaRc4rowS+PL0SQcbeUFK7YOYS4jNvz8cHdKCObo3xNLXwVx
6y2UUtr/FD+P34K3Dqs8Ubztnpw6PFirtRRFn06pZs9Zm1rTzfZTeJMJJ5EpWxLf
lnSE9djNlJe49QJ8RDtAZTdSWhmw7jMNwFJuA4cYUOc4j64/Qp3wyhyB1pS+Bl5q
ANu6bbMwgw/OX8noWJi8sgssWhuCfDNPygfVxH4bxao0sEZw27x/gHsVVdOSsQBe
Guc4QuaPTKPiAJbxffVQCuwCp3z+tpmxa3wrluYLjY6xsn3viit4zZ+RwQyRQ9wf
hp8m/Poo9Bvrr9vQXO3KsjsGrw+IKCKCso5BepV/GQZ7aLpFRGFsu/m59A==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mfa.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://mkjbc.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mkjbc.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Jablonec nad Nisou</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Jablonec nad Nisou</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library of Jablonec nad Nisou</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Jablonec nad Nisou</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.mestojablonec.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.mestojablonec.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="48">https://jablonec.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID+zCCAuOgAwIBAgIUfpDuAqy5rqeDVWUEuF9WwynWjUcwDQYJKoZIhvcNAQELBQAwgYwxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEdMBsGA1UEAwwUamFibG9uZWMuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yNDAyMjMxNzE3MTBaFw0zNDAyMjMxNzE3MTBaMIGMMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxHTAbBgNVBAMMFGphYmxvbmVjLmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDSEILm1l3YcmyD1SoN5DrYrM4Aesk/36pYqRxi/SOqWh98g5ZPLopvMZjo5qUPBVr3mhBZCppCjJWqGYyV8s+QUwMM65yZI52kJteL4dIO+Bij4Z/XJJ8sqlxOmcefh368672Ek29v40KCPgdhFBCVTO/Q0Dd9RScPpBxT/wYtVNXBnOfszonZ4spDbhnEk3wChjLIjjE22KzuXcVjoBztvjjjJLZTkA3Qnd06VpBapV0h5VMbL9ROpUavPbVffAOIaQl+G5u0ldYsVL80kI4FYM9p1//25QsBCkNkLr/JX9sOPUUTi5uRuxv0yjnLd7hunHcUoj240Pqt5viQyux9AgMBAAGjUzBRMB0GA1UdDgQWBBT7eOtCzHTP4UpV2faKw+nbLraS0DAfBgNVHSMEGDAWgBT7eOtCzHTP4UpV2faKw+nbLraS0DAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAedEZ+F9eS2GQ+DKkXoka+t8PTPOZY3QobYFBeGEdDffo+kIxCsbLDeHYBtRXasldOaEkUDNR0tiE+qI21WFZnhgbxr5LGsR+qS16V0L+NmtaCHGFQzHXzMwHndjH2gbBO2p9btiGTCaN8OVVgQbokjKsqjAXlG8hudSCfST7CH6mbR+YvBNqVWb82JHCW/4JIxDNx3ceZblx4DmfUdRwJcNMscQv6TgFss4wJj1feEOHwiBAG6Mj87o/yEk8RNOOMltJHL99Srm0gGPQiA1SdDO+2ZdGnvrcLH30IqsZ/niy2V4eFS4BzGO5y4NLJrMGKf2JSMTIAYS5CYugiShXA</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jablonec.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jablonec.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jablonec.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jablonec.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Jablonec nad Nisou</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Jablonec nad Nisou</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Jablonec nad Nisou</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Jablonec nad Nisou</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.mestojablonec.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.mestojablonec.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://mkkl.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mkkl.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Kladno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Kladno</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Kladno</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Kladno</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mkkl.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mkkl.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="39">https://mkkl.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkkl.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkkl.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Kladno</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Kladno</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Kladno</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Kladno</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mkkl.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mkkl.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://mkmt.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mkmt.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Moravska Trebova</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Ladislava z Boskovic v Moravské Třebové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library in Moravska Trebova</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Ladislava z Boskovic v Moravské Třebové</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mkmt.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mkmt.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://mkmt.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkmt.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkmt.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkmt.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkmt.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Moravska Trebova</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Ladislava z Boskovic v Moravské Třebové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Moravska Trebova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Ladislava z Boskovic v Moravské Třebové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mkmt.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mkmt.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://mkostrov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mkostrov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Ostrov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Ostrov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Ostrov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Ostrov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mkostrov.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mkostrov.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="129">https://mkostrov.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkostrov.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkostrov.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkostrov.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkostrov.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Ostrov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Ostrov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Ostrov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Ostrov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://mkostrov.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://mkostrov.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://mktrutnov.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mktrutnov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal library with regional services in Trutnov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna s regionálními funkcemi Trutnov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal library with regional services in Trutnov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny s regionálními funkcemi Trutnov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mktrutnov.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mktrutnov.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="156">https://mktrut.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktrut.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktrut.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mktrut.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mktrut.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal library with regional services in Trutnov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna s regionálními funkcemi Trutnov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal library with regional services in Trutnov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna s regionálními funkcemi Trutnov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mktrutnov.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mktrutnov.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://mkvdf.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mkvdf.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Varnsdorf</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Varnsdorf</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Varnsdorf</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Varnsdorf</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mkvdf.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mkvdf.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="57">https://varnsdorf.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://varnsdorf.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://varnsdorf.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://varnsdorf.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://varnsdorf.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Varnsdorf</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Varnsdorf</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Varnsdorf</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Varnsdorf</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mkvdf.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mkvdf.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://mmct.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mmct.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Česká Třebová City Museum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městské muzeum Česká Třebová</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Česká Třebová City Museum</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městského muzea Česká Třebová</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mmct.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mmct.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="134">https://mmct.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID8zCCAtugAwIBAgIUZMH96JSHMI8bp9hdVTrXXedNG6gwDQYJKoZIhvcNAQELBQAwgYgxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEZMBcGA1UEAwwQbW1jdC5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MB4XDTI1MDQyNDExMTQxOFoXDTM1MDQyNTExMTQxOFowgYgxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEZMBcGA1UEAwwQbW1jdC5pZHAucmJpdC5jejEbMBkGCSqGSIb3DQEJARYMcmJpdEByYml0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtDzgPeoNyI5aEGjkj1pbG+QiBZAJqf23dUBMda2cOmzp4UTlaCjgzMLUOAeJmaCoNhymdv1beg3mZEqdkLqLhIfSbcJoATXTyySx/MZrjrtipefq3loldLeK1HeoHMPGrj28yojRw0Ep/fAR+hVjiMdSL3vC1qNPAmmUz5qDhr8FY3qvQH1G0fuqe7Aw7p3axxHtZM6/HoRwSaawCNpEUgeK1fGeuaftpaELN/OzsBFI03AXSNkYfHh+99MJKHy9cUXC2sXgpTqE69agZEipjudXtFknkEEzBaBF1mTRdw27q0VV2jttxcxXgWqMa4rasGz6OgmArh1tTSXS/7KTRwIDAQABo1MwUTAdBgNVHQ4EFgQUQhRwwwG4kW5M7jBX4JLWBPQ0SpswHwYDVR0jBBgwFoAUQhRwwwG4kW5M7jBX4JLWBPQ0SpswDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAg75xIvstnPKcFrLffjjJT2vzNUag6VorXStxBUPA/wt7Dy62r5RdnUNWGFmpHiK1BTd5TSK/2opbwPtIafi7ll44wpvqWzGQZoOSvqj6H3w8NMYXwV4IKb66DOJMQY8DR5+aBzsFsJnzyVWimEPaCs87u1X4cZViPBIfLBeyJXDiK7qGNcw38OFkp5mtvvmQE4tbgXbx+gypNhFSB+kApBAOl3Lb2X+nDmTmtHgogiiG9RmCRRG16A3DuyBiFG+W6zj3xBi+LASVgy1WAKg9AhVypMX9Zq8bNQxml7uZ5BJPG2nIjdXS+3P0TLY3yP8YlwAAVaauKunGqtsp7jOppQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mmct.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mmct.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mmct.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mmct.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Česká Třebová City Museum</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městské muzeum Česká Třebová</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Česká Třebová City Museum</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městské muzeum Česká Třebová</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mmct.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mmct.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <ns0:EntityDescriptor xmlns:ns0="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ns1="http://www.w3.org/2000/09/xmldsig#" xmlns:ns2="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ns3="urn:mace:shibboleth:metadata:1.0" xmlns:ns4="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://mojeid.cz/saml/idp.xml">
    <ns0:Extensions>
      <ns2:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#ripemd160"/>
      <ns2:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <ns2:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <ns2:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <ns2:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <ns2:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-ripemd160"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha224"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <ns2:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </ns0:Extensions>
    <ns0:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <ns0:Extensions>
        <ns3:Scope regexp="false">mojeid.cz</ns3:Scope>
        <ns4:UIInfo>
          <ns4:DisplayName xml:lang="en">MojeID</ns4:DisplayName>
          <ns4:DisplayName xml:lang="cs">MojeID</ns4:DisplayName>
          <ns4:Description xml:lang="en">MojeID Identity Provider</ns4:Description>
          <ns4:Description xml:lang="cs">Poskytovatel identity MojeID</ns4:Description>
          <ns4:Logo height="40" width="141">https://www.mojeid.cz/public/media/1559730774/162/</ns4:Logo>
          <ns4:InformationURL xml:lang="en">https://www.mojeid.cz</ns4:InformationURL>
          <ns4:InformationURL xml:lang="cs">https://www.mojeid.cz</ns4:InformationURL>
        </ns4:UIInfo>
      </ns0:Extensions>
      <ns0:KeyDescriptor use="signing">
        <ns1:KeyInfo>
          <ns1:X509Data>
            <ns1:X509Certificate>MIIGlzCCBH+gAwIBAgIICe+rw42knmYwDQYJKoZIhvcNAQELBQAwgYYxCzAJBgNV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</ns1:X509Certificate>
          </ns1:X509Data>
        </ns1:KeyInfo>
      </ns0:KeyDescriptor>
      <ns0:KeyDescriptor use="signing">
        <ns1:KeyInfo>
          <ns1:X509Data>
            <ns1:X509Certificate>MIIEfjCCA9+gAwIBAgIIVdU2L09mZrkwCgYIKoZIzj0EAwQwgZsxCzAJBgNVBAYT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</ns1:X509Certificate>
          </ns1:X509Data>
        </ns1:KeyInfo>
      </ns0:KeyDescriptor>
      <ns0:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</ns0:NameIDFormat>
      <ns0:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</ns0:NameIDFormat>
      <ns0:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mojeid.cz/saml/sso/redirect/"/>
      <ns0:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mojeid.cz/saml/sso/post/"/>
    </ns0:IDPSSODescriptor>
    <ns0:Organization>
      <ns0:OrganizationName xml:lang="cs">CZ.NIC</ns0:OrganizationName>
      <ns0:OrganizationName xml:lang="en">CZ.NIC</ns0:OrganizationName>
      <ns0:OrganizationDisplayName xml:lang="cs">CZ.NIC</ns0:OrganizationDisplayName>
      <ns0:OrganizationDisplayName xml:lang="en">CZ.NIC</ns0:OrganizationDisplayName>
      <ns0:OrganizationURL xml:lang="cs">https://www.nic.cz</ns0:OrganizationURL>
      <ns0:OrganizationURL xml:lang="en">https://www.nic.cz</ns0:OrganizationURL>
    </ns0:Organization>
    <ns0:ContactPerson contactType="technical">
      <ns0:GivenName>mojeID</ns0:GivenName>
      <ns0:SurName>Support</ns0:SurName>
      <ns0:EmailAddress>mailto:podpora@mojeid.cz</ns0:EmailAddress>
    </ns0:ContactPerson>
  </ns0:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mooc.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MOOC</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MOOC</mdui:DisplayName>
          <mdui:Description xml:lang="en">Massive Open Online Courses</mdui:Description>
          <mdui:Description xml:lang="cs">Hromadné online kurzy</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://mooc.cuni.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://mooc.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mooc.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mooc.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>102029</ds:KeyName>
          <ds:KeyName>mooc.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=CZ,O=Charles University,CN=mooc.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDYzCCAkugAwIBAgIUDIQRFfg3QnyyfXjP6R2JZXdbmhowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mooc.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://moodle.ics.muni.cz/simplesamlphp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Moodle ÚVT MUNI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Moodle ICS MUNI</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Moodle pro Ústav Výpočetní Techniky Masarykovy University</mdui:Description>
          <mdui:Description xml:lang="en">Moodle for Institute of Computer Sciences of Masaryk University</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://moodle.ics.muni.cz/?lang=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://moodle.ics.muni.cz/?lang=en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle ICS MUNI</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle ICS MUNI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle ICS MUNI</md:ServiceDescription>
        <md:ServiceDescription xml:lang="es">Moodle ICS MUNI</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">ÚVT MUNI</md:OrganizationName>
      <md:OrganizationName xml:lang="en">ICS MUNI</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav Výpočetní Techniky - Masarykova Universita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Computer Sciences - Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://ics.muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://ics.muni.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Matúš</md:GivenName>
      <md:SurName>Raček</md:SurName>
      <md:EmailAddress>mailto:racek@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://moodle.lfhk.cuni.cz/shibboleth/eduid/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle - Charles univesity, Medical faculty in Hradec Kralove</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle - Univerzita Karlova, Lékařská fakulta v Hradci Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">E-learning</mdui:Description>
          <mdui:Description xml:lang="cs">E-learning</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://moodle.lfhk.cuni.cz/moodle2/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://moodle.lfhk.cuni.cz/moodle2/</mdui:InformationURL>
          <mdui:Logo height="75" width="1306">https://moodle.lfhk.cuni.cz/moodleadds/loga/hlavicka_2017.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>matous.lfhk.cuni.cz</ds:KeyName>
          <ds:KeyName>moodle.lfhk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=moodle.lfhk.cuni.cz,O=Univerzita Karlova,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGrTCCBZWgAwIBAgIQAqnBh0d1mbAlgJVcgnTG2zANBgkqhkiG9w0BAQsFADBk
MQswCQYDVQQGEwJOTDEWMBQGA1UECBMNTm9vcmQtSG9sbGFuZDESMBAGA1UEBxMJ
QW1zdGVyZGFtMQ8wDQYDVQQKEwZURVJFTkExGDAWBgNVBAMTD1RFUkVOQSBTU0wg
Q0EgMzAeFw0yMDA0MjcwMDAwMDBaFw0yMjA1MDIxMjAwMDBaMFkxCzAJBgNVBAYT
AkNaMQ8wDQYDVQQHEwZQcmFndWUxGzAZBgNVBAoTElVuaXZlcnppdGEgS2FybG92
YTEcMBoGA1UEAxMTbW9vZGxlLmxmaGsuY3VuaS5jejCCASIwDQYJKoZIhvcNAQEB
BQADggEPADCCAQoCggEBAK52u3CDiM77PuG0B4oYw1Ppb1YsjiQeZf8oRDwJGV3f
8uxdeT66vWU5mN+9+FP8ULEQfB5tG8oxOQAkY/GU8Xh1Sgjoy087qb3aQ5RS4tQo
izgSSKUb0R/m8XaIACMUtSDI0R6MSoZMoIYHsPtersbeh/VXM4TNXPIWr2Gigz2d
mcXx0n2w50PXKoCwkC46tOjTD+j3UyATJIBC+s2pRMUs+7S+fjqUPaQifKtPmGuE
Y+Z8hXBkc+RNoOV6Y2HQ8x5wqc/+fOBqsNZEoB0aSErCDWV81m1R8EuDxc0S175+
UIFON/9lPevxXBNLWoJYsY6pOpn1xG780Kl9jikzKokCAwEAAaOCA2QwggNgMB8G
A1UdIwQYMBaAFGf9iCAUJ5jHCdIlGbvpURFjdVBiMB0GA1UdDgQWBBRGandvg9/p
59fjh66pOKMQ+w99GDAzBgNVHREELDAqghNtb29kbGUubGZoay5jdW5pLmN6ghNt
YXRvdXMubGZoay5jdW5pLmN6MA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggr
BgEFBQcDAQYIKwYBBQUHAwIwawYDVR0fBGQwYjAvoC2gK4YpaHR0cDovL2NybDMu
ZGlnaWNlcnQuY29tL1RFUkVOQVNTTENBMy5jcmwwL6AtoCuGKWh0dHA6Ly9jcmw0
LmRpZ2ljZXJ0LmNvbS9URVJFTkFTU0xDQTMuY3JsMEwGA1UdIARFMEMwNwYJYIZI
AYb9bAEBMCowKAYIKwYBBQUHAgEWHGh0dHBzOi8vd3d3LmRpZ2ljZXJ0LmNvbS9D
UFMwCAYGZ4EMAQICMG4GCCsGAQUFBwEBBGIwYDAkBggrBgEFBQcwAYYYaHR0cDov
L29jc3AuZGlnaWNlcnQuY29tMDgGCCsGAQUFBzAChixodHRwOi8vY2FjZXJ0cy5k
aWdpY2VydC5jb20vVEVSRU5BU1NMQ0EzLmNydDAMBgNVHRMBAf8EAjAAMIIBfwYK
KwYBBAHWeQIEAgSCAW8EggFrAWkAdgApeb7wnjk5IfBWc59jpXflvld9nGAK+PlN
XSZcJV3HhAAAAXG7VeOfAAAEAwBHMEUCIHo9/osLQv1VLwUMWfOk1ImjGb+sPIuE
cA6PntHv5ZhpAiEA8R0WIGtZgj+MX2jxQCBtEwEuAa9yjstCqtJOA5PCRzEAdwAi
RUUHWVUkVpY/oS/x922G4CMmY63AS39dxoNcbuIPAgAAAXG7VePXAAAEAwBIMEYC
IQC1FRyJI0Ii+A9kKVcAkz1vWgCBbaXRHYJSpM5WrsChNwIhAIhksx9VHeuydtk+
/xe+scjZ+gafhlr7GbgHKrF0HKAEAHYAUaOw9f0BeZxWbbg3eI8MpHrMGyfL956I
QpoN/tSLBeUAAAFxu1XkCwAABAMARzBFAiEAxvoHXW6/xNC3N2RG83b5/1efSu9j
Zsv4kbIULGF8AWUCIFxKZdNE5x89GiGQ5fy8iWRP2NKvbp8d1CW2qnxdRNHpMA0G
CSqGSIb3DQEBCwUAA4IBAQBOAN32YYYjzNd22OJs2ihtFldE6YVouCIdqvFLRtZR
TjzZ+rPc/e+tqmFB9Tsqz5rsV0p1X00S03Xi8hu74Re2v+2G3LCDFev6D4fIen2B
7OGInk1QVoofcQa3KNDlHjRJ7cznJROKX766nRG18Bh6EWVsanCmxXb9KAX92rKG
HeIYT+YQJydwuZeOOYtAgtRcRZGEykPDDyeHj+Xhq1/zuqV6lr0mCkziju6IVLp0
RymjATRk4xWxOppqoIwi67PVTIY9DYXSfRsZs+5xpKs0159NCRNJqwd36VPJ/KWk
gGFLt2y8f2E2L5HIgIpBUx5D7Kdz8BQF/kbtWP2L6lZk</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfhk.cuni.cz/default.aspx/?lang=en-GB</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfhk.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Kváš</md:SurName>
      <md:EmailAddress>mailto:kvaso@lfhk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://moodle.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Moodle system</mdui:Description>
          <mdui:Description xml:lang="cs">Moodle systém</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://moodle.lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://moodle.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://moodle.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>moodle.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=moodle.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIUfLllYB5QfW0TeS8dgasMG5WMZoQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Moodle systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lfp.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://moodle.mefanet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle-MEFANET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle-MEFANET</mdui:DisplayName>
          <mdui:Description xml:lang="en">E-learning courses Moodle-MEFANET</mdui:Description>
          <mdui:Description xml:lang="cs">E-learningové kurzy Moodle-MEFANET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://moodle.mefanet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://moodle.mefanet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://moodle.mefanet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://moodle.mefanet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>moodle.mefanet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=moodle.mefanet.cz,O=Masarykova univerzita,L=Brno,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDtTCCAp2gAwIBAgIJAMAvFYbTe4E9MA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.mefanet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Central Library of Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Central Library of Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://library.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://munin2.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Semikuv munin</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Šemíkův munin</mdui:DisplayName>
          <mdui:Description xml:lang="en">Semikuv munin</mdui:Description>
          <mdui:Description xml:lang="cs">Šemíkův munin</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://munin2.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://munin2.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://munin2.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://munin2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://munin2.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://munin2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>munin2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=munin2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAIuuWWhq/MYzMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
BAMTEG11bmluMi5jZXNuZXQuY3owHhcNMTUxMDAyMTExNzM1WhcNMjUwOTI5MTEx
NzM1WjAbMRkwFwYDVQQDExBtdW5pbjIuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAvbJHxB8pSTLdZ/LZboeqeACOYdrE+INXWEX73KsU
TAyHKuF9v8DoCY4rb7Wxp0E37d6cpPRyvs2zef1o9ys8P3B/KFMH0TA66U//NjNo
YOuUCFNwcgnCZvxUGtFNJztk7d8Ps2XJi1tKgabMFMiCDbeG/hz6nXP4fZUXaAZq
EeZIAUGrz3/Z1G3Lp83l9r1KxMDjaWxqOc+fljGh05s/e0i6kcVo9zsdM1PpIzEe
vocWKwLG34KrH+eIztRWTXjMqJTea8qyEbT03WO7/lW2SwBQliTaC6c09NhhLP3c
1grQdn/DMf3ti27GxsvxBFkbN/Q0KfkQUtbogeivrKoEQwIDAQABo2MwYTBABgNV
HREEOTA3ghBtdW5pbjIuY2VzbmV0LmN6hiNodHRwczovL211bmluMi5jZXNuZXQu
Y3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUGuBXfJ6awZfbbthpgame94qnYS4wDQYJ
KoZIhvcNAQEFBQADggEBAFv9/tC9YAJzdzgUpPjftMwJQCBd8UzomSDSqB8pCHWa
4wghkAsd50cjrbEV613/+v8o3XRnpm80pCHHSdvsY0qyeuweFYPwUIElA14tBshy
RglvnRUE0W3dVTeTqae6WgXwNGhM2xJVOL4HaV4tRGzfYcumOiYIuT/cGtERhNUi
BCImCgaZxxmDxaPQfAxc2mbOqGxsnBsJ5+Yu4J2LiQXRWLl1Eu9F1NHVLOb3mx+0
4d6WfQWdtX5fo4kq/bkbkMllQXsV0tK81fG32uFzu+kfi6CV9MGgVmpEL+QQzLQ0
bICipBckpmFyMr1AXZud+WYAOt/N+Y9hH2RW4sFzVQM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://munin2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>munin2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=munin2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAIuuWWhq/MYzMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
BAMTEG11bmluMi5jZXNuZXQuY3owHhcNMTUxMDAyMTExNzM1WhcNMjUwOTI5MTEx
NzM1WjAbMRkwFwYDVQQDExBtdW5pbjIuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAvbJHxB8pSTLdZ/LZboeqeACOYdrE+INXWEX73KsU
TAyHKuF9v8DoCY4rb7Wxp0E37d6cpPRyvs2zef1o9ys8P3B/KFMH0TA66U//NjNo
YOuUCFNwcgnCZvxUGtFNJztk7d8Ps2XJi1tKgabMFMiCDbeG/hz6nXP4fZUXaAZq
EeZIAUGrz3/Z1G3Lp83l9r1KxMDjaWxqOc+fljGh05s/e0i6kcVo9zsdM1PpIzEe
vocWKwLG34KrH+eIztRWTXjMqJTea8qyEbT03WO7/lW2SwBQliTaC6c09NhhLP3c
1grQdn/DMf3ti27GxsvxBFkbN/Q0KfkQUtbogeivrKoEQwIDAQABo2MwYTBABgNV
HREEOTA3ghBtdW5pbjIuY2VzbmV0LmN6hiNodHRwczovL211bmluMi5jZXNuZXQu
Y3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUGuBXfJ6awZfbbthpgame94qnYS4wDQYJ
KoZIhvcNAQEFBQADggEBAFv9/tC9YAJzdzgUpPjftMwJQCBd8UzomSDSqB8pCHWa
4wghkAsd50cjrbEV613/+v8o3XRnpm80pCHHSdvsY0qyeuweFYPwUIElA14tBshy
RglvnRUE0W3dVTeTqae6WgXwNGhM2xJVOL4HaV4tRGzfYcumOiYIuT/cGtERhNUi
BCImCgaZxxmDxaPQfAxc2mbOqGxsnBsJ5+Yu4J2LiQXRWLl1Eu9F1NHVLOb3mx+0
4d6WfQWdtX5fo4kq/bkbkMllQXsV0tK81fG32uFzu+kfi6CV9MGgVmpEL+QQzLQ0
bICipBckpmFyMr1AXZud+WYAOt/N+Y9hH2RW4sFzVQM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://munin2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Semikuv munin</md:ServiceName>
        <md:ServiceName xml:lang="cs">Šemíkův munin</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Semikuv munin</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Šemíkův munin</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Bělina</md:SurName>
      <md:EmailAddress>mailto:jan.belina@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Čáslavský</md:SurName>
      <md:EmailAddress>mailto:jan.caslavsky@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://muzeumcaslav.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">muzeumcaslav.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Museum and Library in Caslav</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městské muzeum a knihovna Čáslav</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Museum and Library in Caslav</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městského muzea a knihovny Čáslav</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://muzeumcaslav.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://muzeumcaslav.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="125">https://mkcaslav.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkcaslav.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkcaslav.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mkcaslav.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mkcaslav.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Museum and Library in Caslav</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městské muzeum a knihovna Čáslav</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Museum and Library in Caslav</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městské muzeum a knihovna Čáslav</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://muzeumcaslav.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://muzeumcaslav.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nagios.cesnet.cz/shibboleth/sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nagios.cesnet.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>nagios-sp</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagios-sp</ds:X509SubjectName>
            <ds:X509Certificate>MIICpDCCAYwCCQDh7Lr0fB1NuDANBgkqhkiG9w0BAQUFADAUMRIwEAYDVQQDEwlu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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>nagios-sp</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagios-sp</ds:X509SubjectName>
            <ds:X509Certificate>MIICpDCCAYwCCQDh7Lr0fB1NuDANBgkqhkiG9w0BAQUFADAUMRIwEAYDVQQDEwlu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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <OrganizationName xml:lang="en">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ces.net/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <GivenName>Vladimir</GivenName>
      <SurName>Trestik</SurName>
      <EmailAddress>Vladimir.Trestik@cesnet.cz</EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nagios.du3.cesnet.cz/shibboleth/sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>nagios.du3.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagios.du3.cesnet.cz,O=Cesnet,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIC9jCCAd4CCQCTfDuPk0QChjANBgkqhkiG9w0BAQsFADA9MQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky - administrator</md:SurName>
      <md:EmailAddress>du-support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nagiosx.cesnet.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Nagios service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Nagios služba</mdui:DisplayName>
          <mdui:Description xml:lang="en">Monitoring system services</mdui:Description>
          <mdui:Description xml:lang="cs">Monitorovací systém služeb</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nagiosx.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nagiosx.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://nagiosx.cesnet.cz/shibboleth/sp</ds:KeyName>
          <ds:KeyName>nagiosx.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagiosx.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELjCCApagAwIBAgIUUHWW3t696pztkD0RFO16KUv9DX8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Monitoring system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Monitorovací systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Monitoring system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitorovací systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Miloš</md:GivenName>
      <md:SurName>Wimmer</md:SurName>
      <md:EmailAddress>mailto:wimmer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://naos-be.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Publication repository of the University of West Bohemia.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Publication repository of the University of West Bohemia.</mdui:Description>
          <mdui:Description xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna.zcu.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://naos-be.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://naos-be.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>naos-be.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=naos-be.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEITCCAomgAwIBAgIUW9AyNFd1Mz32nBOhGbIE1TLDzjIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://naos-be.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Publication repository of the University of West Bohemia.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Publication repository of the University of West Bohemia.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:mace:dir:attribute-def:eduPersonEntitlement" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://natur.chemgen.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ScreenX</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ScreenX</mdui:DisplayName>
          <mdui:Description xml:lang="en">Software for HTS data managment.</mdui:Description>
          <mdui:Description xml:lang="cs">Software pro správu dat z HTS.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.openscreen.cz/en/node/97</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.openscreen.cz/cs/node/98</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://openscreen.cz/sites/default/files/openscreen-logo-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://natur.chemgen.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://natur.chemgen.cz/shibboleth</ds:KeyName>
          <ds:KeyName>natur.chemgen.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=natur.chemgen.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAJjYvt0CPvI8MA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
BAMTEG5hdHVyLmNoZW1nZW4uY3owHhcNMTgwODA4MTIyMzEyWhcNMjgwODA1MTIy
MzEyWjAbMRkwFwYDVQQDExBuYXR1ci5jaGVtZ2VuLmN6MIIBojANBgkqhkiG9w0B
AQEFAAOCAY8AMIIBigKCAYEAnIhSh0wt/Budbfucb5vn3D6pZxirdVtQBP4QvQfU
+/qRMFEyeKGIAe5jmtzvHSZ+db024TeL/XkUzPnYrZmbrqQruolzXmlkF2myx2DT
Yum62FDaWz/39ZnKmn2uAJMts4NFB7z9MTIyFrEKmvlD75ylaAIRXqv6tWdQqu0t
buYMkP7JBODIUWQOrpZI9YbyH0jRNov1NcMdFGFcjKorbXL/ogwffI9x+kpalaMv
iuBHtqFTDbX/TLxCPvEA1lK9GGQCHpUHupQeQBqY4CbN3jR+VCoOOUTWsPyupYfw
ErKALlTrWcScq1rmyrfU8a18+NtKQlvL7pG4dceRdA7h20pkqKpH4CRKJF0wTLY5
U8tNHYvyM/Dac5AhF/EjOKfhtC3D8W9tZeCm7D8vwnxYU9BjqdqAlaRRiM+2/+r9
zdy8aEh4rkUnJFANqcLMWny8jekESZFIiLq3I8fIkqurowKJWFsbaRwTIRVrRK2C
Lbyhl9TlNPAZOuPZWXACSJk/AgMBAAGjYzBhMEAGA1UdEQQ5MDeCEG5hdHVyLmNo
ZW1nZW4uY3qGI2h0dHBzOi8vbmF0dXIuY2hlbWdlbi5jei9zaGliYm9sZXRoMB0G
A1UdDgQWBBTYGmQUsku6RYHh1aKrZc4kkA6gSzANBgkqhkiG9w0BAQsFAAOCAYEA
LLpCfZOk7JGAdXGnztowb5Tfp4WYo6+F3wh0CvsxXYh8aggu9sfeE9LarYq1Mg6M
2tmCl9JnS7e7RzD4lf3FeIyCEEffKY5uTBDdAFIgGEue33km8SNZRfrnRv+8iADv
tRlE6GRdasA8PZs1NtfeV5EKKWx8yN4lOx9bivhpcpwROkSSs0Rta3Pk444kqK3k
+Ex8EaFnk7sfY4zcJr1AwvxWHHIcJz6WQzG4CrJVwyK0hvRrp0SqMCGHZo7/4QKi
/UhsE882RlxVADjrcKSzu2R/nq69X3pgoY6WxEjeqdY7XmxpsT5Mhnuy4/WaHruU
HixH8zY+nQNBSM9cmvP2u/tQGBzvsIT9CXCuM4FAmb8ljVeQBUzN6JwaV5KG0fdc
Zu+PH3J7ixStbMmQDqHlyATcK1TOqZneGBdkU/GUAajfXIuNu/CtB1Z/0SE2b0Qn
DM6FkK/wMLP8JSfWVqJkEmVliOPLq11qH1iw4ozGKbhd8ktXXO0Npkfysqrp54bS</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://natur.chemgen.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Ústav molekulární genetiky AV ČR, v. v. i., CZ-OPENSCREEN: Národní infrastruktura chemické biologie</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Institute of Molecular Genetics of the Czech Academy of Sciences, CZ-OPENSCREEN: National Infrastructure for Chemical Biology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.openscreen.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.openscreen.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Zacek</md:SurName>
      <md:EmailAddress>mailto:michal.zacekm@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Ruzicka</md:SurName>
      <md:EmailAddress>mailto:jiri.ruzicka@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ndk.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ndk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ndk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ndk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ndk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALRcjcUc8+IRMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJAKVopkgCz7YuMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ndk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ndk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ndk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ndk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ndk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ndk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ndk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ndk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ndk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">National Digital Library</md:ServiceName>
        <md:ServiceName xml:lang="cs">Národní digitální knihovna</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Národní Digital Library</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Národní digitální knihovna</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUnscopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Holomek</md:SurName>
      <md:EmailAddress>mailto:jan.holomek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor entityID="https://negistry.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://negistry.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://negistry.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>negistry.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=negistry.cesnet.cz,O=Internet Widgits Pty Ltd,ST=Some-State,C=AU</ds:X509SubjectName>
            <ds:X509Certificate>MIIDlzCCAn+gAwIBAgIJAIuKkUM/hefbMA0GCSqGSIb3DQEBCwUAMGIxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://negistry.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Kácha</SurName>
      <EmailAddress>mailto:ph@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://neon.cesnet.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web neon.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web neon.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web neon.cesnet.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web neon.cesnet.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://neon.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://neon.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://neon.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://neon.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://neon.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>neon.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=neon.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUCLH+7LdzLfoEG6MZTG0aei6kcAYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://neon.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web neon.cesnet.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web neon.cesnet.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web neon.cesnet.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web neon.cesnet.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nerd-cti.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NERD for CTI project</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NERD pro projekt CTI</mdui:DisplayName>
          <mdui:Description xml:lang="en">Network Entity Reputation Database (NERD). A database of known malicious IP addresses and other entities (instance of the CTI project)</mdui:Description>
          <mdui:Description xml:lang="cs">Network Entity Reputation Database (NERD). Databáze známých škodlivých IP adres a jiných entit (instance pro projekt CTI)</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nerd-cti.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nerd-cti.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://nerd-cti.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>nerd-cti.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nerd-cti.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUKG4YUiZqJdTA2rTtausnWis24Q8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">NERD for CTI project</md:ServiceName>
        <md:ServiceName xml:lang="cs">NERD pro projekt CTI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Network Entity Reputation Database (NERD). A database of known malicious IP addresses and other entities (instance of the CTI project)</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Network Entity Reputation Database (NERD). Databáze známých škodlivých IP adres a jiných entit (instance pro projekt CTI)</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Bartoš</md:SurName>
      <md:EmailAddress>mailto:bartos@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nerd.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nerd.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nerd.cesnet.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NERD - Network Entity Reputation Database</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NERD - Network Entity Reputation Database</mdui:DisplayName>
          <mdui:Description xml:lang="en">Database of known malicious IP addresses and other entities, based on data from Warden and many other sources.</mdui:Description>
          <mdui:Description xml:lang="cs">Databáze známých škodlivých IP adres a jiných entit, založená na datech ze systému Warden a mnoha dalších zdrojů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nerd.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nerd.cesnet.cz/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://nerd.cesnet.cz/privacy-policy.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://nerd.cesnet.cz/privacy-policy.html</mdui:PrivacyStatementURL>
          <mdui:Logo height="40" width="99">https://whoami.cesnet.cz/idp/images/cesnet-logo-40.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>nerd.liberouter.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nerd.liberouter.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIEADCCAmigAwIBAgIJAKxtaqHB8b6zMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">NERD - Network Entity Reputation Database</md:ServiceName>
        <md:ServiceName xml:lang="cs">NERD - Network Entity Reputation Database</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Database of known malicious IP addresses and other entities, based on data from Warden and many other sources.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Databáze známých škodlivých IP adres a jiných entit, založená na datech ze systému Warden a mnoha dalších zdrojů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cesnet.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Václav</GivenName>
      <SurName>Bartoš</SurName>
      <EmailAddress>mailto:bartos@cesnet.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://netreport.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web netreport.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web netreport.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web netreport.cesnet.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web netreport.cesnet.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://netreport.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://netreport.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://netreport.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://netreport.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://netreport2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>netreport2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=netreport2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUZ2u0zJh9ISBGHoTHvb87x1kUk14wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web netreport.cesnet.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web netreport.cesnet.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web netreport.cesnet.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web netreport.cesnet.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://netreport2.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web netreport2.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web netreport2.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web netreport2.cesnet.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web netreport2.cesnet.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://netreport2.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://netreport2.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://netreport2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://netreport2.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://netreport2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>netreport2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=netreport2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUZ2u0zJh9ISBGHoTHvb87x1kUk14wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web netreport2.cesnet.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web netreport2.cesnet.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web netreport2.cesnet.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web netreport2.cesnet.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://nevel.cesnet.cz/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2016-05-27T10:03:24Z"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Nevel</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Nevel</mdui:DisplayName>
          <mdui:Description xml:lang="en">Pharook's Nevel</mdui:Description>
          <mdui:Description xml:lang="cs">Pharookův Nevel</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ces.net</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nevel.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nevel.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>nevel.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIIDkTCCAnmgAwIBAgIJAKobUmlXgU4wMA0GCSqGSIb3DQEBCwUAMF8xCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nevel.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kácha</md:SurName>
      <md:EmailAddress>mailto:ph@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nfsmon.ics.muni.cz/">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>nfsmon</ds:KeyName>
          <ds:KeyName>nfsmon.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nfsmon</ds:X509SubjectName>
            <ds:X509Certificate>MIIC7TCCAdWgAwIBAgIJAJxVliReAhGNMA0GCSqGSIb3DQEBBQUAMBExDzANBgNV
BAMTBm5mc21vbjAeFw0xMDA4MTcxMjQ1NDVaFw0yMDA4MTQxMjQ1NDVaMBExDzAN
BgNVBAMTBm5mc21vbjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMNc
tpffFXuKqtRleFt9exE6RAaYX0lzj+P4w0mMij8xTe7Wm6NjMJ/aHWFGgiYP/01k
gJFBAtiyqKmAD/VZEfTWE3R/2yd7Rqmq1/rqd6Cc/Ib0Fon821kHIgt3iAShGj08
uu1qDc+I1kM9veX4IHHcxEUzkJHq382HEjl9M+V+mBLtoCo1uQYenPQHV1iBHJYZ
3159oFh+NeFFLoKk38RsSpg7BnNmssV4XLexFOEO1FEmJ2W6eG3snt8ENg0E12gR
EtpZM/R26zih3fN1zTJ515vuZg2LAb3M2LWEmIbY3hOrfUj8rdydz4EZF19+BLKS
qYuZ5y7qRvOvCGsckCUCAwEAAaNIMEYwJQYDVR0RBB4wHIIGbmZzbW9uhhJuZnNt
b24uaWNzLm11bmkuY3owHQYDVR0OBBYEFGiS3uGX8c0ra6P5u7DdXvxbShJ1MA0G
CSqGSIb3DQEBBQUAA4IBAQAIG6ehSO8Dbssf0DVT32fNSC8JthUYh0jMsPafWHnN
p76v/VPo/SnRT/DRy7GxSYKYrFlY33mH5RJQ7DaX1oI8YttYlxGCyLOPeyDLttom
hqIRnVCqGiNgIRuvnhXf1cjZaWJpmGwTMQCd7f8Ah8k6z9QjV3hrkYO35xojHq+R
SlrCUTyE4nrfVddRTNktpf3Lfd2U+B687Yo5nepQOc530wOnHUPBa1d8E7tZp0pa
JRTqX+/OmXuLoljct75pxljletdpP0VEdOuDWl6M9HHU7lKYmzv6L1fGWx81HVsQ
XQ1bWz7hVdNUC7WKMyI5gX/owB4FCdmQu4dZL5J1joUc</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>nfsmon</ds:KeyName>
          <ds:KeyName>nfsmon.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nfsmon</ds:X509SubjectName>
            <ds:X509Certificate>MIIC7TCCAdWgAwIBAgIJAJxVliReAhGNMA0GCSqGSIb3DQEBBQUAMBExDzANBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University - Institute of Computer Science</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University - Institute of Computer Science</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Luznicky</md:SurName>
      <md:EmailAddress>luznijir@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://nipos.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">nipos.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Information and Consulting Centre for Culture</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní informační a poradenské středisko pro kulturu</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the National Information and Consulting Centre for Culture</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Národního informačního a poradenského střediska pro kulturu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.nipos.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.nipos.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://nipos.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID9TCCAt2gAwIBAgIUcZoqcItpAnptt5dq5ZkHZLAMzJwwDQYJKoZIhvcNAQELBQAwgYkxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEaMBgGA1UEAwwRbmlwb3MuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yMzAxMTAyMTQxMTFaFw0zMzAxMTAyMTQxMTFaMIGJMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxGjAYBgNVBAMMEW5pcG9zLmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDIz3Xp5xId6QrEV+CmsSqOxTt0DYkgZr+0NwOT1LPIUqBE+y1ji8b1OMC0NaBU2Zgw5y4UI5M4zPQVc4HkYsnTfwtI0lCBXSjYcKxry7wZ2BEgF7fZfpMFuzKUSF4JyA104m9d2MavsEcLYTPK4M5rkpeeWH6PHyPahYqdA6YfUc7p4z0dH5UlmRto2QgjS2tEo7c9vhZCo+9s0Z6rEUBtRf+RJV1eXZXrN/00DA/ySIu/xtVj1FkOqyOLcm/BHXAYmLgp3TOcPnBJK45Pw2Fk+eFjka45C9OuNoM9nUndPOtVnVhj6oXtDAhVUJtWvlMnh4Pm7jCF6MP6Lsnz03PXAgMBAAGjUzBRMB0GA1UdDgQWBBRIM2RLLMYB6J7MwL6sItfWgcmBwzAfBgNVHSMEGDAWgBRIM2RLLMYB6J7MwL6sItfWgcmBwzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA8rOleUL7TBrcZCzk15xhBAHs5rclazdQie+1e8QRzXDdgiwt/jyKyM2J9LGcnrcaAmVVgqNaxBX0OqplZJQk8ljQDpL59xXrVlsYlhsFj0Qch4dv5ujDkqKkQeZR7FhenDvnfcK1l9XOBd9yltx3sM/EPtWaBwST6eiaVLBQOeiwZF/ngiUMO0JYgcnYFkI9UnEZ7eykTOCCh+Vorc/QRr6FLvahULOdBctPLCNp34bnCFHLhRpH9eH2NdcVyT4BCe07xrD0HgZNtx9Zm3zZZs8ZnRESno/8H0dxNj4Wn0gtLscmRLNSHrdP1xkxlip2OyhQBITgJ+lqS0KSeRwB9</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID9TCCAt2gAwIBAgIUcZoqcItpAnptt5dq5ZkHZLAMzJwwDQYJKoZIhvcNAQELBQAwgYkxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwETW9zdDEZMBcGA1UECgwQUi1CaXQgVGVjaG5vbG9neTEaMBgGA1UEAwwRbmlwb3MuaWRwLnJiaXQuY3oxGzAZBgkqhkiG9w0BCQEWDHJiaXRAcmJpdC5jejAeFw0yMzAxMTAyMTQxMTFaFw0zMzAxMTAyMTQxMTFaMIGJMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBE1vc3QxGTAXBgNVBAoMEFItQml0IFRlY2hub2xvZ3kxGjAYBgNVBAMMEW5pcG9zLmlkcC5yYml0LmN6MRswGQYJKoZIhvcNAQkBFgxyYml0QHJiaXQuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDIz3Xp5xId6QrEV+CmsSqOxTt0DYkgZr+0NwOT1LPIUqBE+y1ji8b1OMC0NaBU2Zgw5y4UI5M4zPQVc4HkYsnTfwtI0lCBXSjYcKxry7wZ2BEgF7fZfpMFuzKUSF4JyA104m9d2MavsEcLYTPK4M5rkpeeWH6PHyPahYqdA6YfUc7p4z0dH5UlmRto2QgjS2tEo7c9vhZCo+9s0Z6rEUBtRf+RJV1eXZXrN/00DA/ySIu/xtVj1FkOqyOLcm/BHXAYmLgp3TOcPnBJK45Pw2Fk+eFjka45C9OuNoM9nUndPOtVnVhj6oXtDAhVUJtWvlMnh4Pm7jCF6MP6Lsnz03PXAgMBAAGjUzBRMB0GA1UdDgQWBBRIM2RLLMYB6J7MwL6sItfWgcmBwzAfBgNVHSMEGDAWgBRIM2RLLMYB6J7MwL6sItfWgcmBwzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA8rOleUL7TBrcZCzk15xhBAHs5rclazdQie+1e8QRzXDdgiwt/jyKyM2J9LGcnrcaAmVVgqNaxBX0OqplZJQk8ljQDpL59xXrVlsYlhsFj0Qch4dv5ujDkqKkQeZR7FhenDvnfcK1l9XOBd9yltx3sM/EPtWaBwST6eiaVLBQOeiwZF/ngiUMO0JYgcnYFkI9UnEZ7eykTOCCh+Vorc/QRr6FLvahULOdBctPLCNp34bnCFHLhRpH9eH2NdcVyT4BCe07xrD0HgZNtx9Zm3zZZs8ZnRESno/8H0dxNj4Wn0gtLscmRLNSHrdP1xkxlip2OyhQBITgJ+lqS0KSeRwB9</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nipos.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nipos.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nipos.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nipos.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Information and Consulting Centre for Culture</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní informační a poradenské středisko pro kulturu</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Information and Consulting Centre for Culture</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní informační a poradenské středisko pro kulturu</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.nipos.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nipos.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nkp-dev.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nkp.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Catalogue of the National Library on the portal Knihovny.cz</DisplayName>
          <Description xml:lang="en">Online catalogue of the National Library of the Czech Republic operated within the portal Knihovny.cz</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">Katalog Národní knihovny na portále Knihovny.cz</DisplayName>
          <Description xml:lang="cs">Online katalog Národní knihovny ČR provozovaný v rámci portálu Knihovny.cz</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nkp.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nkp.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Catalogue of the National Library on the portal Knihovny.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Katalog Národní knihovny na portále Knihovny.cz</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nnm.fm.tul.cz/shibboleth">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NNM portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NNM portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">Neisse Network Mechatronics portal of projects.</mdui:Description>
          <mdui:Description xml:lang="cs">Neisse Network Mechatronics portál projektů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nnm.fm.tul.cz/pages/about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nnm.fm.tul.cz/pages/about</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://liane.tul.cz/img/znak-tul.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nnm.fm.tul.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nnm.fm.tul.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://nnm.fm.tul.cz/shibboleth</ds:KeyName>
          <ds:KeyName>nnm.fm.tul.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nnm.fm.tul.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUbpuphXJdyNZTY5G6Udwn0eSH5s8wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nnm.fm.tul.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">NNM portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">NNM portál</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Neisse Network Mechatronics portal of projects.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Neisse Network Mechatronics portál projektů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">TUL</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">TUL</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jana</md:GivenName>
      <md:SurName>Vitvarová</md:SurName>
      <md:EmailAddress>mailto:jana.vitvarova@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://odevzdej.cz/shibboleth/">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://odevzdej.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Odevzdej.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Odevzdej.cz - Seminární a školní práce</mdui:DisplayName>
          <mdui:Description xml:lang="en">Odevzdej.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Odevzdej.cz - Seminární a školní práce.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://odevzdej.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://odevzdej.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://odevzdej.cz/pics/design/od/m/logotyp2.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://odevzdej.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>odevzdej.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=odevzdej.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDCTCCAfGgAwIBAgIJAIGuB86w2JKGMA0GCSqGSIb3DQEBBQUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://odevzdej.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>odevzdej.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=odevzdej.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDCTCCAfGgAwIBAgIJAIGuB86w2JKGMA0GCSqGSIb3DQEBBQUAMBYxFDASBgNV
BAMTC29kZXZ6ZGVqLmN6MB4XDTE5MDkzMDEzMTQyN1oXDTI5MDkyNzEzMTQyN1ow
FjEUMBIGA1UEAxMLb2RldnpkZWouY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw
ggEKAoIBAQDCdI0uH4taYQb1rssO9a+53Bd0VQxrvzNLWTlI2gDcX7HzmaZOCYAL
XUyMBeMmnsSrHMoU2UGdVp4JGZ3KOBiT3MCM7++j0jba1un2pnLSrzQ2ERgu71h/
LCwttujSRtFcrMleUgvtMGOBsSHLnFApRsLg3LfVIXPc6DgS78tfg/tQANx6S+um
jk768OQ1jIs9yoD3SAD3JXJ4R8lTtUhKFSpUjtCLaSZVrqAE5i0Y0bEGekdVpu3o
Fn7fK8wxTdL1rUQEnbMdnhtE0ni5JjNZaeAY1aIDsdbDooCh/gxxgC6IwvwlyPVZ
eDr5CkS5vsdl/ENkeuRe8h7Uivbe0wd9AgMBAAGjWjBYMDcGA1UdEQQwMC6CC29k
ZXZ6ZGVqLmN6hh9odHRwczovL29kZXZ6ZGVqLmN6L3NoaWJib2xldGgvMB0GA1Ud
DgQWBBSWvYFC/8qdL4krywWvaWTESL+ZOzANBgkqhkiG9w0BAQUFAAOCAQEABa6I
mCxWQqTyir4juC4KVgbAaV99fZyEfO4a5k8Ph0OvK2/XQ+di2lVxRkr2RCgOOViE
zkZHykPMk8wd/yG7vvsGCNbBTHnl1p5cXDwsZFNcy8PDvymWEb2UaJLWQjZHKt/v
1N7I216w+Fg4+speQcWoJQpTsc48LX/sIP4pFmqCfR1BcEnKnbvPYfmjw/ikPPnN
7TMgd/lwF7PnoLQVckAxN/r0NRNz3cQKdkSYdgekTakmnsaiSbS6s3Hjvohn+426
1PUb8u97Uraj9CrAgcshBXxuay3U7rjtp3V64obVdDthhnP7oNxxE7z0+bib7eES
KmCbx4MZPfy9dt1LEw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://odevzdej.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://odevzdej.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://odevzdej.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odevzdej.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odevzdej.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://odevzdej.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://odevzdej.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odevzdej.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odevzdej.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://odevzdej.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://odevzdej.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Prohlížeč atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy vydané vaším poskytovatelem identit.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Odevzdej.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Odevzdej.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Odevzdej.cz - Seminární a školní práce</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Odevzdej.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://odevzdej.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://odevzdej.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Stančík</md:SurName>
      <md:EmailAddress>mailto:odevzdej@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://onhb.cz/idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">onhb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Hospital Havlíčkův Brod</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Nemocnice Havlíčkův Brod</mdui:DisplayName>
          <mdui:Description xml:lang="en">Hospital Havlíčkův Brod, contributory organization</mdui:Description>
          <mdui:Description xml:lang="cs">Nemocnice Havlíčkův Brod, příspěvková organizace</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.onhb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.onhb.cz/</mdui:InformationURL>
          <mdui:Logo height="60" width="140">https://mail.onhb.cz/download/logo.jpg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVAOzYdTmeXphvkTgPrVaiLT1t5JwxMA0GCSqGSIb3DQEB
CwUAMBYxFDASBgNVBAMMC2lkcC5vbmhiLmN6MB4XDTIxMDUxMTEzMjM0MVoXDTQx
MDUxMTEzMjM0MVowFjEUMBIGA1UEAwwLaWRwLm9uaGIuY3owggGiMA0GCSqGSIb3
DQEBAQUAA4IBjwAwggGKAoIBgQCsEeli8GqFes62Pgoc+GSb+sWolWWV5p43rzPm
nyH7+Fj9DDgNhAhEH/yOdmZagUQHNTg6UVlrlOdUfiU/mY5lIuaf/laF2vlC4f1z
5RmBr6MKokk+LznlNr113HGA9duq5GMfX0ETt3JO6wsGU96HVlx32wSGPzMG7ebY
i6YiFGMQUPTGeN2UQu/X8B+ssrdoEVAlMhKFC+rBCmz3GBtDxSVbJLmVK8bteEkI
wfh4jsagetN9VT5FcKHI0/LCi0aweFaJz3Pufeo99aXPEdU8gvNQYMOLcYdSY3qD
Te5sUG5wDdlbbow6WYgQ30TMl0Tx+d3LRVSXmm+amgtDkUyiInSxCXmStAd1B/3Y
+WqPcea19pTZwmTBly5dpEyH/LB8Sw1T/xVPPUfJPZF0gQANs8EIt2h53tBvOMUq
7B9NFS2gIBRr1YlSe85bM+rW4kQxJ2acMjrBWI5OH0ZBoY+bJmmelKGzJPRLzU6m
CDO6ceBD+LaRoTXnq1USj4WUji8CAwEAAaNdMFswHQYDVR0OBBYEFBvsWbXtkopa
QTqM95TBtLwCvb9vMDoGA1UdEQQzMDGCC2lkcC5vbmhiLmN6hiJodHRwczovL2lk
cC5vbmhiLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBt+tyi
zsdLSqughNPhggtyky1mmhrnD2gKMUwhwQ4RNIxaYEJV/Qgiqg2dkrRaC2B32Jch
7KwEmnsGGRn27kWaUsGZGLA+/tvJeCBxTOuKvzAbWWbfB/WKxznHWIiXYsBiSQDR
0VKUKBMVOvZgWL5KNvPZdNJ4gQv7u04CInQk8mbFTO+YhymstwmmiYSNvc62RluJ
6IDU/kxkSed5Du6ndAk4D+syUQYyFt1U0ky0sizrrT3I6dkxjSwC3dXjJOQSYXfc
pdzHfhYogT3EqBUqzgDlpHQzVDifZC7xBGhibb1VAn/Regc5l5KbMblF47N31beO
OTeJAJ2qaSwPOo7xEi7SP9XNubx0hNcs/sJCLbUQPog5eG5lHHCQUKL0yWakv+Zh
ekjs/0x2B7Y/SpU0KL/5o6Hb8Chl25sz6I4LeQ00q5NI3n1W22OceutS8CiUAE7I
wx4A4YPELPFI1L5wbcgO1IOgX80xCDDqVekhl4Ll1pNCGodoXss5eqKmIUg=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIVALcNN3uT/p4QdWhB2ddOIU0B1sLcMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUacTbrH+MsDYJRmeqlyJlR+ZOUVEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.onhb.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.onhb.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.onhb.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.onhb.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Hospital Havlíčkův Brod</OrganizationName>
      <OrganizationName xml:lang="cs">Nemocnice Havlíčkův Brod</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Hospital Havlíčkův Brod</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Nemocnice Havlíčkův Brod</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.onhb.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.onhb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Milan</GivenName>
      <SurName>Křípal</SurName>
      <EmailAddress>mailto:milan.kripal@onhb.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://op51.futurebooks.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Softresource, spol. s r.o.</mdui:Description>
          <mdui:Description xml:lang="cs">Softresource, spol. s r.o.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://op51.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://op51.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://op51.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>op51.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=op51.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUTiPBrDRzbWfnU544yk22w0kjN4QwDQYJKoZIhvcNAQEL
BQAwHjEcMBoGA1UEAxMTb3A1MS5mdXR1cmVib29rcy5jejAeFw0yMTEwMTUxMzI0
MTZaFw0zMTEwMTMxMzI0MTZaMB4xHDAaBgNVBAMTE29wNTEuZnV0dXJlYm9va3Mu
Y3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQC3+QXntRorE41xaYBr
eEWAnponiSZdbDTrzx1yswwNxIFDE5ERRtfDNQbLJNw6Fhbp73uQb+S/72QtDFhG
PGNOAqZr1A4hjn8kEk9KbJ08zow5cGh8sxztO+5u49iwDqLBo41Wdh+hJD05Dofg
jJgaJ2AE7VccY1bJuzlhFrZX6F4v70dy6gNOblU9/9+61us7soN5ZZRg2jUDPXCu
Qd4vZwVowxM6nbXXzRg0gcnntK7PKhHlY2NY75D83yEHggmtgQkmQnvqRQQleuwl
o6/qRMg9ZoyY560UJeb1E6p5DoEIb6CDslZHOybEoQwJtQSiSf3tUfvA7P58f/RO
QeCx1filuja3z+9r/I7Es21gZLc5/odoglw8BgmIaEOKpHRwDaQzVvFIHLJM7r84
B26PcmyLkSmu/EuIu+ecHE7EZrlfAQX338IINA5tbTQuX4XYtGVCOtaRrWyM5G0i
V3QCQsPb7jbmJFsSCo49nb/ams76gU9DdBgFLmcXZAp04mMCAwEAAaNpMGcwRgYD
VR0RBD8wPYITb3A1MS5mdXR1cmVib29rcy5jeoYmaHR0cHM6Ly9vcDUxLmZ1dHVy
ZWJvb2tzLmN6L3NoaWJib2xldGgwHQYDVR0OBBYEFEnOo7aYwsuVh3ijmKp8vBlJ
g1U+MA0GCSqGSIb3DQEBCwUAA4IBgQCxa5IRV2Q7ry5UZJW7ZWK4wZQqMA+SRXJN
5CgA/RNBbloFfIdUrTHstX/p8T7hulNopVdEO7O8NkC/bM6nFmi4JK0rQ20hASoZ
HDnp0Db+4uQcdVi9t/FR4ye8e6cuav4J2guV+pvYI3gTvpcX8jUXzlG/bdtplfJC
x+nKu5MbvJyM1ndFzHQyZDDIaXBiUlitC5ufUa3H2GObuqUoo7FFl0b3qXJ0hS0k
2d2FNhiIsEPgPXYfcN2WFfCjfLc9BUWS00NRqLggzHDD1hfZDa+Ei5aYt/0IA2zD
cZrdt7xPAOnA7vikkxQu5dCVSzxpttyhtf4LVUfvmuSHTAHFI6FQlJBVKFFcKqYS
rlzj0pqYKiipYuPDNUx9rqhapWVO/ATm88MmJcYCXEfrL/jY4ykNCKKp2gyI6I7M
1ORU1M+XKF94fOsESBEuwt1cXFCs2QlXQrViFIxiE5dxvOmBhPGcwJ1Q/XcW20L0
VvrBnzWbDw4a+FDj+OEhMPHT/GPAzYM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://op51.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://openmoodle.phil.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">E-learning server</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">E-learningovy server</mdui:DisplayName>
          <mdui:Description xml:lang="en">Faculty of Arts Masaryk University e-learning server.</mdui:Description>
          <mdui:Description xml:lang="cs">E-learningový server Filozofické fakulty Masarykovy univerzity</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://openmoodle.phil.muni.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://openmoodle.phil.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="85">https://idp2.ics.muni.cz/muni_logo_85x40.png</mdui:Logo>
          <mdui:Logo height="685" width="1452">https://idp2.ics.muni.cz/muni_logo_1452x685.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://openmoodle.phil.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>openmoodle.phil.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=openmoodle.phil.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUB0TA9wZI9/YkZK0VZu9dzcB+GE0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">E-learning server</md:ServiceName>
        <md:ServiceName xml:lang="cs">E-learningovy server</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Faculty of Arts Masaryk University e-learning server.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-learningový server Filozofické fakulty Masarykovy univerzity</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>CIT FF MU</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:cit-sys@phil.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>E-learning</md:GivenName>
      <md:SurName>Office</md:SurName>
      <md:EmailAddress>mailto:elf@phil.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://opti.med.muni.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://opti.med.muni.cz/Shibboleth.sso/optimed"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://opti.med.muni.cz/Shibboleth.sso/optimed" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://opti.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://opti.med.muni.cz/Shibboleth.sso/Login" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://opti.med.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://opti.med.muni.cz/Shibboleth.sso/safeid" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>opti.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=opti.med.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIJAM1o7oUKiJ/tMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://opti.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Masaryk University</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Masaryk University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Masarykova univerzita</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.muni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Roman</GivenName>
      <SurName>Smid</SurName>
      <EmailAddress>smid@iba.muni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://orca.ruk.cuni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>orca.ruk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=orca.ruk.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDnTCCAoWgAwIBAgIJAOOzfO7BeV5fMA0GCSqGSIb3DQEBCwUAMGUxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://otik.uk.zcu.cz/dspace">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://otik.uk.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://otik.uk.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://otik.uk.zcu.cz/dspace</ds:KeyName>
          <ds:KeyName>otik.uk.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=otik.uk.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEDCCAfigAwIBAgIJAPQHbeVkagWbMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://otik.uk.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.zcu.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pakiti.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Pakiti</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Pakiti</mdui:DisplayName>
          <mdui:Description xml:lang="en">Patching status system</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro monitoring aktuálnosti software</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://pakiti.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://pakiti.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://pakiti.cesnet.cz/img/pakiti.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pakiti.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pakiti.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://pakiti.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>pakiti.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pakiti.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJANJMlKawUiftMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pakiti.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pakiti.csirt.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pakiti.egi.eu/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Pakiti</md:ServiceName>
        <md:ServiceName xml:lang="cs">Pakiti</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Patching status system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro monitoring aktuálnosti software</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET z.s.p.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET z.s.p.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET z.s.p.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET z.s.p.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Prochazka</md:SurName>
      <md:EmailAddress>mailto:michal.prochazka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Kouril</md:SurName>
      <md:EmailAddress>mailto:daniel.kouril@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://passivedns.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET PassiveDNS WEB GUI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET PassiveDNS WEB GUI</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET PassiveDNS WEB GUI</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET PassiveDNS WEB GUI</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://passivedns.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://passivedns.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAKCwQdCgDyyyMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://passivedns.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>passivedns.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=passivedns.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAKCwQdCgDyyyMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passivedns.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET PassiveDNS WEB GUI</md:ServiceName>
        <md:ServiceName xml:lang="cs">CESNET PassiveDNS WEB GUI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET PassiveDNS WEB GUI</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">CESNET PassiveDNS WEB GUI</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radko</md:GivenName>
      <md:SurName>Krkoš</md:SurName>
      <md:EmailAddress>mailto:krkos@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://pceidp01.nempk.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">nempk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Nemocnice Pardubického kraje, a.s.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Nemocnice Pardubického kraje, a.s.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Nemocnice Pardubického kraje, a.s. Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro Nemocnice Pardubického kraje, a.s.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.nempk.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.nempk.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="75" width="260">https://pceidp01.nempk.cz/logo_nempk.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAIBHy4Og9KFF0Ued6k/nF0xTCP0TMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAN0CKITqlssW1LclXzNqETET1h1kMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAKIkaa55vJCFtE5MLzPVz213oixQMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://pceidp01.nempk.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pceidp01.nempk.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pceidp01.nempk.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pceidp01.nempk.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://pceidp01.nempk.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pceidp01.nempk.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nempk.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAIBHy4Og9KFF0Ued6k/nF0xTCP0TMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAN0CKITqlssW1LclXzNqETET1h1kMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIVAKIkaa55vJCFtE5MLzPVz213oixQMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://pceidp01.nempk.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Nemocnice Pardubického kraje, a.s.</OrganizationName>
      <OrganizationName xml:lang="cs">Nemocnice Pardubického kraje, a.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Nemocnice Pardubického kraje</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Nemocnice Pardubického kraje</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.nempk.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.nempk.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Miloš</GivenName>
      <SurName>Koubek</SurName>
      <EmailAddress>mailto:milos.koubek@nempk.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pdns-dev.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET PassiveDNS WEB GUI Test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET PassiveDNS WEB GUI Test</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET PassiveDNS WEB GUI Test</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET PassiveDNS WEB GUI Test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUBlKYY8GlFNxoLRWAYbL4gcLcnCYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://pdns-dev.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>pdns-dev.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pdns-dev.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUBlKYY8GlFNxoLRWAYbL4gcLcnCYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET PassiveDNS WEB GUI Test</md:ServiceName>
        <md:ServiceName xml:lang="cs">CESNET PassiveDNS WEB GUI Test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET PassiveDNS WEB GUI Test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">CESNET PassiveDNS WEB GUI Test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radko</md:GivenName>
      <md:SurName>Krkoš</md:SurName>
      <md:EmailAddress>mailto:krkos@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pedf.cuni.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">pedf.cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">pedf.cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library  Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://pedf.cuni.futurebooks.cz/en/1-privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://pedf.cuni.futurebooks.cz/1-ochrana-soukromi</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://pedf.cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://pedf.cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://pedf.cuni.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>pedf.cuni.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pedf.cuni.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIERzCCAq+gAwIBAgIULzbp8Crt3IkVlraiDOGNzaGk67YwDQYJKoZIhvcNAQEL
BQAwIzEhMB8GA1UEAxMYcGVkZi5jdW5pLmZ1dHVyZWJvb2tzLmN6MB4XDTI0MDQy
NTA4MjUzMVoXDTM0MDQyMzA4MjUzMVowIzEhMB8GA1UEAxMYcGVkZi5jdW5pLmZ1
dHVyZWJvb2tzLmN6MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAye7s
DH/xWOiIBf5G7yU82khXxjfe4caijSOHBQN1gSHLJhYzO3IC0fFD6s+geUZKOUkI
vLs5w64hlVr/6sffcNG7x+elwKjgrA9r645atw+HEEbGyC1/aW2/BfyKW55iIKVE
yQz4TB6GPmQUnoKE5RcC5vQedijXRoh/AMayJ5SeMPptXb7z3PZu6zQnfCmshyBG
8yrDy06YIngoNlk0mabhdv9AWsAbqeQtP1nPA1pmLVTDFUsUGqFHcjRxqMKwljqW
ZO4imqY2beL/8BQsSYRMqGRxGo3xOrIibfFiAdvZ7HCDk7bUhy6pDzFERdCUrUmr
mgLax4XZvco5z3yNLiqv+zPk8P/koZuMXjD27bcn9/ZAgUzfvPwn6AHMEKsMvQGQ
n4ioBMRzyZ8zWLGSbYSKGM5KB3040IsVd2cw6c8SI74jYIMsFmxW9oT/a15f7cvL
qlLxppwH5A9oYmWjxfFiA4+1AViZSGFMRgHgesw/ViNsHhYi58zYWSOmp6izAgMB
AAGjczBxMFAGA1UdEQRJMEeCGHBlZGYuY3VuaS5mdXR1cmVib29rcy5jeoYraHR0
cHM6Ly9wZWRmLmN1bmkuZnV0dXJlYm9va3MuY3ovc2hpYmJvbGV0aDAdBgNVHQ4E
FgQUqrYJRarUthAz3vTWum1Et4rZTw0wDQYJKoZIhvcNAQELBQADggGBAC3HCRh4
R9NqgqNbZhbFms6B6Q92UZ2etTV3gQSZke/wNXVE5S34+xMijTCOAfTKcM6WdPRJ
+lmgiqPLftj51qTQ679YV3Gi23eYefMYQhS5wPa7Ilqc9y046xkEi6j3GE15KQP5
g23OpnpCrTRGW/fgeksG0I+R3Z/bp8994gPkdo2fiOSDamIYkX25QC6WQGXvRKgz
tVhP/bdOeD3HZlV4j0S0cE898z5PL4mBg020IDbsj2b58QCpNJUnZoMY03R6rEZ5
UHi8mxSoGn2YwI+HgqgB+H2ObqaY0eWhL+ZUHbifriO0B2HeVrhqA3/60Yz2LeVq
Z2MS8BeUOlW80g9HSAjTSg8bsLPUsTBwBadWnxut7ljzLR0YcerbjnWOgE3/7N0D
seGEt7OBWcrFDuGWjSkPlvL6tHatyohku0svyYhr0FqU0HgpN0Aqdzj0fnr06aBy
2r29Xm+3iZYwOB8DsLpnfQwITS9umLZYFlU4q8gyYOlG/rYxgYgq9WPRnw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pentest.cesnet.cz/sp/shibboleth">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VoIP Pentester</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">DoIP Pentester</mdui:DisplayName>
          <mdui:Description xml:lang="en">VoIP Pentester</mdui:Description>
          <mdui:Description xml:lang="cs">VoIP Pentester</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://pentest.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://pentest.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.cesnet.cz/wp-content/uploads/2017/11/cesnet_RGB.png</mdui:Logo>
        </mdui:UIInfo>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pentest.cesnet.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>pentest.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pentest.cesnet.cz,O=CESNET\, z\C3\A1jmov\C3\A9 sdru\C5\BEen\C3\AD pr\C3\A1vnick\C3\BDch osob,L=Praha,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGsDCCBZigAwIBAgIQA29MjWWGN+wzM0064CFoNDANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>pentest.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pentest.cesnet.cz,O=CESNET\, z\C3\A1jmov\C3\A9 sdru\C5\BEen\C3\AD pr\C3\A1vnick\C3\BDch osob,L=Praha,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGsDCCBZigAwIBAgIQA29MjWWGN+wzM0064CFoNDANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pentest.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET z.s.p.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Filip</md:GivenName>
      <md:SurName>Rezac</md:SurName>
      <md:EmailAddress>mailto:filip@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://permonik-test.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://permonik-test.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://permonik-test.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://permonik-test.nkp.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://permonik-test.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>permonik-test.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=permonik-test.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUIOHmokkhRczIX1QV5J00KYYrfpAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://permonik-test.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://permonik.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://app.permonik.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/api/login/sso"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/api/login/sso" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>app.permonik.nkp.cz</ds:KeyName>
          <ds:KeyName>https://app.permonik.nkp.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=app.permonik.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIJANdJewWfVhYhMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV
BAMTE2FwcC5wZXJtb25pay5ua3AuY3owHhcNMjMxMTI5MTg0NjE3WhcNMzMxMTI2
MTg0NjE3WjAeMRwwGgYDVQQDExNhcHAucGVybW9uaWsubmtwLmN6MIIBojANBgkq
hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAycDyawzRE+kNUyThoit8Fx0geZdUGTfM
BX3Z4vZHXMNr/21Re2cGE/THkFoNYnUsfS2s+pkYQuF1UC/ZfFvSxcH5YC9E8gjE
NepCjdTIWQYu2oqmBPGk0VBtwjpFW2/BsbloDKvMgWQiGc8PECR0ruTipl+ajFck
1dWf/CddB3eBGjSDdTFwiGIZcZQNld3XABv4Qa6ajlkd5pZmCQnZgotcxptn9wvB
zIJDP/4eb2AL/ifSKZPsRmujUIUrmFV/WjP9MQjoBCvXkrogzrre77QDg+NjV7Dc
fe+5dheLVi0aZQPouWYzvIhDBB4JtXsHVOb8lKF+BA0jvi+cdOBsK8nYkkpHPHqG
C1hqTZghFCARX6iuqKkLey14XAhJjTcQL4a+CmlURjMzbKGglXvzESa0xpUF5vNy
lPc/icNSR2D9Qw+PU3T35xvaNNmi9iArXipomlJIVw01X4hpZyJyFko10ZBryE/Z
lwPu5Nzq1lSc+kaMubMtMkhch5WKZxPfAgMBAAGjaTBnMEYGA1UdEQQ/MD2CE2Fw
cC5wZXJtb25pay5ua3AuY3qGJmh0dHBzOi8vYXBwLnBlcm1vbmlrLm5rcC5jei9z
aGliYm9sZXRoMB0GA1UdDgQWBBRF4a4KEY3KxFJCrapYsdR/y2KaSTANBgkqhkiG
9w0BAQsFAAOCAYEANngCxzlktZgf9pB+2EaiHLZvEMSyT8stt7hCBgYsQ32DvQfL
LKa4tBTeyvtiNniICLtKYjr1UHKJCe2v7BvxYwf9ch76KLlFLksdI3Wz5BLehdPK
9CqJ5o97RTmWvQ+TE25PrsTswk1kKsYAfC+BHAiF+IU3lLX7PCQgTfOC9T9RUUy+
hJIvHgkQPdzuzAj8gNPZA7OKKQ5x+yTYakY4aqDPcSmeL+wpGfR8a14EvuZnZ/Zg
AD1sniX6VUJaKzl959mfFwK4dPq+7i6WFMg8rIUB3YandzQzl7825qP/aqUDPbMl
6bGACI+7N5aJUcAwt/e/fyvfeHWaoPSy44hcVO50Q/fw1u5N91HXLY7x7JVhkzJa
cOObzGn+Gsh1k6kIAi7UKMK8bHy0s8RQEbDqOuh2bHpqH6eykO978OKh7jxe2BFI
sQfQbHC8tsiN/SVKFuCWE4waNzH4MyNp1If5MhRMfaK3jSnpJi0STMQ9zbyoWe05
lkhKoczTHBmRkM6b</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pez.cuni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pez.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pez.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>pez.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pez.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDkzCCAnugAwIBAgIJAOifQYOR358WMA0GCSqGSIb3DQEBCwUAMGAxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pez.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pez.cuni.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://pez.cuni.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://phishingator-vyvoj.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">phishingator-vyvoj.zcu.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">phishingator-vyvoj.zcu.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">phishingator-vyvoj.zcu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">phishingator-vyvoj.zcu.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">phishingator-vyvoj.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">phishingator-vyvoj.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://phishingator-vyvoj.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phishingator-vyvoj.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phishingator-vyvoj.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIESzCCArOgAwIBAgIUIh0U/cs7Pnfc4wBISx+ucMmurw4wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://phishingator-vyvoj.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phishingator-vyvoj.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phishingator-vyvoj.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIESzCCArOgAwIBAgIUPctwugxyedELxTwFXaG3RkXvy+4wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">phishingator-vyvoj.zcu.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">phishingator-vyvoj.zcu.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">phishingator-vyvoj.zcu.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">phishingator-vyvoj.zcu.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Sebela</md:SurName>
      <md:EmailAddress>mailto:security@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://phix-test.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle UWB Pilsen</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle ZČU</mdui:DisplayName>
          <mdui:Description xml:lang="en">System Moodle University of Pilsen</mdui:Description>
          <mdui:Description xml:lang="cs">Systém Moodle</mdui:Description>
          <mdui:InformationURL xml:lang="en">phix-test.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">phix-test.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://phix-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phix-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phix-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAMrgv04y1T4KMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
BAMTEHBoaXgtdGVzdC56Y3UuY3owHhcNMjEwNzIxMDk1MDM3WhcNMzYwNzE3MDk1
MDM3WjAbMRkwFwYDVQQDExBwaGl4LXRlc3QuemN1LmN6MIIBojANBgkqhkiG9w0B
AQEFAAOCAY8AMIIBigKCAYEAsjO7LVnVTzRgGvzlJ2OnUE0LZ3rj5QOEH3w7uL6W
7yE7tPE93URzFIUhNGZH4APYvlnb3OwrInPJwV/dsLeAbJJ+lx/3YGqM52/Fn8hl
mzNukLTWz9xS/QvO9UzThXKI9OBjnAHAQLN8WhFA6+RkIzL+iQ/Obx9hImxSxVv3
r0kx/XmfHi4KEOAYLFL4H+GProeicD3TysJxTAgq3hzchY9Oc10EX77ZP7AdwbCR
IPurYbp84QFybX7zgpBSeCGeM6bUZPyMiEpJsQBlDtNAZyuW24/1cuUYIWTWVbm6
NM3NPE8nhl2WsOCYGgY7vRdIiyPUikcV0qazQDeHbmn4DVWfCH4s+z1QaABXIBV6
U6ALEpjVjuvco7LJSbCavOZh4iyTf9iI4/EiDPBm/YApKu6IVkfaCeJsv4Jqarru
Wzd2vZ6xMsLUg/8otaYvtv+oK6ZFRz+aEF2VgBJ51KEhf72NfOfUPlvyHnCSHLkw
SSOD88synWoKGcAo1u/gQ/o1AgMBAAGjYzBhMEAGA1UdEQQ5MDeCEHBoaXgtdGVz
dC56Y3UuY3qGI2h0dHBzOi8vcGhpeC10ZXN0LnpjdS5jei9zaGliYm9sZXRoMB0G
A1UdDgQWBBRDArDpPPbKYALZ8+F88HPxG2qbBDANBgkqhkiG9w0BAQsFAAOCAYEA
I9qYxbOXsy5xEMrSgy9RkVJlD75ydL4tgYXX+ur6p9WkRbpmonVSfMKPD3RlVCTS
bhlZZbpRG6AEt054gnD4JBKukxGet66kLtq+Sy1nNFmXRzYxNTcesd4OjBX+mQFM
6uzoDisKEQxASeylvugD+AKQjJSvLw93H5PsS86WZNM0d7+rJDK7AuGhfcPq+iKl
MPObSAfpvXrtM3XQdXry+aBrsVvcoajvClfmRG6F9GZpsRNJfeiVVfPBEWc1NLrV
M7GwDH5QX42CAVOUIT3dtOzYhh9GFdeOuZufg8RTHv/CyZnD0S1G+/PcvvihReF/
oGXetIFIK9QK5uwc5PgLkZ1mUqosn+aTcwRzRyROV0G+hT5MY8pVYHPMx8K6kmVN
gWlv2rQScIu0bd2K0mnN0eFRWMaozB8Kt/AuRJyyjPBa1xi30fLR0Ai5SCgi1GSe
R/Rv3NIHBnp14hGpQfQ7YR/8wDvEsFYob3omcshrvCQCK1y5yeE99akBi0z6hEdf</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://phix-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phix-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phix-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAOaqRlOcrl8QMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle UWB Pilsen</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle ZČU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">System Moodle University of Pilsen</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém Moodle</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Grolmus</md:SurName>
      <md:EmailAddress>mailto:iss@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://portal.lf3.cuni.cz/shibboleth/sp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/WAYF" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://portal.lf3.cuni.cz/shibboleth/sp</ds:KeyName>
          <ds:KeyName>portal.lf3.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portal.lf3.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIJAOqhxYhBPceLMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Third Faculty of Medicine, Charles University</OrganizationName>
      <OrganizationName xml:lang="cs">3. LF, Univerzita Karlova</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Third Faculty of Medicine, Charles University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">3. LF, Univerzita Karlova</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.lf3.cuni.cz/3LFEN-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.lf3.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Roman</GivenName>
      <SurName>Smid</SurName>
      <EmailAddress>smid@iba.muni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://portal.med.muni.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portal.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal.med.muni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portal.med.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal.med.muni.cz/Shibboleth.sso/safeid" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>portal.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portal.med.muni.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIJAPHQUbukhmQVMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV
BAMTEnBvcnRhbC5tZWQubXVuaS5jejAeFw0xNTEwMTYwOTA3NTNaFw0zMDEwMTIw
OTA3NTNaMB0xGzAZBgNVBAMTEnBvcnRhbC5tZWQubXVuaS5jejCCASIwDQYJKoZI
hvcNAQEBBQADggEPADCCAQoCggEBAK28xjJo0Rsies5KF6x1ojfNtO6VrCF9sa68
cGZGMYans7epRxlLkkJuVVu6l21QPYioy7p4/nE+pGzESFwz13KA6TeFCDpccln+
vGnWSB2OIvYr3YQQiR5UaDryLI+FP6Q60Ot8JHW+1nsb+IcSR0s0QYzeLbCu8kxN
XoB7gaRKyZDbqSJ4yBUk0XqqFq2fM/SvJNOpFc08mANVq7BbSP3vb7iloH3xXgRp
0hWPONRDrgM1bQfHwPWpPaJtGgdkDqecGtOnXfWvlEKaztVrlWJnyoLu+NHxaXnp
hJgFKAVD35qnbDV6SBJKv/+RWCOUJhySE2PTlY5PA73P5xEWk98CAwEAAaNqMGgw
RwYDVR0RBEAwPoIScG9ydGFsLm1lZC5tdW5pLmN6hihodHRwczovL3BvcnRhbC5t
ZWQubXVuaS5jei9zaGliYm9sZXRoL3NwMB0GA1UdDgQWBBR1tmQ8hcFqm12y17CS
h6wmWv8qHDANBgkqhkiG9w0BAQUFAAOCAQEAWdEnGJgMr5qzCn0zv8E7V+G7K9so
dAbWpAF5bEsmUmfaFo40wG/ig47y618WXuAevW4l7vWP/k7ItU8vHW9P/rG3y6Bn
vKQPWvwPRVcqkZ/mS7Mu5+//mFwOjOt6JQCzQa6aDw7lI+2pPJchImMXTL79tam0
tFyApjq76Y4Nz8USLq3gZWPIHWAuX4bqDCxWK6LfL5pA24n+ZKhRcoJGpKhDrCve
w6y1ORB8CvmGAblQMC3xwACOlTYOPrjNRq8MZGz5UqFRkW1LFr1rTzgUj8+qF+Q2
QEW4Z1cvGnUfDiPaZAzh8W29MgrP4GyY+vjgjcK5WPIm767K+Q3VItEi/w==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>smid@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://portfolio.med.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">SIMUportfolio</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">SIMUportfolio</mdui:DisplayName>
          <mdui:Description xml:lang="en">SIMUportfolio, Lékařská fakulta, Masarykova univerzita (SP 3).</mdui:Description>
          <mdui:Description xml:lang="cs">SIMUportfolio, Medical Faculty, Masaryk University (SP 3).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://portfolio.med.muni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://portfolio.med.muni.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portfolio.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portfolio.med.muni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://portfolio.med.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>portfolio.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portfolio.med.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALd7rzJ+Iix/MA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://portfolio.med.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>portfolio.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portfolio.med.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALd7rzJ+Iix/MA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portfolio.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA LF MU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">IBA LF MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA LF MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA LF MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>mailto:ibaadmin@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://postudium.cz/auth/saml2/sp/metadata.php">
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">POSTUDIUM</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">POSTUDIUM</mdui:DisplayName>
          <mdui:Description xml:lang="en">Portal for continuous professional development of health care workers.</mdui:Description>
          <mdui:Description xml:lang="cs">Portál pro kontinuální profesní rozvoj pracovníků ve zdravotnictví.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://postudium.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://postudium.cz</mdui:InformationURL>
          <mdui:Logo height="64" width="64">https://postudium.cz/theme/image.php/postudium/theme/1580386100/favicon</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://postudium.cz/auth/saml2/sp/saml2-logout.php/postudium.cz"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://postudium.cz/auth/saml2/sp/saml2-acs.php/postudium.cz" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://postudium.cz/auth/saml2/sp/saml1-acs.php/postudium.cz" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://postudium.cz/auth/saml2/sp/saml2-acs.php/postudium.cz" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://postudium.cz/auth/saml2/sp/saml1-acs.php/postudium.cz" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University, Medicine faculty in Pilsen</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, Medicine fakulty in Pilsen</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfp.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfp.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:martin.navratil@lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://postudium.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Postudium</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Postudium</mdui:DisplayName>
          <mdui:Description xml:lang="en">Postudium -- postgraduate, lifelong and specialized education of doctors and other workers in the healthcare sector</mdui:Description>
          <mdui:Description xml:lang="cs">Postudium -- postgraduální, celoživotní a specializační vzdělávání lékařů a dalších pracovníků ve zdravotnictví</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://postudium.lfp.cuni.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://postudium.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://postudium.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>postudium.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=postudium.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUYv6LetNahT98CDVLOExbQOOUqpkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://postudium.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>postudium.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=postudium.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUFP1X3JCi0CAi3OPMjMSU8j2vlTgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Moodle systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen - Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni - Karlova Univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen - Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni - Karlova Univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lfp.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lfp.cuni.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navratil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://projekty.ics.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://projekty.ics.muni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>projekty.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=projekty.ics.muni.cz,O=Masaryk University,L=Brno-stred,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDwTCCAqmgAwIBAgIJALoi+L/Jo2eHMA0GCSqGSIb3DQEBCwUAMHcxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radim</md:GivenName>
      <md:SurName>Pesa</md:SurName>
      <md:EmailAddress>pesa@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomas</md:GivenName>
      <md:SurName>Sapak</md:SurName>
      <md:EmailAddress>sapakt@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://projekty.umprum.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">UMPRUM Project Database</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Databáze projektů UMPRUM</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web application for managing tenders, theirs projects and external tender projects.</mdui:Description>
          <mdui:Description xml:lang="cs">Webová aplikace pro správu soutěží, jejich projektů a projektů externích soutěží.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://projekty.umprum.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://projekty.umprum.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://projekty.umprum.cz/static/umprum-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://projekty.umprum.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://projekty.umprum.cz/shibboleth</ds:KeyName>
          <ds:KeyName>projekty.umprum.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=projekty.umprum.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIUaPnmafTVZErOGHbOIWJAl51tmT0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.umprum.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">UMPRUM Project Database</md:ServiceName>
        <md:ServiceName xml:lang="cs">Databáze projektů UMPRUM</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web application for managing tenders, theirs projects and external tender projects.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Webová aplikace pro správu soutěží, jejich projektů a projektů externích soutěží.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of Arts, Architecture and Design in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Academy of Arts, Architecture and Design in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.umprum.cz/web/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.umprum.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Kolář</md:SurName>
      <md:EmailAddress>mailto:jakubkolar23@gmail.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://proxy.aai.lifescience-ri.eu/metadata/backend.xml">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/sirtfi</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Life Science Login</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Life Science Login</mdui:DisplayName>
          <mdui:Description xml:lang="en">Life Science Login is a common gateway to the European Life Sciences research Infrastructures</mdui:Description>
          <mdui:Description xml:lang="cs">Life Science Login je vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Logo height="284" width="896">https://lifescience-ri.eu/fileadmin/lifescience-ri/templates/site/elsri_logo--wosub.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC2DCCAcACCQDcqv8G3FeVAjANBgkqhkiG9w0BAQsFADAuMSwwKgYDVQQDDCNsc2FhaSBwcm9kIHByb3h5IHNhbWxfcHJveHlfYmFja2VuZDAeFw0xOTEwMDMwMzA1MDZaFw0yOTA5MzAwMzA1MDZaMC4xLDAqBgNVBAMMI2xzYWFpIHByb2QgcHJveHkgc2FtbF9wcm94eV9iYWNrZW5kMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxDI4Ob3yLNvh2VeHgLDbEWkiiYp0v9LMMS5WKd/EeGzAkK1Bil23J6YghO2bLEs+UxgswLtBQwqqEEdYrkvI/0n0jhMUcSanrk9s9TRTn15lHMHOQCYdDZjVH65sA8pjwnIJnctGoYfbxSQIcWhhoBCOniFg6UGnsST2a5i3hI57W4ziYi697kqQ4Te2BdrPmNR27uL93eI7Eyvc1pWAfF5R3KWhr2jCFqvZiNCl2u3I8QQx6Qe/vxpeSDWm91o/FbJcXPwZBhyrQCbOtHaDmTeY0zpP12gBM4sl3qCuRyRMqRm784ZC7I3wWj19CD51JQ+nzmFQxJhHPypT7LHruQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBFIWy3QdX2NCqir1cYJMZaWY8fTBERbs1XYfgO8YbYvvLK63sFSTftmBQukmHnj4vBm4Y6UUUtKfH8DGNln5cgLevWs/jSXNPfHeA8QLAgNdYMD4tGeLojg6uFP8XFfK1+OxKel4FmG9ZoFRCGtIcY0IUevDA24j46k4jns3Q26N6ClyQuup6JcrYTToAij74t8rhXfz4CK9vuYbSXKijv87+GajZmIvzOi7b933Tn6eI5Aa0NYyA2k8k6vuJcT5S5HRwKxGuSKq8MNYrfhzvEXNE/1v1JeM5KcfvzPiA6Vk9hF2EEDL3gF4w8R9/atFk3KtlvP5Bn5YomyIZ//iwK</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.lifescience-ri.eu/cas/login?client_name=fed" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy.aai.lifescience-ri.eu/saml2sp/acs/post" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Life Science Login</md:ServiceName>
        <md:ServiceName xml:lang="cs">Life Science Login</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Life Science Login is a common gateway to the European Life Sciences research Infrastructures</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Life Science Login je vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lifescience-ri.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lifescience-ri.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://proxy.acc.aai.lifescience-ri.eu/metadata/backend.xml">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Life Science Login-Acc</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Life Science Login-Acc</mdui:DisplayName>
          <mdui:Description xml:lang="en">Life Science Login (Acc) is a common gateway to the European Life Sciences research Infrastructures</mdui:Description>
          <mdui:Description xml:lang="cs">Life Science Login (Acc) je vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Logo height="284" width="896">https://lifescience-ri.eu/fileadmin/lifescience-ri/templates/site/elsri_logo--wosub.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh2gAwIBAgIUbLSWaIRh10dV8SFeBnlrn43wd3swDQYJKoZIhvcNAQELBQAwKjEoMCYG A1UEAwwfcHJveHktZGV2LmFhaS5saWZlc2NpZW5jZS1yaS5ldTAeFw0yNTA3MjQwODUwMzFaFw0z NTA3MjIwODUwMzFaMCoxKDAmBgNVBAMMH3Byb3h5LWRldi5hYWkubGlmZXNjaWVuY2UtcmkuZXUw ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCrrKhZCBIgJZuQlVM6SN415FD0nat89gBW sAt9/wbiT4jF5+jZzC80ADo7dwQMrqnuKB6tEyeOLqRPVlf393Hv2pBAk7p1BK2mdJbq/1/U2CAa KuApJrch7Slhru+AZ4wRCduWib8WC4Br8MiRe6FlUJNhcXGI/FhDFy+Zbit/qvNEBE/4nG/LqEkM Rwa6EVUAcGDOWxYFlp9lxrjTWam6yq1HRxQyidsMM8rGPZpvDyCU0dqHn4O8ZFPSQbMpV9/48L36 iKqR3jklyxzO7wNtskGrpE6boJ27xiW/vAESyuvUnsfutkbfN4GQoy8InEpwvrlb+JYVJTjqNYJH Ct0rAgMBAAGjUzBRMB0GA1UdDgQWBBTpC9zm216wiGQcM+2p7n1CBC3iFzAfBgNVHSMEGDAWgBTp C9zm216wiGQcM+2p7n1CBC3iFzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAJ pcdbC+sDTr7Z8rN6e9Voeb52OqU/MCg2bkVD0yqiiaza+ElKILaEPEENcD8wA5qOeve0nT04HVjH OivlbwvdzaiWK6Rnfjb4bNVcRRG99znQ6FbPWQ5tZBFl1sd4q4DSQsuIY+shHdDfXHESv6bzb7dS LCvU2YQF2S/c4jn7OX5cVbjQQNv5xSPMEzszT5V30VQcvVQLSGyqrxDzfIatEMKz2z0LKjIx+PDE cXiC02JDKGFjAlkLwf9GDv2Z5fr5d7VhredswxMHrG8Txi9xbXtLQo22iQHNmtdRXzblB7Km2wRB s4x1ipNEMswVdadR04vyOO4Cgru0zJSws/L4</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh2gAwIBAgIUbLSWaIRh10dV8SFeBnlrn43wd3swDQYJKoZIhvcNAQELBQAwKjEoMCYG A1UEAwwfcHJveHktZGV2LmFhaS5saWZlc2NpZW5jZS1yaS5ldTAeFw0yNTA3MjQwODUwMzFaFw0z NTA3MjIwODUwMzFaMCoxKDAmBgNVBAMMH3Byb3h5LWRldi5hYWkubGlmZXNjaWVuY2UtcmkuZXUw ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCrrKhZCBIgJZuQlVM6SN415FD0nat89gBW sAt9/wbiT4jF5+jZzC80ADo7dwQMrqnuKB6tEyeOLqRPVlf393Hv2pBAk7p1BK2mdJbq/1/U2CAa KuApJrch7Slhru+AZ4wRCduWib8WC4Br8MiRe6FlUJNhcXGI/FhDFy+Zbit/qvNEBE/4nG/LqEkM Rwa6EVUAcGDOWxYFlp9lxrjTWam6yq1HRxQyidsMM8rGPZpvDyCU0dqHn4O8ZFPSQbMpV9/48L36 iKqR3jklyxzO7wNtskGrpE6boJ27xiW/vAESyuvUnsfutkbfN4GQoy8InEpwvrlb+JYVJTjqNYJH Ct0rAgMBAAGjUzBRMB0GA1UdDgQWBBTpC9zm216wiGQcM+2p7n1CBC3iFzAfBgNVHSMEGDAWgBTp C9zm216wiGQcM+2p7n1CBC3iFzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAJ pcdbC+sDTr7Z8rN6e9Voeb52OqU/MCg2bkVD0yqiiaza+ElKILaEPEENcD8wA5qOeve0nT04HVjH OivlbwvdzaiWK6Rnfjb4bNVcRRG99znQ6FbPWQ5tZBFl1sd4q4DSQsuIY+shHdDfXHESv6bzb7dS LCvU2YQF2S/c4jn7OX5cVbjQQNv5xSPMEzszT5V30VQcvVQLSGyqrxDzfIatEMKz2z0LKjIx+PDE cXiC02JDKGFjAlkLwf9GDv2Z5fr5d7VhredswxMHrG8Txi9xbXtLQo22iQHNmtdRXzblB7Km2wRB s4x1ipNEMswVdadR04vyOO4Cgru0zJSws/L4</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Life Science Login - Acc</md:ServiceName>
        <md:ServiceName xml:lang="cs">Life Science Login - Acc</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Life Science Login (Acc) is a common gateway to the European Life Sciences research Infrastructures</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Life Science Login (Accje vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lifescience-ri.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lifescience-ri.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publi.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Publi</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Publi</mdui:DisplayName>
          <mdui:Description xml:lang="cs">mKnihy Publi</mdui:Description>
          <mdui:Description xml:lang="en">mBooks Publi</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://publi.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://publi.cz</mdui:InformationURL>
          <mdui:Logo height="86" width="86" xml:lang="cs">https://publi.cz/img/publi_logo.svg</mdui:Logo>
          <mdui:Logo height="86" width="86" xml:lang="en">https://publi.cz/img/publi_logo.svg</mdui:Logo>
          <mdui:Logo height="32" width="32" xml:lang="cs">https://publi.cz/front/img/favicons/favicon-32x32.png</mdui:Logo>
          <mdui:Logo height="32" width="32" xml:lang="en">https://publi.cz/front/img/favicons/favicon-32x32.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publi.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publi.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.publi.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>emailAddress=hostmaster@codecreator.cz,CN=www.publi.cz,O=Code Creator\, s.r.o.,L=Brno,ST=South Moravia,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIID/TCCAuWgAwIBAgIJAKV3FfHNz3bWMA0GCSqGSIb3DQEBCwUAMIGUMQswCQYD
VQQGEwJDWjEWMBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEd
MBsGA1UECgwUQ29kZSBDcmVhdG9yLCBzLnIuby4xFTATBgNVBAMMDHd3dy5wdWJs
aS5jejEoMCYGCSqGSIb3DQEJARYZaG9zdG1hc3RlckBjb2RlY3JlYXRvci5jejAe
Fw0xNTEyMDQwNzEyNDFaFw0yNTEyMDEwNzEyNDFaMIGUMQswCQYDVQQGEwJDWjEW
MBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEdMBsGA1UECgwU
Q29kZSBDcmVhdG9yLCBzLnIuby4xFTATBgNVBAMMDHd3dy5wdWJsaS5jejEoMCYG
CSqGSIb3DQEJARYZaG9zdG1hc3RlckBjb2RlY3JlYXRvci5jejCCASIwDQYJKoZI
hvcNAQEBBQADggEPADCCAQoCggEBALSoGLyMJV/nsgaZD0Q3YFIVUH5Y1IXr6Vxi
sWT1p1e2zziZm0WOj+82uuiClnVhf06MyOx4IhnDEmRYwezSUzvV6NFLfdCWP4lQ
AuodgESotmajDay8YGYfDcTHiXWTIrj/KUbcHWMr5s5RorJktmkAv0i4VXOYd+LW
QpG2tPu5onxHg7Ht+9UfH8cymN5XGpTK8WBGWy1xBc29QOhu5DY8mbyuJKWCwn11
l6wtahX5gWkxI9zX0+V14mlaqTY94yeiGvuysf3MaP66Lm6e6NqWg3H5ksn5gguh
Lm58xO+fk7SJHe6dpWUZlnH/3vPAG7Oay/cDpka+q6ASHusxzV0CAwEAAaNQME4w
HQYDVR0OBBYEFO77/WpcVP/qm58BVqPvMGGZcNYDMB8GA1UdIwQYMBaAFO77/Wpc
VP/qm58BVqPvMGGZcNYDMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEB
AGlQEC5P9F8TfaEJ18CHTtSQoYBVXQ+MSEjtqERf03X30+36827KzJW9n439EL4F
AsHb7rvEUj0aOX8MaKwVPEy82cmmQ4ICkI6HmG9ELFI5VnSgOE5OFBN3oIKNXzws
mEBPpmgxx7jL6WPLX28Bb573WKtQR/vCmnHaI8EIb/LylWRJkXAyisIbYQrEFJb0
M+RY8AowwPJytatLKZQPXH2M2C2QJrOIpSd9ULafbC8l4CZC2NLeMtyMhze3ilEa
sLwKxbjhn3SXMRpUwtBgrNPJQMypalByGwq21B4QFLfxWUG1xdT8EX0RyqHm0iUi
jDXW070SHG/AmMq05CpVRjQ=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publi.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publi.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://publi.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publi.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publi.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publi.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ecc.publi.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ecichnova.publi.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ejilova.publi.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://elfhk.publi.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://emuni.publi.cz/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eolomoucka.publi.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eosu.publi.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://epubli.publi.cz/Shibboleth.sso/SAML2/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://epurkyna.publi.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eskola.publi.cz/Shibboleth.sso/SAML2/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://esvitavy.publi.cz/Shibboleth.sso/SAML2/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://etrnkova.publi.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://etznj.publi.cz/Shibboleth.sso/SAML2/POST" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eupol.publi.cz/Shibboleth.sso/SAML2/POST" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ealter.publi.cz/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://etul.publi.cz/Shibboleth.sso/SAML2/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uniza.publi.cz/Shibboleth.sso/SAML2/POST" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publi.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publi.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publi.cz/Shibboleth.sso/SAML2/Artifact" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publi.cz/Shibboleth.sso/SAML2/ECP" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publi.cz/Shibboleth.sso/SAML/POST" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publi.cz/Shibboleth.sso/SAML/Artifact" index="24"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="cs">Publi</md:ServiceName>
        <md:ServiceName xml:lang="en">Publi</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">mKnihy Publi</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">mBooks Publi</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Code Creator, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Code Creator, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Code Creator</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Code Creator</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.codecreator.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.codecreator.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Hanousek</md:SurName>
      <md:EmailAddress>mailto:info@codecreator.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publications.cuni.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Repozitář publikační činnosti Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University Research Publications Repository</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Repozitář poskytuje přístup k výsledků vědy a výzkumu autorů z Univerzity Karlovy, například vědeckým článkům, monografiím a jejich kapitolám, apod.</mdui:Description>
          <mdui:Description xml:lang="en">Institutional repository of research outputs produced by Charles University authors. Repository provides access to variety of research outputs, i.e. journal articles, monographs and their chapters, etc.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://publications.cuni.cz/page/about?locale-attribute=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://publications.cuni.cz/page/about?locale-attribute=en</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publications.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publications.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>publications.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=publications.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDczCCAlugAwIBAgIUKtNjF31RPhospboHCTv1+S9PpTMwDQYJKoZIhvcNAQEM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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publications.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publications.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publications.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publikace-test.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Testing publishing server CESNET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací publikační server sdružení CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing publishing server CESNET</mdui:Description>
          <mdui:Description xml:lang="cs">Publikační server sdružení CESNET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://publikace-test.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://publikace-test.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://publikace-test.cesnet.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>publikace-test.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=publikace-test.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIESjCCArKgAwIBAgIUSy87o6dBcKIakGXUv0odkr9VeWwwDQYJKoZIhvcNAQEL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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Testing publishing server cesnet</md:ServiceName>
        <md:ServiceName xml:lang="cs">Testovací publikační server sdružení CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Testing publishing server CESNET</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Testovací publikační server sdružení CESNET</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Dusicka</md:SurName>
      <md:EmailAddress>mailto:martin.dusicka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publikace.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Publishing server CESNET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Publikační server sdružení CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">Publishing server CESNET</mdui:Description>
          <mdui:Description xml:lang="cs">Publikační server sdružení CESNET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://publikace.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://publikace.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publikace.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publikace.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://publikace.cesnet.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>publikace.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=publikace.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIJAKRFT/n1qMiBMA0GCSqGSIb3DQEBBQUAMB4xHDAaBgNV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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publikace.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Publishing server cesnet</md:ServiceName>
        <md:ServiceName xml:lang="cs">Publikační server sdružení CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Publishing server CESNET</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Publikační server sdružení CESNET</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Caletka</md:SurName>
      <md:EmailAddress>mailto:caletka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://queerknihovna.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">queerknihovna.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Queer library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Queer knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Queer library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Queer knihovny</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.queerknihovna.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.queerknihovna.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://queer.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://queer.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://queer.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://queer.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://queer.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Queer library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Queer knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Queer library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Queer knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.queerknihovna.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.queerknihovna.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://referentka.app/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">RefereNTKa</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">RefereNTKa</mdui:DisplayName>
          <mdui:Description xml:lang="en">Application for management of literary research</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace pro správu a zpracování literárních rešerší</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://referentka.app/static/about_en.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://referentka.app/static/about_cs.html</mdui:InformationURL>
          <mdui:Logo height="71" width="320">https://referentka.app/static/refereNTKa.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://referentka.app/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://referentka.app/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://referentka.app/shibboleth</ds:KeyName>
          <ds:KeyName>referentka.app</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=referentka.app</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUTC7IVvIybJYiczO6KOcqvgdItbMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://referentka.app/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://referentka.app/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://referentka.app/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://referentka.app/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://referentka.app/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://referentka.app/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://referentka.app/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://referentka.app/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://referentka.app/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://referentka.app/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://referentka.app/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Referentka</md:ServiceName>
        <md:ServiceName xml:lang="cs">Referentka</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.bigdigdata.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.bigdigdata.com/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Bedřich</md:GivenName>
      <md:SurName>Košata</md:SurName>
      <md:EmailAddress>mailto:beda@bigdigdata.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://registrace.dev.knihovny.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtf</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">On-line registration to Moravian Library</DisplayName>
          <Description xml:lang="en">On-line registration to Moravian Library</Description>
          <InformationURL xml:lang="en">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.mzk.cz/en/personaldatainfo</PrivacyStatementURL>
          <DisplayName xml:lang="cs">On-line registrace do Moravské zemské knihovny</DisplayName>
          <Description xml:lang="cs">On-line registrace do Moravské zemské knihovny</Description>
          <InformationURL xml:lang="cs">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.mzk.cz/osobniudajeinfo</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/DS"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>registrace.dev.knihovny.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=registrace.dev.knihovny.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIFKzCCAxOgAwIBAgIUMxHuDTw2J/3pd0+BjmLFJxVSdUIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">On-line registration to Moravian library</md:ServiceName>
        <md:ServiceName xml:lang="cs">On-line registrace do Moravské zemské knihovny</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://registrace.mzk.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtf</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">On-line registration to Moravian Library</DisplayName>
          <Description xml:lang="en">On-line registration to Moravian Library</Description>
          <InformationURL xml:lang="en">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.mzk.cz/en/personaldatainfo</PrivacyStatementURL>
          <DisplayName xml:lang="cs">On-line registrace do Moravské zemské knihovny</DisplayName>
          <Description xml:lang="cs">On-line registrace do Moravské zemské knihovny</Description>
          <InformationURL xml:lang="cs">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.mzk.cz/osobniudajeinfo</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://registrace.mzk.cz/Shibboleth.sso/DS"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>registrace.mzk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=registrace.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIFGTCCAwGgAwIBAgIUQ2ArsFI3+8Zz/RNWvQ78c6OeH4gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.mzk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">On-line registration to Moravian library</md:ServiceName>
        <md:ServiceName xml:lang="cs">On-line registrace do Moravské zemské knihovny</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://registry.cesnet-ca.cz/simplesaml">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">CESNET CA 4 certifikáty</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">CESNET CA 4 certificates</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Federalizovaný přístup k CESNET CA 4 certifikátům.</mdui:Description>
          <mdui:Description xml:lang="en">Federalized access to the CESNET CA 4 certificates.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://pki.cesnet.cz/cs/ch-personal-ca4.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://pki.cesnet.cz/en/ch-personal-ca4.html</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://registry.cesnet-ca.cz/privacy.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://registry.cesnet-ca.cz/privacy_en.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDEzCCAfugAwIBAgIJAIlGIDvRwvXFMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNVBAMMFXJlZ2lzdHJ5LmNlc25ldC1jYS5jejAeFw0yMDExMjYxMTQwNTVaFw00MDExMjYxMTQwNTVaMCAxHjAcBgNVBAMMFXJlZ2lzdHJ5LmNlc25ldC1jYS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAPKJ5o9iCMxBOWygjAr9zbzGiZrhWVvPCqI0VOKfpYbANQWXrfLMGrsMqmWxJhPc7PF4jjXL11/bR+epVvIyUGvVOnTAlntlHgxGkLnqHgheJFc2NAKo9aOPcauGek7EqQXl4SJn4GlUwOmSkPIYoaG67AmDBD2JdRHRMjfEpWpG60cprQ0CTb9xY/9SoSQLqRulRdqLYI8tmBw7dKOd223mQu3HqM6+cuu6yJNOj7AJdwX4/9Ms5W3rRPIpMWJzAm6SEvnq/UtdXsFH0itffGIXfdW8xqNb6rfZyrRhZs1KBmON/ElLC42AcN3Z6ep35atcwb+AHohnpQL6iXXkDk8CAwEAAaNQME4wHQYDVR0OBBYEFCNWOApHo3KwPIOJNWjWFeUN6YFjMB8GA1UdIwQYMBaAFCNWOApHo3KwPIOJNWjWFeUN6YFjMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAAPPMoK/nDj8zOtc0PQj4Cf6RuTzoQwCM1pcuUzGoFLSHYMgmna4cd7vGhspcay6eQje+vtGMoG3Hi3Czz8J2E10psLgIXEy81wjHy9lROg3qsMYPobTNYG3BuqScStVPp5GN3OOXER7QisFulKe0hjUNItgysBdFvUwaauR/BoOwQQpx/55RNBlb5Tyhj9aOekoIGWUXvrSBaHOOwIZHW16sUuA//tB7U1BOfqX36vMd6c8gvqjSax+6CzzQO9/1c1vZKBiJsuz/op5RA/4VWDI1ZBQ7hODahnOc6TPX6UylP2ETNfeemzqSAxGY9v64Ziv3lYl35xkk7Im3EC17YM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">CESNET CA 4 certifikáty</md:ServiceName>
        <md:ServiceName xml:lang="en">CESNET CA 4 certificates</md:ServiceName>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonNameASCII" Name="http://eduid.cz/attributes/commonName#ASCII" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/cs</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Chvojka</md:SurName>
      <md:EmailAddress>mailto:jan.chvojka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://remote.palestra.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">palestra.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">VSTVS PALESTRA, s.r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola tělesné výchovy a sportu PALESTRA, spol. s r. o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">PALESTRA IdP</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro PALESTRA</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://vstvs.palestra.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://vstvs.palestra.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="200">https://remote.palestra.cz/LogoPalestra2.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUPDRb9i47DmRmQigfI3ey/GljOQcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIENDCCApygAwIBAgIVAMoiqmFRa0Kr0SNYSLMsYU5rMv0kMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUbdlwFpoLJfB2z8qKez7jnwFHCNUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://remote.palestra.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://remote.palestra.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://remote.palestra.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://remote.palestra.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://remote.palestra.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://remote.palestra.cz/idp/profile/Shibboleth/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">palestra.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUPDRb9i47DmRmQigfI3ey/GljOQcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIENDCCApygAwIBAgIVAMoiqmFRa0Kr0SNYSLMsYU5rMv0kMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUbdlwFpoLJfB2z8qKez7jnwFHCNUwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwScmVtb3RlLnBhbGVzdHJhLmN6MB4XDTIxMDUxMzEzNDIz
MVoXDTQxMDUxMzEzNDIzMVowHTEbMBkGA1UEAwwScmVtb3RlLnBhbGVzdHJhLmN6
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAhY4Bp3N7T9kL9YEgHZBn
vI09MxIt0mtrfvJi3Bzfg6POdeBe6vc0u5zDjSM0psWNW0chO4JL7p7n4juwUgLv
uf3QpUV3Yjwey6ttt1chLYav4/leSVin0ccccZXX14/sabW0CPc7GwaTKKHPOWFD
XXcu9bGJuOjLwOIufHmdAUlhX6wEbnVPptuyvmUMlWvuqAqJPzOlqUV8XOZrSJ1D
JCPasz/5DL5e5J+bKd/u/6+QrVEIkXPaUSpqAlHR1+y5sgF7aYesZyJteulCPEoL
I/rjcrGAhZprkwrhNx2ChjpEclysUEeWcvKBD+DEXJF8jGpyMl+KrwwHOJxgjgcN
f8UjzpzCT+JfYE4haxmuoiYanziLWURM1kiV0t0QAz9Em4MkgF+owbMU+aXLaUil
akg9+BV14BbuV0oGbBDccRbDqjR0Z4WWVWBQzJjwchtj6YJ4KJUI44iaTwM69DH3
zRBlKJtECw5CzoC6n9Gad7F8cdlWa4uA9pBTfVmJFKYvAgMBAAGjazBpMB0GA1Ud
DgQWBBSGjusNVEmmZfkiDiQt15PqasoVyDBIBgNVHREEQTA/ghJyZW1vdGUucGFs
ZXN0cmEuY3qGKWh0dHBzOi8vcmVtb3RlLnBhbGVzdHJhLmN6L2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQBjGxz3tUAZp/bwDZq8zVr9D23tj4sbgdzg
HLg3Zo50WN8YdjmX9tc4OSz6yIho8ZJPhIMl7CJe8V2Q2PWCBcWRLOkhVf1sRWIX
6yqloUVQAkYBiDYIWvKc7T/M9HpInowe8PzG47gDaC2zDecmcH+8GuCcejdgY6q2
xKT0c+qemnWwkmJqkJwC5d2kjUbwrMZlWsGvD3z7TCLMpW1WxhbvAcPm+YrG3liq
TCaoKO7mg38bxHtZyBG7hFLSDV1FR22kugf/qGLB2LZw8XEXIXbwIvZEd3C0ye1k
ZM8zx70Ntmgl2PCFJZonjfHJrcOY+clmfye8WiJZEgTBGk+jIQZg2LxRBlhPPUoU
1A2gsfzxynkr1TATCIdgOY5vpcVdbjAM2nsoWZ+HT/JKIj5iAV0fevpF+TgWQuyw
9hFkrmrGvIoXzwB22RNKE8EilpH7j8LXsQxNowpUb1JHpsnSRyW38JgJAHwpiv2x
/NV8ulrv2clPdC9sX42lFs8edP7Nv6A=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://remote.palestra.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">VSTVS PALESTRA, s.r.o.</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola tělesné výchovy a sportu PALESTRA, spol. s r. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">PALESTRA</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">PALESTRA</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://vstvs.palestra.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://vstvs.palestra.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Špaček</SurName>
      <EmailAddress>mailto:spacek@palestra.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://reporitar.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Data Repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Datový repozitář Univerzity Karlovy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Repository of research data created by researchers affiliated with Charles University.</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitář pro výzkumná data vznikající se zapojením výzkumníků s afiliací k Univerzitě Karlově.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://openscience.cuni.cz/OSCIEN-48.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://openscience.cuni.cz/OSCI-61.html</mdui:InformationURL>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://repozitar.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://repozitar.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://repozitar.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>repozitar.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=repozitar.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUd4rmmzTBp7ma/8KZyxhN5epo4gwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivo</md:GivenName>
      <md:SurName>Prajer</md:SurName>
      <md:EmailAddress>mailto:ivo.prajer@ruk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://repozitar.cz/shibboleth/">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://repozitar.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Repozitar.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Repozitar.cz – Repozitář vědeckých prací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Repozitar.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitar.cz – Repozitář vědeckých prací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://repozitar.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://repozitar.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://repozitar.cz/pics/design/re/m/logotyp.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://repozitar.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>repozitar.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=repozitar.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDTCCAfWgAwIBAgIJAKdeBAN1fEpsMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://repozitar.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>repozitar.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=repozitar.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDTCCAfWgAwIBAgIJAKdeBAN1fEpsMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://repozitar.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://repozitar.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://repozitar.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://repozitar.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://repozitar.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://repozitar.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Prohlížeč atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy vydané vaším poskytovatelem identit.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Repozitar.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Repozitar.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Repozitar.cz - Repozitář vědeckých prací</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Repozitar.cz - Repository of scientific work</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://repozitar.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://repozitar.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Stančík</md:SurName>
      <md:EmailAddress>mailto:repozitar@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://rokyknih.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">rokyknih.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Rokycany</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Rokycany</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Rokycany</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Rokycany</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.rokyknih.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.rokyknih.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://rokycany.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rokycany.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rokycany.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rokycany.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rokycany.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Rokycany</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Rokycany</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Rokycany</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Rokycany</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.rokyknih.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.rokyknih.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://rt.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">RT system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">RT system</mdui:DisplayName>
          <mdui:Description xml:lang="en">Request Tracker University of Pilsen</mdui:Description>
          <mdui:Description xml:lang="cs">Request Tracker Západočeské univerzity</mdui:Description>
          <mdui:InformationURL xml:lang="en">rt.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">rt.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://rt.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rt.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rt.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUN4d4zbzjnsnZ7+KnxVUOUq0RmyQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://rt.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rt.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rt.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUfyf5k4q1r+q2125RtItM9vnKf64wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rt.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rt.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">RT system</md:ServiceName>
        <md:ServiceName xml:lang="cs">RT system</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Request Tracker University of Pilsen</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Request Tracker Západočeské univerzity</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Grolmus</md:SurName>
      <md:EmailAddress>mailto:iss@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://rt4.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt4.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt3.cesnet.cz/Shibboleth.sso/WAYF" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt-new.cesnet.cz/Shibboleth.sso/WAYF" index="3"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.muni.cz/Shibboleth.sso/WAYFMU" index="4"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.ics.muni.cz/Shibboleth.sso/WAYFMU" index="5"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.elixir-czech.cz/Shibboleth.sso/WAYFELIXIR" index="6"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Request Tracker</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Request Tracker</mdui:DisplayName>
          <mdui:Description xml:lang="en">Ticketing system</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu požadavků</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://rt.cesnet.cz/wayf/images/bpslogo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYF" index="7"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFMU"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFMU" index="8"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFELIXIR"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFELIXIR" index="9"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://rt.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rt.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rt.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDDCCAfSgAwIBAgIJAMY2F0T2RlIAMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
BAMTDHJ0LmNlc25ldC5jejAeFw0xNjA4MTExMTEyMDFaFw0yNjA4MDkxMTEyMDFa
MBcxFTATBgNVBAMTDHJ0LmNlc25ldC5jejCCASIwDQYJKoZIhvcNAQEBBQADggEP
ADCCAQoCggEBAJzbRbNaIhY/3VDSaMRvo+FSelKeq9cFDuEqKso+pxsgoNSDaHem
sXExUnUYdHPdR3fuJxfGAmsALNwyrTcxjvfWx4XCa/QfoIc6+eBHym8y5J4nZUga
PLm/WWWs3HbnbuqMD/tbA96jqSY3W1dib7r6Zs4PLTS6S2SXKhZ4jMy1Jtje45kE
uZLRUKpa5yKTCv2h1dU+nkw5MSqkL5i0wBHE3I8H+Z4p4Cu33ZfjWDKI00o0JPLk
dJuvysv7YToOgfz66FSoPnmku8r/nhu9Jy9oNbYuu522vCeNXBYdsDTJ+t9dMYvo
c0sy2hUKoFpL2HURXYyi3kNV/hAGYAQ5d70CAwEAAaNbMFkwOAYDVR0RBDEwL4IM
cnQuY2VzbmV0LmN6hh9odHRwczovL3J0LmNlc25ldC5jei9zaGliYm9sZXRoMB0G
A1UdDgQWBBQsQIVGGcvvz32VJLAKEy4O6qo5PjANBgkqhkiG9w0BAQUFAAOCAQEA
LSalzBeh6wCWsOAoSZ1YkpDNMjzoa4W4Hq7S5tIZrDcbtIA4GgmY1rbcLLkFWIBa
iW4LGzDH7xLzAYhAc5CvOpxXrsH9yPxpvKUS1Fb+OrfsHEVMv5gftprUIxAagRF1
A9P1IJkD3UR/CD2Exe0CjgpkTi8OsIyMFkgpR53lxKrSpRiq/v7DWEvCwC60d7mN
05gX8hxPtUl+591gp8+CCVGys9O2RVoGwuR/asaPHX6L05UBtQeVpsZOlU6gP9Fj
bcS8lpuR3Plvn2cHTWkmjRAdxv+0CKGCvn8qX/aAhhaecHBq/TVE9aUh7ArIgdXD
mwi7jsWwdoUSCAN0ldSZMw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt4.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt3.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.muni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt-new.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.elixir-czech.cz/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Hanousek</md:SurName>
      <md:EmailAddress>mailto:rt@rt.cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://rtest64.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">RT system UWB - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">RT system ZĆU - test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Request tracker University of Pilsen(test)</mdui:Description>
          <mdui:Description xml:lang="cs">RT systém Západočeské university(test)</mdui:Description>
          <mdui:InformationURL xml:lang="en">rtest64.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">rtest64.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rtest64.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://rtest64.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rtest64.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rtest64.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUZhTkZLJsS12YtiKuLHAFQwG/PwcwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAxMOcnRlc3Q2NC56Y3UuY3owHhcNMjEwODAyMTMzNDA5WhcN
MzYwNzI5MTMzNDA5WjAZMRcwFQYDVQQDEw5ydGVzdDY0LnpjdS5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBANpSfjbUkX2fuHYSFWKPKqBJPNCp9pPZ
vDZvJOuq3gt+j8hiifSu34vgeo3NJriqPtSjvRsSMhgaui1Qh//dcp3IxKL+ynKI
eoEJrjlyzGJZK5e0mQiTn9njlS+hERBRXLAtMmBFdxXzMxstXrauuLIHG7e6jd1n
UWhzyOh0rDNEGKFW5uoAEhBdimoNLJuhIfyzWGnqnvmm0qc5nDXJUN7OscYLg0Il
q69tgy8uq10sqDqWRP5SDg5/kcb021RklDLZDMJw8Wmr2kIPFmFeCaZI+74Pp9eS
NDCNDaVYJn8Er0jZzJMidEo7iCanJ5Ra1zGNYKJ0G2yW/9pMI3JMdp6TifBBRdkV
7sxWFbIQIrVUfMIZV5F69p/NHG/pdS2PGlOSCUDY3k9m0RGgRfNyR1pW/inryGVC
74qE92dTO/GgVJG0PE0cibBdcJ1EyZHlLZkYb2YDEwt5WympQY+hFVHVBC1StBqh
ZhuBr8HnMeyHIltHa8Ub3sx8fc2niusDLQIDAQABo18wXTA8BgNVHREENTAzgg5y
dGVzdDY0LnpjdS5jeoYhaHR0cHM6Ly9ydGVzdDY0LnpjdS5jei9zaGliYm9sZXRo
MB0GA1UdDgQWBBSZ8jqz83EbT7nwl3t0fChz9zXIEzANBgkqhkiG9w0BAQsFAAOC
AYEAXk+ye0fLRXpDKTxCm7CVg7GMUGdSQSL4zi/hfR3ZLhaj9x+vl2sOracbT04/
et4AORtKPT7VPtEnrCy/Nyjg5S5sGh+yOXTkFdoA2Ebp3Vm6yWV56anKL+/g8XTr
kALitPb25lsXrG7wNTYuiqk6e62txuNmKT+8KevAohi7MsCFmirqhUqeziefqzjs
+8vnaJGD5Eh4ohkD+igzNn/CNkgTykfn1Qc/KhqJauccNXlTLouzB7FsmC3dzu6g
NGK3J1EeblTFlRVbCFo7pe/Ryt/32dAQ5kOfYWwRh12d9NXJkRZCzi6YkwAnxjqg
ox7N21PbOd6IsdVpTFIIHv68gtrjpj0keaCOUS3SKa84Pic95uGGVXLdMBO56IwB
0TaRk7VJcxvBX3LLA8xc1s0lgl5Ev9cgdB83hPEAf1S0UdFSH0p0B/Vwk8UxJEUq
S6zUaS/eWJLMadrCi7kJzEOyYjuM6NcBR39FYOd3B5uGOMqBPvS3J1I3p3nkccvL
yMYZ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://rtest64.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rtest64.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rtest64.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUEdohfWiYAkvz4OFRVdc3dXU7nWAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rtest64.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">RT system UWB</md:ServiceName>
        <md:ServiceName xml:lang="cs">RT system ZĆU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Request tracker University of Pilsen</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">RT systém Západočeské university</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Grolmus</md:SurName>
      <md:EmailAddress>mailto:iss@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/metadata.php/default-sp">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">EO Video Platforma</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">EO Video Platform</mdui:DisplayName>
          <mdui:Description xml:lang="cs">EO Video Platforma.</mdui:Description>
          <mdui:Description xml:lang="en">EO Video Platform is a platform being developed within the European Space Agency project.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.cgi.com/ceska-republika/cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.cgi.com/ceska-republika/en</mdui:InformationURL>
          <mdui:Logo height="81" width="306">https://saml-proxy.vantage.earthi.world/simplesaml/vantage.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">Vantage</md:ServiceName>
        <md:ServiceName xml:lang="no">Vantage</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CGI IT Czech Republic s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CGI IT Czech Republic s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CGI IT Czech Republic s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CGI IT Czech Republic s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cgi.com/ceska-republika/cs</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cgi.com/ceska-republika/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>Lenka</md:GivenName>
      <md:SurName>Svabova</md:SurName>
      <md:EmailAddress>mailto:lenka.svabova@cgi.com</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Guznar</md:SurName>
      <md:EmailAddress>mailto:jan.guznar@cgi.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://saml.k8s.prf.jcu.cz">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">EduApps</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">EduApps</mdui:DisplayName>
          <mdui:Description xml:lang="cs">EDU aplikace pro JCU.</mdui:Description>
          <mdui:Description xml:lang="en">EDU apps for JCU.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://edu-apps.k8s.prf.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://edu-apps.k8s.prf.jcu.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.k8s.prf.jcu.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.k8s.prf.jcu.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml.k8s.prf.jcu.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Sojka</md:SurName>
      <md:EmailAddress>mailto:sojkaj00@prf.jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sb.kr-vysocina.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">kr-vysocina.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Vysocina Region (NT1)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Enviroment for domain NT1</mdui:Description>
          <mdui:DisplayName xml:lang="cs">Kraj Vysočina (NT1)</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Prostředí pro doménu NT1</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.kr-vysocina.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.kr-vysocina.cz/</mdui:InformationURL>
          <mdui:Logo height="64" width="200">https://sb.kr-vysocina.cz/idp/images/vysocina.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDRzCCAi+gAwIBAgIUOD8Z4lQ9airU5R2SV5Ocd24VLnUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDRzCCAi+gAwIBAgIULJ/8csWnePX1BS6CxUy5Re0YxWAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDSDCCAjCgAwIBAgIVAPXMzXWEyJ/P55cYY9v5WNACMKstMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sb.kr-vysocina.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sb.kr-vysocina.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sb.kr-vysocina.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sb.kr-vysocina.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sb.kr-vysocina.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sb.kr-vysocina.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sb.kr-vysocina.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sb.kr-vysocina.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sb.kr-vysocina.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sb.kr-vysocina.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">kr-vysocina.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDRzCCAi+gAwIBAgIUOD8Z4lQ9airU5R2SV5Ocd24VLnUwDQYJKoZIhvcNAQEL
BQAwIjEgMB4GA1UEAwwXc3J2LXNoaWJiLmV4dDEua3UuamkuY3owHhcNMTkwMTE0
MDk1MDUyWhcNMzkwMTE0MDk1MDUyWjAiMSAwHgYDVQQDDBdzcnYtc2hpYmIuZXh0
MS5rdS5qaS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIpZiQD0
OI/tjYqWWDkL+1FV7hHAUmSiMpjpGQMfUIQCo7XKAIXZekdULN1LxdigdEmaB7/q
Vcgr5iMOc/huJcFYLGAjVZch07lFLJ6yfYOclrAKdVn5gHkc8o4hcvyxoDwSIVor
1OVkV8UQg723e5uEuRYkEQKpnOm0Z9Oa95no+hFsKyg2HqmiU0XhEK3W10Y51Cxd
J3sUOgVH3DnEdEAa0O7pEJpn8SUCxRaozVklkOksiSPz+i147JBTT4Rb7oAFUVfU
saJkcBqjjoFKKOd2HDs5sFeuoRHgVdjoPOi12QNLKMZrg0LEQAAdJIabTCGay59h
bx+4Acq+x4qLimUCAwEAAaN1MHMwHQYDVR0OBBYEFDuRG3ejW/mwQns0OLU7NNRL
ZzYHMFIGA1UdEQRLMEmCF3Nydi1zaGliYi5leHQxLmt1LmppLmN6hi5odHRwczov
L3Nydi1zaGliYi5leHQxLmt1LmppLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBAQBGv8m9vbNhkWDD/ilq6zPoyUcLLwQ7D9K8hkwBMvaAM1lGW6/x
Mj+Y8jGhxwH3TCRfTEOp8vPqRmEJXpVkg4SkC45ibrWLBabpD+7J71CAjZ2/Pp/Q
qH589mHjgeRgNVY1zPiwJEYg/FbgDYkONZMvo6r3G5n6ouO5gs9OznYw0hVcUDjb
4A2nz+Bo53u3aIkAjzlMyozKmbRSy7ctwf4BotJN8sbWq/grTs1eSr3jR/T8l16I
XqDkCgaGzjFTL1U5urIeZtTUdFKDMofWcn1b2paBPW9bPa9nn4bsD1vBw9qZm7hl
OwpyBRBBS62uJD6Sgofsn87ros395DfG00vN</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDRzCCAi+gAwIBAgIULJ/8csWnePX1BS6CxUy5Re0YxWAwDQYJKoZIhvcNAQEL
BQAwIjEgMB4GA1UEAwwXc3J2LXNoaWJiLmV4dDEua3UuamkuY3owHhcNMTkwMTE0
MDk1MDUxWhcNMzkwMTE0MDk1MDUxWjAiMSAwHgYDVQQDDBdzcnYtc2hpYmIuZXh0
MS5rdS5qaS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALIbd4sI
g7RB5PYPrCNshCyy3Uk+h9TiBT0Aewugo+bx6ZaE47WOx+NkYiMLCtzBqFBn6ogU
fS253wGGMF8cfC7OpF+/pn1Uf1h1TTwhUtBdIT6/JalqUoP6YloeQTxEdIttv7+j
UeY46rVv2dkrAFFni66y0MbrF6/lEfsSf58gP/XLluK6DPCPgncX6aMPS5CS9QPI
Lvzk/ARw3gsJ4PowLaLy3FOwVdj4OGPqzhjQRP0YFp/K/gtr3zJCPc424wVlQw4d
0LYN+AZVuPoPEUyQTtcAvj8hSH+gS5D7uGSjMfFTldPEEEYAtRjnn+jcv3NNazPG
oIHKplM03woP+lUCAwEAAaN1MHMwHQYDVR0OBBYEFOXtdhdoS4caBcPrlwU8CFIU
Bq5QMFIGA1UdEQRLMEmCF3Nydi1zaGliYi5leHQxLmt1LmppLmN6hi5odHRwczov
L3Nydi1zaGliYi5leHQxLmt1LmppLmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
DQEBCwUAA4IBAQCAN+fgwFs0Y+bUxYnFQy4g1LwXYcuo+AE7GWefNuAUih766/m/
qyA4+1LJ9+AlF9cPvSAVDC5FoPVf7Y5BuMjSRlgG5deGKrUdFdKdMDdoun1OOr0J
Uiz+ST0JgrRa5nHhywihIQLU+Pd23cy667vBfClemszbkjZ1xg05q7FsJ2PmvQFT
X1ft2uNX+HlKBE73YerQiQI1XOYYI6oW2Kyl2xrfEfnv8QKKHocNbI4cSMEcrxy3
PbIKbizTkSf/WOETu1HKBjxHgDmYaXTEWTSXn4cltZF6OwL4ldxMTtkufwtDwSUE
FEUsHAa2vOZKf4ls8zBYUxsoH94Vv+Gn8QLq</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDSDCCAjCgAwIBAgIVAPXMzXWEyJ/P55cYY9v5WNACMKstMA0GCSqGSIb3DQEB
CwUAMCIxIDAeBgNVBAMMF3Nydi1zaGliYi5leHQxLmt1LmppLmN6MB4XDTE5MDEx
NDA5NTA1MloXDTM5MDExNDA5NTA1MlowIjEgMB4GA1UEAwwXc3J2LXNoaWJiLmV4
dDEua3UuamkuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCPFPKL
zumjhVaTsIBwATcBNn1vYxNlU7yOBxYijXC+rS4QFckjoTNbqdrYz+dIQqjumP3/
yCLuelIP4oDdB1mJJ5oiMmV/m3EFf7NoYryXNWJe30xwV+XJBciC5gPUhaI/4PAm
avDBt1/ti/0rxxqVq4K9H1IDHq0RioyrPeRvKyXwNoQnyMlQ5drEhHY4OTZ8kv6J
BHI2XwPaZcS3nirUPlVLtb6xXYCn5hDo58H/QdhcyVzOEizDtVmGcVjPCaJKuhFT
RpQS5G7YHGKVvEnjqBWnVZ2JnHd0jRbzHMmEf6gk/ux3/Warkenc7WeYbGOinNbF
wvwRctLSIZXQ2+XjAgMBAAGjdTBzMB0GA1UdDgQWBBTGLO4yqPTWYeUMYYsxbmiJ
SdwCeDBSBgNVHREESzBJghdzcnYtc2hpYmIuZXh0MS5rdS5qaS5jeoYuaHR0cHM6
Ly9zcnYtc2hpYmIuZXh0MS5rdS5qaS5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG
9w0BAQsFAAOCAQEAQxAL5RHez3g6IoUMsCO3vk5B2DoTtwD1WsQaUmDg3MZ3Y6/I
aaUqCHKkpR+ZWvmWsOudDhPTUPMIb0JnMPvYftNw2DNZfJKFCcg5yV4OXD2tQz4l
J80bY9Hw05YEy0YfxYnO2ZohpxPZlr6ORl4KlQQ06lLjg+GVjiAfujNYNqb+wOAU
PvnTGr9/1OwP951HAxIEgN0k2wtvHMWOGRHK2qzOBFZowfPwnv4vsM0JnG5aOqSo
dJRE6pVaEGw4uJymV2/H9cmoYs4tSLkwN2sBD6lc3rAOaSVo3skCyFGb9vh+4ADl
pTUi2IGZnWDG9vjmoV1IKZUBcPwochTp88S5IA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sb.kr-vysocina.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Vysočina Region</OrganizationName>
      <OrganizationName xml:lang="cs">Kraj Vysočina</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Vysocina Region (NT1)</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Kraj Vysočina (NT1)</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.kr-vysocina.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.kr-vysocina.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Milan</GivenName>
      <SurName>Lysa</SurName>
      <EmailAddress>mailto:Lysa.M@kr-vysocina.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sb.nem-tr.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nem-tr.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Trebic Hospital</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Nemocnice Trebic, p.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for staff of Trebic Hospital</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zamestnance Nemocnice Trebic, p.o.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">http://www.nem-tr.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">http://www.nem-tr.cz</mdui:InformationURL>
          <mdui:Logo height="100" width="305">https://sb.nem-tr.cz/idp/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUfzbEPNp0pnFm0o8jxCo2Gkh1QLAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIURtAT0TzyS/20av+08LtAAQ3DCgwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGzCCAgOgAwIBAgIUP0v+Kh+e2FTzPWPC+Ro6rUuWFB8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sb.nem-tr.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sb.nem-tr.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sb.nem-tr.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sb.nem-tr.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Nemocnice Trebic, p.o.</OrganizationName>
      <OrganizationName xml:lang="en">Trebic Hospital</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Nemocnice Trebic, p.o.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Trebic Hospital</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">http://www.nem-tr.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">http://www.nem-tr.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Tomáš</GivenName>
      <SurName>Prokop</SurName>
      <EmailAddress>mailto:tprokop@nem-tr.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://scs.it4i.cz/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
    </Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IT4I SCS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IT4I SCS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Self-service portal for needs of IT4I partners and users</mdui:Description>
          <mdui:Description xml:lang="cs">Samoobslužný portál pro potřeby partnerů a uživatelů IT4I</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.it4i.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.it4i.cz</mdui:InformationURL>
          <mdui:Logo height="120" width="777">https://extranet.it4i.cz/ssp/images/it4i_cz.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://scs.it4i.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://scs.it4i.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://scs.it4i.cz/shibboleth</ds:KeyName>
          <ds:KeyName>scs.it4i.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=scs.it4i.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDCDCCAfCgAwIBAgIJAPg9our9hPEZMA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://scs.it4i.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://scs.it4i.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://scs.it4i.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IT4I SCS</md:ServiceName>
        <md:ServiceName xml:lang="cs">IT4I SCS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Self-service portal for needs of IT4I partners and users</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Samoobslužný portál pro potřeby partnerů a uživatelů IT4I</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IT4Innovations - National Supercomputing Center</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">IT4Innovations - Národní Superpočítačové Centrum</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IT4Innovations</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IT4Innovations</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.it4i.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.it4i.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>IT4I</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@it4i.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:infrastruktura@it4i.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sdg2023.fel.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Single digital gateway SDG</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Jednotná digitální brána pro vysoké školství</mdui:DisplayName>
          <mdui:Description xml:lang="en">Implementation rules  SDG - service introduction pro High School/College/University</mdui:Description>
          <mdui:Description xml:lang="cs">Implementace pravidel jednoté digitální brány - zavedení služby pro Univerzity</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://sdg2023.fel.cvut.cz/projekt.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://sdg2023.fel.cvut.cz/projekt.php</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sdg2023.fel.cvut.cz/shibboleth</ds:KeyName>
          <ds:KeyName>sdg2023.fel.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sdg2023.fel.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUJYrj7CANRqPct47PL8ZFxo5kfq0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CTU SDG gateway</md:ServiceName>
        <md:ServiceName xml:lang="cs">ČVUT SDG Brána</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Implementation rules  SDG - service introduction pro High School/College/University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Implementace pravidel jednoté digitální brány - zavedení služby pro Univerzity</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cvut.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Marek</md:GivenName>
      <md:SurName>Nevosad</md:SurName>
      <md:EmailAddress>mailto:marek.nevosad@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Kezlinek</md:SurName>
      <md:EmailAddress>mailto:kezlinek@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://seth.ics.muni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>seth.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=seth.ics.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEbjCCA1agAwIBAgIRAN5YUKq8gO0Is7BK8vlZc+8wDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>seth.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=seth.ics.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEbjCCA1agAwIBAgIRAN5YUKq8gO0Is7BK8vlZc+8wDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://seth.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk university</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukas</md:GivenName>
      <md:SurName>Hejtmanek</md:SurName>
      <md:EmailAddress>xhejtman@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shb.demo.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream DEMO portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream DEMO portal</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance is for demo purposes.</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, tato instance je určena pro demonstrační účely</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shb.demo.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shb.demo.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shb.demo.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://shb.fmm.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shb.fmm.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shb.fmm.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUY1McUHVcVf9I9rmvmhKIlVkuYZwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream DEMO portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream DEMO portal</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance is for demo purposes.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, tato instance je určena pro demonstrační účely</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shb.fmm.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Fenomen multimedia Zone</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fenomen multimedia Zone</mdui:DisplayName>
          <mdui:Description xml:lang="en">Customer resources</mdui:Description>
          <mdui:Description xml:lang="cs">Customer resources</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shb.fmm.cz/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shb.fmm.cz/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shb.fmm.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shb.fmm.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shb.fmm.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUOMKtz3iwh7nkcleaEms9xI96084wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUEqRmY95NtcV52EsC/DG8MmneQE8wDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAxMMaW5zdG9yZW1ldGVyMB4XDTIzMDEwOTEwMzY0OFoXDTMz
MDEwNjEwMzY0OFowFzEVMBMGA1UEAxMMaW5zdG9yZW1ldGVyMIIBojANBgkqhkiG
9w0BAQEFAAOCAY8AMIIBigKCAYEAl9FzXadFg6ynj9j9PgbDpUWjGunLexgQNU+f
9nxt3dw2ipU9Bx+GOftNMSYbapKtZI18a2iqJTywbEMbf58LIOftswPELjn6GaEC
s+Je5BiIbJEvdp1cGYTYComLiqVN3H0xsAFLnsI7NiW5ZXfMwTeqAMG3qwUP1Wuw
d9jz7tcdDKuPA/re3zktlpoQQCXH23wE6ZgDya6wYTxOe9oBQDaGlpZc8Z7S+ylp
9IiKGO2H4fUzQ/yC9rmquVXmlQzKF8lVbJiJLTOjDhV0kC5FMUh2K8BP2WdJx6Hl
E0weYtpkkC//ac1rdWxqOlisp35/tnkMdpgX+rSSJUhv77K8LAlAhh12AKnD0BrV
NIZvHDpJ/yMwowu7hXhuH/c+kxRn+4Wnm40GQ92oYwdbZqJ1oMcqliZRVMbSEmFu
P4EPSb9dWBIyfno4LthFP9wPKcWT24geiSyCXHNwwV3tyoydDXILaIISM3UwebgN
tLQckt19TyhLfrqo7DBAzT+cN7dlAgMBAAGjOjA4MBcGA1UdEQQQMA6CDGluc3Rv
cmVtZXRlcjAdBgNVHQ4EFgQUfSLsfZBYETyhdrfc4xPaNBn5tEswDQYJKoZIhvcN
AQELBQADggGBABc8PQBCRzAGbxA2ROCbFQjeDEOumQZSkVyKLEquo0JzULm1baUk
N1OG19j9HJ8LAFPhjH4lElEbpMe0K1A8oLAtdWk2eaRRVWnCZuNIj8Y0sxvTWG4O
MOutBIYcvx+A0Q/7ro/mZ2btuw7bpQd9klIc5qeDR00ACxoVlkoX+icCeFUYXPLW
wGirOvSCgS08xrLxMMhj3wPS91Zs76jf9+o23SSQGugNMuhGLObtqpET75U7wGUW
0kup5tjBLXl/N34A6gUl9yev/n6xcl4L9tidVvxTUbl1pKqCGXfKpF4yeo8M6m6z
Nz3AXfJ/cOmH26ogHXJnAi1b99ZxmQaLAaW/JyybncKgI9T8U1/yOKt5of0wIDeK
2rvaH4QiBL1AGR77CMUZmihIoCrQRPojQde7yQnTfFOaMtQKVmyuJCA/oXMkFvbk
/LUXwIdU0bgTtYu263Ssz5rCPfl//rUFcqcUE2vedxXO9eWnCkEKhU+LCxbDnxRB
LYoYruymHiuISA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.fmm.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Fenomen multimedia Zone</md:ServiceName>
        <md:ServiceName xml:lang="cs">Fenomen multimedia Zone</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Customer resources</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Customer resources</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shib-sp.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">shib-sp.zcu.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">shib-sp.zcu.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">shib-sp.zcu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací SP</mdui:Description>
          <mdui:InformationURL xml:lang="en">shib-sp.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">shib-sp.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shib-sp.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://shib-sp.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shib-sp.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shib-sp.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUcl4Gl6Nu1RjRZEpcmvwBR5eCj4kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://shib-sp.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shib-sp.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shib-sp.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUbb/hFWbvKShjZKztTyE6CrpoAWwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-sp.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">shib-sp.zcu.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">shib-sp.zcu.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">shib-sp.zcu.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Testovací SP</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shib.medvik.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">medvik.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Medical Library, Prague - Medvik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní lékařská knihovna - Medvik</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for users of Medvik system.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro uživatele systému Medvik.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.nlk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.nlk.cz/</mdui:InformationURL>
          <mdui:Logo height="75" width="108">https://www.medvik.cz/images/medvik-logo.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAKMiHq0d4bAWIkzqJ8xa2A2rXPLaMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUZHwtWy3i7rGrqoNqeEmxki1iyAEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUEeRp9ty/hGQiBOH5QC4ckOo1HwswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.medvik.cz/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.medvik.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.medvik.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.medvik.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.medvik.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.medvik.cz/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.medvik.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.medvik.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.medvik.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.medvik.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">medvik.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAKMiHq0d4bAWIkzqJ8xa2A2rXPLaMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUZHwtWy3i7rGrqoNqeEmxki1iyAEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUEeRp9ty/hGQiBOH5QC4ckOo1HwswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.medvik.cz/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.medvik.cz/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Medical Library</OrganizationName>
      <OrganizationName xml:lang="cs">Národní lékařská knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National Medical Library, Prague - Medvik</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní lékařská knihovna - Medvik</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.nlk.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.nlk.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Filip</GivenName>
      <SurName>Kriz</SurName>
      <EmailAddress>mailto:medvik@nlk.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shib.psp.cz/simplesaml">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">psp.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Parliamentary Library of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Parlamentní knihovna ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">Parliamentary Library of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">Parlamentní knihovna Poslanecké sněmovny České republiky</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://pspen.psp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.psp.cz</mdui:InformationURL>
          <mdui:Logo height="123" width="168">https://shib.psp.cz/logo-parlamentni-knihovna.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.psp.cz/simplesaml/module.php/saml/idp/singleLogout"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.psp.cz/simplesaml/module.php/saml/idp/singleSignOnService"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Parliamentary Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Parlamentní knihovna Poslanecké sněmovny České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Parliamentary Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Parlamentní knihovna Poslanecké sněmovny České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://pspen.psp.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.psp.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Holubec</md:SurName>
      <md:EmailAddress>mailto:HolubecP@psp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shib.screenx.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ScreenX</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ScreenX</mdui:DisplayName>
          <mdui:Description xml:lang="en">Laboratory Information Management System.</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu laboratorních dat.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.openscreen.cz/en/software#screenx-section</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.openscreen.cz/cs/software#screenx-section</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shib.screenx.cz/static/vue/img/screenx-logo-light-2.38bd7898.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shib.screenx.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shib.screenx.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://shib.screenx.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shib.screenx.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shib.screenx.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUadmcbOZ8Bn2NCsdgAT0wAA7aKVwwDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAxMPc2hpYi5zY3JlZW54LmN6MB4XDTI1MTIxNzEwMDU0MFoX
DTM1MTIxNTEwMDU0MFowGjEYMBYGA1UEAxMPc2hpYi5zY3JlZW54LmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEArbHFGmtVnZRm5NuEvxxS+4Aw6JqM
mbAGKzRC00+YJaeR6LkjN7K3Zc4RC2kBhYrBcO7ISk24oFcxGqKCuDSfM+g0Hr12
JS2wltJhputQFu2brRIWIoczmFlIG4s8P1YQ7YPUjmGeYZKhUL/UmJSHhc4Z6xqB
vXwoUqEI6vESGKwOGxhWUFxnApv8tjPbYwWklIEzO1U0opMXqSmnWP12enR2vepq
nGZZv8Bi6QB5Y9mnAOS65/SR2B5gnpodZnn2rDLwaId7AyW2+1wrmKqixKWZE8SJ
Dqd+EM31uxX+r9ChunO+v4s8cjaMiZwVuGoeEC0ohCDbFwA+aro9je8kukYH1U52
sGPWpqZShvqneAWYa5zVtTppZKzMoNTeuDvwkuIQn+svgSUhM0XJPrHQZdJsYNwo
kXW+8JuNDGApVX8fe9nfs67DSENnWM7CI4AgtfBF6IMXS8+nexX9+0tnldSQVX4J
LZTxWXYq8tgbJXiQ6zmourKhrtWdl9aYoaYxAgMBAAGjYTBfMD4GA1UdEQQ3MDWC
D3NoaWIuc2NyZWVueC5jeoYiaHR0cHM6Ly9zaGliLnNjcmVlbnguY3ovc2hpYmJv
bGV0aDAdBgNVHQ4EFgQUt1BpaRbs/RgV24zV+bVaPZmrRogwDQYJKoZIhvcNAQEL
BQADggGBAFo6hVNeWFfK1tgEc2+pV1VP3UpsDb2JPPdgt/acBKgVTsE4UQmWVP3z
URErmEt0aek4+JSMGAuCJdchvXZVsNuegAoimODmw7M3YisrGqIalqA73WRb9yC9
gNQFQYZhj9asrNWMXteKoBar6imSN4Xhso2ZaBRNR0pv9p/srgLyWyVQtS2ilmeH
Oe2nFAKHDuVtRfyCFRpjiI1jbzTLInCf3tS0Vb2gbNZCb6xiM6UszQPnx+YJaJv0
raTUlYyOd3lebQ4PzOaSXrR2JpETdYtmrN3TIePCs923V1gLYh/ATBlDLbukKHj7
UHwCrDiGtHb+Nw4/NYqzK6+P1o2VhAosXOkpC57Cy/pR55XHA6B9vlh6CjVHndB5
3pVWaCbCiXIzgqsAJU8l68exWGllztD27/cFJkcHPkBc6yo6qZQb85W73TT9WTRr
gdPcaP7kbgtprNql88X6hTWVPkusje6sssfzFlnC7Sf7qar/uF4KjXHdxvFBKqxl
oQi/e3LQdg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.screenx.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ScreenX</md:ServiceName>
        <md:ServiceName xml:lang="cs">ScreenX</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Laboratory Information Management System.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu laboratorních dat.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Molecular Genetics of the Czech Academy of Sciences, CZ-OPENSCREEN: National Infrastructure for Chemical Biology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav molekulární genetiky AV ČR, v. v. i., CZ-OPENSCREEN: Národní infrastruktura chemické biologie</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.openscreen.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.openscreen.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Zacek</md:SurName>
      <md:EmailAddress>mailto:michal.zacek@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Ruzicka</md:SurName>
      <md:EmailAddress>mailto:jiri.ruzicka@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>IMG IT Team</md:GivenName>
      <md:EmailAddress>mailto:report@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shib.zcu.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://myacademicid.org/entity-categories/esi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">zcu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of West Bohemia in Pilsen</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Západočeská univerzita v Plzni</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider of the University of West Bohemia in Pilsen.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider Západočeské univerzity v Plzni.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/idp/images/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUCDrOzILCIUYr3TrnUQPEsHWa+wMwDQYJKoZIhvcNAQEF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUQiBRUmbK3JD/kzqcKQx8S2IiYMYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.zcu.cz/idp/profile/SAML2/Redirect/SLO"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.zcu.cz/idp/profile/SAML2/POST/SLO"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.zcu.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.zcu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.zcu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.zcu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationName xml:lang="en">University of Pilsen</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">University of Pilsen</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>WEBnet-WIRT</md:GivenName>
      <md:EmailAddress>mailto:abuse@zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shib2.zcu.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">zcu.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of Pilsen - MFA</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Západočeská univerzita v Plzni - MFA</mdui:DisplayName>
          <mdui:Description xml:lang="en">MFA Identity Provider for students and staff of the University of West Bohemia.</mdui:Description>
          <mdui:Description xml:lang="cs">MFA Identity Provider pro studenty a zaměstance Západočeské univerzity v Plzni.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="102" width="102">https://shib2.zcu.cz/idp/images/zcu_logo_mfa.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIVAPwzjUwS0t/PUv4Q94ie5se+VPTiMA0GCSqGSIb3DQEBCwUAMBcxFTAT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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUQfG3jvpXLZw34jbT2c0yxxGp54EwDQYJKoZIhvcNAQELBQAwFzEVMBMG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib2.zcu.cz/idp/profile/SAML2/Redirect/SLO"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib2.zcu.cz/idp/profile/SAML2/POST/SLO"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib2.zcu.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib2.zcu.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib2.zcu.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib2.zcu.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationName xml:lang="en">University of Pilsen</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">University of Pilsen</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>WEBnet-WIRT</md:GivenName>
      <md:EmailAddress>mailto:abuse@zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibbo.tul.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">tul.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Technical University of Liberec</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Technická univerzita v Liberci</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Technical University of Liberec.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Technickou univerzitu v Liberci.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tul.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tul.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://liane.tul.cz/img/znak-tul.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID6jCCAtKgAwIBAgIBCjANBgkqhkiG9w0BAQsFADCBmjELMAkGA1UEBhMCQ1ox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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibbo.tul.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibbo.tul.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibbo.tul.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibbo.tul.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibbo.tul.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibbo.tul.cz/idp/profile/SAML2/Redirect/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibbo.tul.cz/idp/profile/SAML2/SOAP/ECP"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Technical University of Liberec</OrganizationName>
      <OrganizationName xml:lang="cs">Technická univerzita v Liberci</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Technical University of Liberec</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Technická univerzita v Liberci</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.tul.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.tul.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Radek</GivenName>
      <SurName>Melzer</SurName>
      <EmailAddress>mailto:radek.melzer@tul.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>David</GivenName>
      <SurName>Kmoch</SurName>
      <EmailAddress>mailto:David.Kmoch@tul.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>Security Response Team</GivenName>
      <EmailAddress>mailto:abuse@tul.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.abbreva.site/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Development Abbreva - On-line registration to Moravian Library</DisplayName>
          <Description xml:lang="en">Development Abbreva - On-line registration to Moravian Library</Description>
          <InformationURL xml:lang="en">https://www.mzk.cz/registrace</InformationURL>
          <DisplayName xml:lang="cs">Vývoj Abbreva - On-line registrace do Moravské zemské knihovny</DisplayName>
          <Description xml:lang="cs">Vývoj Abbreva - On-line registrace do Moravské zemské knihovny</Description>
          <InformationURL xml:lang="cs">https://mzk.abbreva.site.cz/registrace</InformationURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.abbreva.site/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.abbreva.site/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://shibboleth.abbreva.site/shibboleth</ds:KeyName>
          <ds:KeyName>shibboleth.abbreva.site</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibboleth.abbreva.site</ds:X509SubjectName>
            <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUJX2hJZAEbRqPjAgREb51eyzvKQswDQYJKoZIhvcNAQEL
BQAwIjEgMB4GA1UEAxMXc2hpYmJvbGV0aC5hYmJyZXZhLnNpdGUwHhcNMjUwMTA5
MDkyNzM4WhcNMzUwMTA3MDkyNzM4WjAiMSAwHgYDVQQDExdzaGliYm9sZXRoLmFi
YnJldmEuc2l0ZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBANM89SIi
bcwnlvfFX2145FvUbJf9CE1YRbWG1SPRszL48Y8+oGq4Xso/CENALbZqIB8a+ZoW
U7K/yfF2Ds66Gp/UR4dDHs/VbhdYq28rfqOJubcTCLYnsCiGwnk2dkfUPwUxzFc7
OVI0UcxUpwyABJiBJxHXRNW5erJrODjH+8vPu1qX0y/4GQHeiDr2EeeFM1BohSjl
gBfI9dBpSB5qrLg5CPGWsC0mdDipq6UhtYmhBoWYOMteB5N0kyR+FZgsE4Ulirh2
gDhpOrE78HFYFao2ZJGoebSzbo6S72PyN0D2XBU92iGvVmwJjsieIoO/DCIkKqPf
3d5BmNZZbc7hks7EHWtsQKDcVUhSpcspDZwfB3U6Sa4pHQmHO2C5c2zP0RAo1i6V
KxyfhyoK9oCwX5nNnN3Yq/jmvEtLZ5kkFoK2z8KZTZYN7bqjhJvqU5Ae8/6EG+tQ
1YPBJII7vGI3rpAsxotf91tNn1dOd5WO0lKcnuyfiKDDocl7R5OftEKuKwIDAQAB
o3EwbzBOBgNVHREERzBFghdzaGliYm9sZXRoLmFiYnJldmEuc2l0ZYYqaHR0cHM6
Ly9zaGliYm9sZXRoLmFiYnJldmEuc2l0ZS9zaGliYm9sZXRoMB0GA1UdDgQWBBRn
Ki2e/8o9u3JbUGerH1eL+bKo8DANBgkqhkiG9w0BAQsFAAOCAYEA0bodSmcXECIF
o27IpK+C5zWW/nVhwwy7JsBKMffuIkL3QQKTAPD+/kD5nCBv7Z/MaDqY9pdCfdjp
+kCCxIJybm04I7o/qQPbssmZzp8WpVR/5OerAQfNGKgcQL63OQ/tgMCEcabXR1xN
wObFAfxQyo5w6sAPlZ8L0aKgsuQRP/3oaKRFOgBT4ZRoFG9tUQ0xBaE+b6TritUN
EAEW2ntIz9hAvMBdy53NdrfQnEZq8d3CtTKUr2TPXvn8dFj4iCpe6m0jLrGPoX+U
yR5J81HdpACfrD3wLiBUbmhIyzt5L93/qf9U8udqkYUWqisDPcKF7RbZptQpXjMZ
tUggKjmd3qGorXMeQDEMHIAuAbRryc3dTMGoZopcyxGXhbzdmR8ERo90XdMVYoz2
XudC91rebIqkP2TZH8KC292Dmah9wB1R190FdwfmoNuwagCNFBgrAENXiKiz/6NB
lOUd2HVEhGwC7nNJ8E4c6NZg5hbMVV/yPkD8w2ntgyNGIqtb3/rG</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.abbreva.site/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Development Abbreva - On-line registration to Moravian library</md:ServiceName>
        <md:ServiceName xml:lang="cs">Vývoj Abbreva - On-line registrace do Moravské zemské knihovny</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Abbreva.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Abbreva.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Abbreva.cz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Abbreva.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.abbreva.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.abbreva.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michael</md:GivenName>
      <md:SurName>Urban</md:SurName>
      <md:EmailAddress>mailto:michael.urban@abbreva.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:operative@abbreva.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.amu.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream, AMU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream, AMU</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on The Academy of Performing Arts in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Akademii múzických umění v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth.amu.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth.amu.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shibboleth.amu.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUOMKtz3iwh7nkcleaEms9xI96084wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUEqRmY95NtcV52EsC/DG8MmneQE8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream, AMU</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream, AMU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on  The Academy of Performing Arts in Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Akademii múzických umění v Praze</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.cuni.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream, UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream, UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on Charles University in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Univerzitě Karlově v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth.cuni.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth.cuni.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shibboleth.cuni.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stream1</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stream1</ds:X509SubjectName>
            <ds:X509Certificate>MIID5zCCAk+gAwIBAgIULurnMENzEqWhJpiVqCxBwbF58hQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream, UK</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream, UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on Charles University in Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Univerzitě Karlově v Praze.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibboleth.mzk.cz/simplesaml/metadata.xml">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">mzk.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Moravian Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moravská zemská knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the the Moravian Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Moravské zemské knihovny</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.mzk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.mzk.cz/</mdui:InformationURL>
          <mdui:Logo height="68" width="92">https://www.eduid.cz/idp-loga/mzk.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.mzk.cz/simplesaml/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.mzk.cz/simplesaml/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Sirtfi contact</md:GivenName>
      <md:EmailAddress>mailto:sirtfi@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:Vaclav.Rosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibboleth.nkp.cz/idp/shibboleth">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nkp.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:Description xml:lang="en">Identity provider for employees the National Library of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">Identity provider pro zaměstnance Národní knihovnu České republiky</mdui:Description>
          <mdui:DisplayName xml:lang="en">The National Library of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní knihovna České republiky</mdui:DisplayName>
          <mdui:InformationURL xml:lang="en">http://www.en.nkp.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.nkp.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="200" xml:lang="en">https://prx01.nkp.cz/images/nk-logo-en.svg</mdui:Logo>
          <mdui:Logo height="40" width="175" xml:lang="cs">https://prx01.nkp.cz/images/nk-logo-cz.svg</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIVAM9WIOQ/kjO9uiQWw85qkax0STh2MA0GCSqGSIb3DQEB
CwUAMB0xGzAZBgNVBAMMEnNoaWJib2xldGgzLm5rcC5jejAeFw0xNTEwMjEwNzQ4
MTFaFw0zNTEwMjEwNzQ4MTFaMB0xGzAZBgNVBAMMEnNoaWJib2xldGgzLm5rcC5j
ejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKSfEriIHxBMvIhOLbUY
8bzizfHb0YiTR1ktf8iY24NPogBtPLXQJaAeG8OcfIMl0MjB43CzWAk+TDavsQf9
FINw0ablo36EeoxyTGlf/Ezqvt9qa+d4DcOlYSBULQuAl4W3cLNIWWwAufmO4M7U
N7kAIqasvI8iqgaiYVoJgyum0ot+oy9B7XjTNRh2BQQ4zCQ030PaReX5GTmn23Q1
7toUXfzXQkZD48Oeapj+v10tjRGD1eZdK4e7BOPRcPxLG6xVEiKQhOmVAkdaoJCk
6tr/i9sBWGLtAKaz/YvQPRSDy0gEI8Zsg58RuOSgZQEiQOrJJz6Lk+XgtAzr0Yq0
FesCAwEAAaNqMGgwHQYDVR0OBBYEFFQ9FLJTPUviUERzpsCBxU/Ro1dbMEcGA1Ud
EQRAMD6CEnNoaWJib2xldGgzLm5rcC5jeoYoaHR0cHM6Ly9zaGliYm9sZXRoLm5r
cC5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAeVD7DzleAzrn
mAgdWb3Ucu7XKjUAWmg931sl8TibyfzhFKCKDSIVwGzwEjf9ztoi1EKtj/4gU03O
hiIpqlfO2qsGKpY8iwB71SXDn093k4tFsnxopZDh3A8cLEHLMPLHPZuo7uUTWEEy
+yCSfaEB6t5kpikLcEwH/bXm0ybTJb8rArLmVpxD6c02xiiqS//ENqvLdzu1GNGt
PliQ4xTE9YZavr9nQmUTItqBL8Kc5r5HffD9jLUIjJEgaybp3hHPt36cCEQPSziM
qrLMiJgW7pRc3VsCZUwI7NLjZ1XpBQZ5rqc6Hugi5pJFT6G9sU1UDHvOcs2Hz87n
0AEwqObc0A==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMjCCAhqgAwIBAgIUdHRSTk2XSr5bqG19DVwbK1ZyAfwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMjCCAhqgAwIBAgIUAMFp+bph5n/u8OoIw4dYB+HwI9cwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.nkp.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.nkp.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.nkp.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">nkp.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIVAM9WIOQ/kjO9uiQWw85qkax0STh2MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMjCCAhqgAwIBAgIUdHRSTk2XSr5bqG19DVwbK1ZyAfwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMjCCAhqgAwIBAgIUAMFp+bph5n/u8OoIw4dYB+HwI9cwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwSc2hpYmJvbGV0aDMubmtwLmN6MB4XDTE1MTAyMTA3NDgx
MFoXDTM1MTAyMTA3NDgxMFowHTEbMBkGA1UEAwwSc2hpYmJvbGV0aDMubmtwLmN6
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuJqCJgILI6jpgAqUHVzj
2rI/6ZPMbehYR7D+Ny85xc+kxa0tJowVimBOmaCA0Ogvf+ZJznc4Njbbwa4wM8f4
g4CcMeteM4Vxlb0VeaojziWTfHPleh2VZbfs3aaLt1BhJhuFHHEG7xsesYiWPyV/
kim9RozkIe3/saUV4u8yjym0G5ToBtO5Ni7abspXvkY9fSRP+N/+R6aHfLH1h70p
zkxnOgcWU92GcYm+qAv9991Wk3J5NtSj7myr5mm3nTjOF53QrZZ1KoeNti9TO5Nj
2ojGL2KDVLCPW7Gmvtk2qZONb6S6QK8Zl8mToRJi8jEjyZ18rU5TzUXCWSAA7pzO
bQIDAQABo2owaDAdBgNVHQ4EFgQUMkVHppME/zj1JNRmG8SQ7pXZY1EwRwYDVR0R
BEAwPoISc2hpYmJvbGV0aDMubmtwLmN6hihodHRwczovL3NoaWJib2xldGgubmtw
LmN6L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQAgFjNLelpIp4zh
59DwdO989j34yl2EIUTazKmVWN9sGYU+KKsGawo5MKa0lvEa7REz7vpUBJ2mOXwx
dPGQFu0GkSCMK95kKuQeClbt5xEfV7P7BqYlLX0pHTvLSJmtKAgsx+JjJWy2/Cq6
CKadyn9Zrh1PJlqmc1ixnDN2GWkAJpsbEk1QzscX7rzCdrBPsk86u00ivpZjWDOC
kLhgEY0+M21GfoFzUiiNclIaVklHoePZltlZDEejPaMKBlLAgeWRS8+3LTaVTHb7
PwgX57rtr69Fwaup9s8NId2QAu8GVQLnafugcQPTl2wQU67TtfQYWUZaTxOduyb9
ugzT90Pl</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.nkp.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.nkp.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">The National Library of the Czech Republic</OrganizationName>
      <OrganizationName xml:lang="cs">Národní knihovna České republiky</OrganizationName>
      <OrganizationDisplayName xml:lang="en">The National Library of the Czech Republic</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.en.nkp.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.nkp.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Kotrba</SurName>
      <EmailAddress>mailto:Pavel.Kotrba@nkp.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibboleth.sitmp.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">sitmp.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">SPRÁVA INFORMAČNÍCH TECHNOLOGIÍ MĚSTA PLZNĚ, p. o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">SPRÁVA INFORMAČNÍCH TECHNOLOGIÍ MĚSTA PLZNĚ, p. o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">SITMP Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro SPRÁVA INFORMAČNÍCH TECHNOLOGIÍ MĚSTA PLZNĚ, p. o.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.sitmp.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.sitmp.cz/</mdui:InformationURL>
          <mdui:Logo height="53" width="53">https://www.sitmp.cz/wp-content/uploads/2019/05/logo_53.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVANsAa3Igjx3BA5dxi4epyCu9JGEqMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVAJU6PLyo/e+2LxNTUUclkWsa0qOrMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUGVYgTvcNu14mO4+ATWJ7mvsFA8wwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.sitmp.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.sitmp.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.sitmp.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.sitmp.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.sitmp.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.sitmp.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">sitmp.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVANsAa3Igjx3BA5dxi4epyCu9JGEqMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEODCCAqCgAwIBAgIVAJU6PLyo/e+2LxNTUUclkWsa0qOrMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUGVYgTvcNu14mO4+ATWJ7mvsFA8wwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.sitmp.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">SPRÁVA INFORMAČNÍCH TECHNOLOGIÍ MĚSTA PLZNĚ, p. o.</OrganizationName>
      <OrganizationName xml:lang="cs">SPRÁVA INFORMAČNÍCH TECHNOLOGIÍ MĚSTA PLZNĚ, p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">SPRÁVA INFORMAČNÍCH TECHNOLOGIÍ MĚSTA PLZNĚ, p. o.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">SPRÁVA INFORMAČNÍCH TECHNOLOGIÍ MĚSTA PLZNĚ, p. o.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.sitmp.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.sitmp.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Úsek</GivenName>
      <SurName>Infrastruktury</SurName>
      <EmailAddress>mailto:hotline-ui@plzen.eu</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibboleth.techlib.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">techlib.cz</shibmd:Scope>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National Library of Technology</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní technická knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for National Library of Technology in Prague.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Národní technickou knihovnu v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.techlib.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.techlib.cz/cs/</mdui:InformationURL>
          <mdui:Logo height="40" width="67">https://www.techlib.cz/public/images/logo-eduid.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPzCCAiegAwIBAgIUX+osnvtxGkyyLqc3Z6xHhgMJP1cwDQYJKoZIhvcNAQEF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.techlib.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.techlib.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.techlib.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.techlib.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.techlib.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.techlib.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">techlib.cz</shibmd:Scope>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National Library of Technology</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní technická knihovna</mdui:DisplayName>
          <mdui:Logo height="40" width="67">https://www.techlib.cz/public/images/logo-eduid.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDPzCCAiegAwIBAgIUX+osnvtxGkyyLqc3Z6xHhgMJP1cwDQYJKoZIhvcNAQEF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.techlib.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.techlib.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Narodni technicka knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National Library of Technology</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Narodni technicka knihovna</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:ondrej.koch@techlib.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibboleth.utb.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/category/anonymous</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/category/pseudonymous</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/category/personalized</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">utb.cz</shibmd:Scope>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Tomas Bata University in Zlín</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Tomas Bata University in Zlín</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Univerzitu Tomáše Bati ve Zlíně</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.utb.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.utb.cz/</mdui:InformationURL>
          <mdui:Logo height="17" width="160" xml:lang="cs">https://shibboleth.utb.cz/assets/img/logo_cs_160x17.png</mdui:Logo>
          <mdui:Logo height="17" width="160" xml:lang="en">https://shibboleth.utb.cz/assets/img/logo_en_160x17.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAPR52o0qmfjhfAJboYmgUpU/SqjDMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUG8EVy5/yuFMBc25Qa5Z35G23cy4wDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAwwRc2hpYmJvbGV0aC51dGIuY3owHhcNMjAwODE0MTQwOTU4
WhcNNDAwODA5MTQwOTU4WjAcMRowGAYDVQQDDBFzaGliYm9sZXRoLnV0Yi5jejCC
ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAORSIoZu5kf8wGVI0MQ82ml+
EupaqgZG3TZzNbmXcnvZ5Umf3B0DIgHyDWlW7EOX4+VJ/6phZBF1qlLKvfZ+Q1iF
00id+eOE3oH8MnYnHFXk73YoPgeUUP906RhDpyc+pH1jnU2uambpLHxyYzXUFd8u
4QjSbIA9cLUpCBycIOTqcBapGooT/wLJhC/8J4BYzeSQWOfpcFuPmE9s9t6YESZV
W5bwc1aQ14Eno75aEv/Q5MfjYXzHCmoqefoMjHkjhHH+Bf89w7WPMzY+dfzGTF5T
U4dth88yJl75QP+oWy6zC5/uWhRtq1eUts76iZG1I7kRzzV4cpWpoaola2qHEc0C
AwEAAaNTMFEwHQYDVR0OBBYEFE/4xXgmFcMyoX3moRyZ2KAr73aRMB8GA1UdIwQY
MBaAFE/4xXgmFcMyoX3moRyZ2KAr73aRMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZI
hvcNAQELBQADggEBAJ1ANy0wHo/05NypnP1rAyhoC2bBRukkM3MtLJmevkcNRO5F
SqtFYOtgjRON2EPQMoZQBVFDs15GrxlobcamEBM2mIyuDdDY5bAbRXAMJ6+VXEx1
A4WBsuXbyAF4GkVRZjK6r0ClansGnVFcaaCHv6nozIFwOuynTlxmiA2y6QjxKOig
GhkkkizYriC9kkq8FeYhH3EapBuf5kgniYvzavbVv4j6AjGFYx3nHRfDPZ8N4osG
+BTTW/yfrHwoyQYYm+wtlgy45vmYGPFXivD0vyEnIJgnsQIVhyybxftl9VofCK/y
GDTEfLmIwXnO89kLfhY0Zytz+2KbCkzDwCaRrhM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.utb.cz/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.utb.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.utb.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.utb.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.utb.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.utb.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">utb.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAPR52o0qmfjhfAJboYmgUpU/SqjDMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDGTCCAgGgAwIBAgIUG8EVy5/yuFMBc25Qa5Z35G23cy4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.utb.cz/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.utb.cz/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Tomas Bata University in Zlín</OrganizationName>
      <OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.utb.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.utb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ivan</GivenName>
      <SurName>Masár</SurName>
      <EmailAddress>mailto:imasar@utb.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Ondřej</GivenName>
      <SurName>Fabián</SurName>
      <EmailAddress>mailto:fabian@utb.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.vscht.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream, VSCHT</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream, VSCHT</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on University of Chemistry and Technology in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Vysoké škole chemicko-technologické v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth.vscht.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth.vscht.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shibboleth.vscht.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stream1</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stream1</ds:X509SubjectName>
            <ds:X509Certificate>MIID5zCCAk+gAwIBAgIULurnMENzEqWhJpiVqCxBwbF58hQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream, VSCHT</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream, VSCHT</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on University of Chemistry and Technology in Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Vysoké škole chemicko-technologické v Praze.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibboleth.vsup.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">vsup.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Academy of Arts, Architecture and Design in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Academy of Arts, Architecture and Design in Prague.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Vysokou školu uměleckoprůmyslovou v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.umprum.cz/web/en/eduid</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.umprum.cz/web/cs/eduid</mdui:InformationURL>
          <mdui:Logo height="75" width="200">https://www.umprum.cz/logos/um2-200-cz.png</mdui:Logo>
          <mdui:Logo height="149" width="400">https://www.umprum.cz/logos/um2-400-cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUDjTvukT6g4YCGFjYBAvfEVX4PI4wDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwSc2hpYmJvbGV0aC52c3VwLmN6MB4XDTE2MDkwNTEyNDg1
N1oXDTM2MDkwNTEyNDg1N1owHTEbMBkGA1UEAwwSc2hpYmJvbGV0aC52c3VwLmN6
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3MUL7wsZRbZUMxYRZcZJ
LhbkUhAIGTWbA70EwYpiOpHaQIwNSNPGRVcmX1A9mQU+Ahc7jW9T9Id4Ch9dpVzg
/ekf+jLlv1Fnz++sIJyKIVt5uS+ASebcUnElueTDk/dLFDS7crMAjoKLpmMStf8s
BRd+/RITM45PU6OYjEsjfDI38PqiUL/yn5M3b7sA3+Lt11AqMPTQh09MmDgPixmr
0y2OcpiMDeGKid95rHfTw9uIX0TiUQqNol3xSEJJUuX49bCol1yUUVWP3cOFD5Bc
V4HJArI74b0xFeEV4tOe53H/t5Komwzz5x4IfP8gbJEiWMOakJpR4oXS9b+uca6m
ZwIDAQABo2swaTAdBgNVHQ4EFgQUytThw4aE86v2CoiBXBmlvpkYVlcwSAYDVR0R
BEEwP4ISc2hpYmJvbGV0aC52c3VwLmN6hilodHRwczovL3NoaWJib2xldGgudnN1
cC5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAd0l6OYCaLxnc
QQIDJK94Pt/EdvlqIj7X8X4a6nNJjeoFTQrjDxT+YGh8jNZoyzZsDvM34Vv6KKXL
1CmQhY9SyYzKN4ELXfj7GJdQCJn5qSzlIj1q4B4pnJeKjrRhVEtCbgGkdYO+d6m2
6XNToyO8DKsU6eo8d99nG9XC6+9l54ri0WG+0OXa7rSwpWGhkJdFXJiVKfgkZJZb
9K7VUAt0pCXOFhcRzmUr6mLd6WC4jvHU7z/VvXvz70CAhHfj3af2nTYthafbhmwN
NlJVbcUQp0+pO0fZmOz1YlKI1/HksQ/VX42/fsYzTgRlPvD5KNy3Q8HynmYOEo32
tvYslV6W1g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUNhECZdLyThcaRq5P1pJMr3PyrrkwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwSc2hpYmJvbGV0aC52c3VwLmN6MB4XDTE2MDkwNTEyNDg1
NloXDTM2MDkwNTEyNDg1NlowHTEbMBkGA1UEAwwSc2hpYmJvbGV0aC52c3VwLmN6
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxsGwVwNeOI199X2KlCfo
/udjvHW0l2aRndsnIPmR7ugTrsPdtD4ZzGrngj2udp49znVRpW0OFjrJoMS2ivPA
bakEmggnjLg0jjfLZuvubMdpVH1RLalQvVzpOZfQPiCAeC9PKxMOzspvV8d1eMR9
ANi2efONA+js41/x5ONHAvlEvPtoaPKv3QY4iCOVwRd7tPj3Mmnwv1TfrGIQ+BBD
BSd51UHniPKz4Bdhn/0WtnucGDuask+D+r7EnP6MbDAgIobHMjEjQFTF8JtNUHFQ
CUbTM/85qPt/wwhSXaGXtIkvkQrtyPodgY6j3fIgYUhFvq0XSCYgqurjWR02/aMB
KQIDAQABo2swaTAdBgNVHQ4EFgQU4VIPm3GaXJdeLt2Dzj9G8b05+9YwSAYDVR0R
BEEwP4ISc2hpYmJvbGV0aC52c3VwLmN6hilodHRwczovL3NoaWJib2xldGgudnN1
cC5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAZctZVaHSWl8C
rCWrUJCnR4vEG0Y83cF7+QdLw6IboI1ufEZmZeLyX45TvWvuHXwjrqN4mHgP3JMs
qwMdwCoyuqZigbAnyjti17z9MXQNdcO+arEkj6rD9Kg9SR4qVtTCtzfVlJMFfgv9
wbh22UIHA1fpSr7m0VQHjndwlvabOBLyYO08gf5laIVNn4a1KOmXP82nUpPXY+TG
QkoNZq8MFMzLrBJbow3BQS0VK/QKHNDMorVzYkMzXNEw2RR+NPhDHpIUdiXbatwj
H1JweKhINzL9Z7j5sRvUUgSE9HFLx+3OMHfQww7a3gCwrxwzsn15bGgO7QZeaHuF
MESY2vWeuQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIURAybcJbioN8swEHdZR0i/UG4Y3swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.vsup.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.vsup.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.vsup.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.vsup.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.vsup.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.vsup.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vsup.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUDjTvukT6g4YCGFjYBAvfEVX4PI4wDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwSc2hpYmJvbGV0aC52c3VwLmN6MB4XDTE2MDkwNTEyNDg1
N1oXDTM2MDkwNTEyNDg1N1owHTEbMBkGA1UEAwwSc2hpYmJvbGV0aC52c3VwLmN6
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3MUL7wsZRbZUMxYRZcZJ
LhbkUhAIGTWbA70EwYpiOpHaQIwNSNPGRVcmX1A9mQU+Ahc7jW9T9Id4Ch9dpVzg
/ekf+jLlv1Fnz++sIJyKIVt5uS+ASebcUnElueTDk/dLFDS7crMAjoKLpmMStf8s
BRd+/RITM45PU6OYjEsjfDI38PqiUL/yn5M3b7sA3+Lt11AqMPTQh09MmDgPixmr
0y2OcpiMDeGKid95rHfTw9uIX0TiUQqNol3xSEJJUuX49bCol1yUUVWP3cOFD5Bc
V4HJArI74b0xFeEV4tOe53H/t5Komwzz5x4IfP8gbJEiWMOakJpR4oXS9b+uca6m
ZwIDAQABo2swaTAdBgNVHQ4EFgQUytThw4aE86v2CoiBXBmlvpkYVlcwSAYDVR0R
BEEwP4ISc2hpYmJvbGV0aC52c3VwLmN6hilodHRwczovL3NoaWJib2xldGgudnN1
cC5jei9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAd0l6OYCaLxnc
QQIDJK94Pt/EdvlqIj7X8X4a6nNJjeoFTQrjDxT+YGh8jNZoyzZsDvM34Vv6KKXL
1CmQhY9SyYzKN4ELXfj7GJdQCJn5qSzlIj1q4B4pnJeKjrRhVEtCbgGkdYO+d6m2
6XNToyO8DKsU6eo8d99nG9XC6+9l54ri0WG+0OXa7rSwpWGhkJdFXJiVKfgkZJZb
9K7VUAt0pCXOFhcRzmUr6mLd6WC4jvHU7z/VvXvz70CAhHfj3af2nTYthafbhmwN
NlJVbcUQp0+pO0fZmOz1YlKI1/HksQ/VX42/fsYzTgRlPvD5KNy3Q8HynmYOEo32
tvYslV6W1g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUNhECZdLyThcaRq5P1pJMr3PyrrkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIURAybcJbioN8swEHdZR0i/UG4Y3swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.vsup.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Academy of Arts, Architecture and Design in Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Academy of Arts, Architecture and Design in Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.umprum.cz/web/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.umprum.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ivan</GivenName>
      <SurName>Čapek</SurName>
      <EmailAddress>mailto:ivan.capek@vsup.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Lukáš</GivenName>
      <SurName>Mázl</SurName>
      <EmailAddress>mailto:mazl@vsup.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth2.lf1.cuni.cz/shibboleth/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Service Provider 2.6 - IIS 8.5</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Service Provider 2.6 - IIS 8.5</mdui:DisplayName>
          <mdui:Description xml:lang="en">Central authentication service for web applications</mdui:Description>
          <mdui:Description xml:lang="cs">Centrální autentizační služba pro webové aplikace</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth2.lf1.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth2.lf1.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/DS" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/WAYF" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/CUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/MUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/UPOL"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dek-shibboleth2</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dek-shibboleth2</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJAIwXMALwBGArMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Shibboleth2.lf1.cuni.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Shibboleth2.lf1.cuni.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Central autentization for web services</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Centrální autentizace webových služeb</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">First Faculty of Medicine, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">1. lékařská fakulta, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">First Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">1. lékařská fakulta, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf1.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf1.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Nikl</md:SurName>
      <md:EmailAddress>mailto:tomas.nikl@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Josef</md:GivenName>
      <md:SurName>Martňák</md:SurName>
      <md:EmailAddress>mailto:josef.martinak@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivan</md:GivenName>
      <md:SurName>Pešek</md:SurName>
      <md:EmailAddress>mailto:ivan.pasek@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth3.lf1.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Authentication Service UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Autentizační služba UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Charles University authentication service for electronic identities verification associated in eduid.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Služba ověřování elektronických identit sdružených v eduid.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth3.lf1.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth3.lf1.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="94" width="120">https://shibboleth3.lf1.cuni.cz/pix/grif.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/WAYF" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/CUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/MUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/UPOL"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dek-shibboleth3</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dek-shibboleth3</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUO7p/Kg+qN7bMs6VA9V3cPiwZ56swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dek-shibboleth3</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dek-shibboleth3</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUZi7avySkquPO8vvZAAOm0SoHrQEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Authentication Service UK</md:ServiceName>
        <md:ServiceName xml:lang="cs">Autentizační služba UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Charles University authentication service for electronic identities verification associated in eduid.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba ověřování elektronických identit sdružených v eduid.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Nikl</md:SurName>
      <md:EmailAddress>mailto:tomas.nikl@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibbolethidp.nzm.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">nzm.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Národní zemědělské muzeum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">National Museum of Agriculture</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro NZM.</mdui:Description>
          <mdui:Description xml:lang="en">NZM's Identity Provider.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">http://www.nzm.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">http://www.nzm.cz/en</mdui:InformationURL>
          <mdui:Logo height="72" width="184">https://www.nzm.cz/img/logo-nzm.svg</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEPDCCAqSgAwIBAgIVALTABlxr/5CLm21Hpkp4wIPrPH6sMA0GCSqGSIb3DQEBCwUAMB8xHTAb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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUP9eK02LyC7tOKogkBj+dXFAKdAcwDQYJKoZIhvcNAQELBQAwHzEdMBsG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUbEUaNG0wl3VR0jU3Tu8zaX5eatkwDQYJKoZIhvcNAQELBQAwHzEdMBsG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibbolethidp.nzm.cz/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibbolethidp.nzm.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibbolethidp.nzm.cz/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibbolethidp.nzm.cz/idp/profile/SAML2/POST/SSO"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Museum of Agriculture</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní zemědělské muzeum</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Národní zemědělské muzeum</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">National Museum of Agriculture</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.nzm.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.nzm.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukáš</md:GivenName>
      <md:SurName>Kovalský</md:SurName>
      <md:EmailAddress>mailto:lukas.kovalsky@nzm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shibo.vkol.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">vkol.cz</shibmd:Scope>
        <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
          <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
        </eduidmd:RepublishRequest>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Research Library in Olomouc</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vědecká knihovna v Olomouci</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for patrons and staff of Research Library in Olomouc</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro čtenáře a zaměstance Vědecké knihovny v Olomouci</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.vkol.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.vkol.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shibo.vkol.cz/logo_40.png</mdui:Logo>
          <mdui:Logo height="90" width="90">https://shibo.vkol.cz/logo_90.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVANklP/WPGioD4uJOxCiHuW1lyYvLMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUFpKDcZj8pgvy6pKI1EiT0+Z7PpAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAKS9iTg+VmzdK2E7t2F4uc9lX0QAMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibo.vkol.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibo.vkol.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibo.vkol.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibo.vkol.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibo.vkol.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibo.vkol.cz:8443/idp/profile/SAML2/SOAP/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibo.vkol.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibo.vkol.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibo.vkol.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibo.vkol.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vkol.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVANklP/WPGioD4uJOxCiHuW1lyYvLMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUFpKDcZj8pgvy6pKI1EiT0+Z7PpAwDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAwwNc2hpYm8udmtvbC5jejAeFw0xNTEwMjcxMzM0MzdaFw0z
NTEwMjcxMjM0MzdaMBgxFjAUBgNVBAMMDXNoaWJvLnZrb2wuY3owggEiMA0GCSqG
SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCDtm2eqb0mrOJR6/N76g8cADzU0Ba0rMwD
LctnNi0s2Aj4pldpFinbF27krFNszV1pcpw9Ts9SmS27j6hhE0njlgG/+TsL2NAJ
5h6fd/Zh+GD2WXKJhs7m5CsX5dIK8xCcY3CrZMtWay+tdTn9ZPm8fV61+dHJ/cA2
c1MPD8ICd1iAjR+coAxkFO6nBWs64F1DC/bCVSKVltzGWcfpOS2QQVHEt9ptQ3ja
iY51LVAdzHtUQM5DBXR7MvjsXbl9EjGahj/CRCkL95oiDr0kKjgqJXFiIgigRwWa
JJ3WHIHD1am9m+V3bjhaSa2s6X6eTHD4XhZXkbByEz245dgR8dGFAgMBAAGjYTBf
MB0GA1UdDgQWBBQU1Iq8GcJcBtzVSgnAblOs5nzafTA+BgNVHREENzA1gg1zaGli
by52a29sLmN6hiRodHRwczovL3NoaWJvLnZrb2wuY3ovaWRwL3NoaWJib2xldGgw
DQYJKoZIhvcNAQELBQADggEBAHCLtsaQyGsVuR+Nqd+sk0qu5CdMMq3t4Dpi8AfL
3WmzMobgZtnlT+M9k1/zQ8E/+RD9WALxFuWhywxI8An7Xvu4UShtjIOlYNlr6Xec
t6JyKWyrPk4Lg6dhrd+Fm6OzTTYOtwDR/KoMx8O3mONzGLFp5qAvYbveEUqYlOZ5
Y+n53tBF9hIjkOYsO/z0GUlu96PncZeZ96vc5Vm9lkW0gs7druFFc/GgUZ+1RB/R
MrZqvpCJ8ufxMWB+d+Y0ogq5CXmYrvbVYiQf+KieHmY7jw7/oBTnYnM8JANC2pwe
FhbZRUsHucC16PyRIVtne6BJfM1mwy6+BQTNUAl9y4KXO9U=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVAKS9iTg+VmzdK2E7t2F4uc9lX0QAMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibo.vkol.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
      <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibo.vkol.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Vědecká knihovna v Olomouci</OrganizationName>
      <OrganizationName xml:lang="en">Research Library in Olomouc</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Vědecká knihovna v Olomouci</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Research Library in Olomouc</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.vkol.cz/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.vkol.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Lauko</SurName>
      <EmailAddress>mailto:petr.lauko@vkol.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shongo-auth.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Reservation System</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Rezervační systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Authentication And Authorization Services For The Shongo Project</mdui:Description>
          <mdui:Description xml:lang="cs">Autentizační a autorizační služby pro projekt Shongo</mdui:Description>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>shongo-auth.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shongo-auth.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDBjCCAe6gAwIBAgIJAPdo24Tq3FVEMA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cesnet.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Marek</GivenName>
      <SurName>Perichta</SurName>
      <EmailAddress>mailto:marek.perichta@cesnet.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Růžička</SurName>
      <EmailAddress>mailto:jan.ruzicka@cesnet.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://skoleni.kr-vysocina.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/Login"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">LMS Moodle</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">LMS Moodle</mdui:DisplayName>
          <mdui:Description xml:lang="en">E-Learning</mdui:Description>
          <mdui:Description xml:lang="cs">E-Learning</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://skoleni.kr-vysocina.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://skoleni.kr-vysocina.cz/</mdui:InformationURL>
          <mdui:Logo height="207" width="65">https://skoleni.kr-vysocina.cz/logo-kraj-vysocina.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-tck-nemeler</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-tck-nemeler</ds:X509SubjectName>
            <ds:X509Certificate>MIIC9DCCAdygAwIBAgIJAIa+uhuR5yeLMA0GCSqGSIb3DQEBBQUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Vysocina Region</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Kraj Vysočina</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Vysocina Region</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Kraj Vysočina</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.kr-vysocina.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.kr-vysocina.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jaroslav</md:GivenName>
      <md:SurName>Krotký</md:SurName>
      <md:EmailAddress>mailto:Krotky.J@kr-vysocina.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://slavoj.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">slavoj.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library Slavoj in Dvur Kralove nad Labem</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Slavoj ve Dvoře Králové nad Labem</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Municipal Library Slavoj in Dvur Kralove nad Labem</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Městské knihovny Slavoj ve Dvoře Králové nad Labem</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.slavoj.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.slavoj.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://dkralove.idp.rbit.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dkralove.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dkralove.idp.rbit.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dkralove.idp.rbit.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dkralove.idp.rbit.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library Slavoj in Dvur Kralove nad Labem</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Slavoj ve Dvoře Králové nad Labem</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library Slavoj in Dvur Kralove nad Labem</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Slavoj ve Dvoře Králové nad Labem</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.slavoj.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.slavoj.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Šiman</md:SurName>
      <md:EmailAddress>mailto:rbit@rbit.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://slavus.ca/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">the Slavic Humanities Index</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Index slovanských humanitních věd</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Slavic Humanities Index is a research database in the field of Central, Eastern, and South-Eastern European Studies.</mdui:Description>
          <mdui:Description xml:lang="cs">Databáze Slavic Humanities Index obsahuje zhruba 200 000 bibliografických záznamů časopisů, knižních recenzí, životopisů, rozhovorů, historických pramenů, konferenčních materiálů a dalších informačních zdrojů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://slavus.ca/aboutdatabase.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://slavus.ca/aboutdatabase.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://slavus.ca/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slavus.ca/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://slavus.ca/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://slavus.ca/Shibboleth.sso/LoginCESNET"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>slavus.ca</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=slavus.ca</ds:X509SubjectName>
            <ds:X509Certificate>MIIC+zCCAeOgAwIBAgIJAOxUh6x9VejwMA0GCSqGSIb3DQEBCwUAMBQxEjAQBgNV
BAMMCXNsYXZ1cy5jYTAeFw0xODA0MTkxOTA4MDVaFw0yODA0MTYxOTA4MDVaMBQx
EjAQBgNVBAMMCXNsYXZ1cy5jYTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
ggEBAJbOvZL/x4DuJkYhy+XegILzTOuNGC4N75q6Ij3Hzep7AUOH/573EsspBECE
qe4cJP3n9EujEF/J6NSVg3JyjjRKu4J4lLGMbzyG4KJWzmME3VY4gOwIP9d7lI9d
M7qPz+J5NgxZfJZJi2NlGplbpE4La5Lf7jGWj33PTmfKPTwFCMIgRzyO2erAMC//
CMA6IKiDNfhJpnrSRHdVP1HcRWWFK92NpZCNwEZkJQOVxqcDY9Rr5qVfiyQ0GLfI
Ao2HdKqwUewFL7fBQawWPFBBe5LGaahdJnTWfxS9whmxIQ+c23SWq2z+AS9Dq2FZ
cUsDx0qq5kJRxOuUuj0IHsJUTb8CAwEAAaNQME4wHQYDVR0OBBYEFH2IUAJ3V9KT
Q7yAj8AngTTfX/cQMB8GA1UdIwQYMBaAFH2IUAJ3V9KTQ7yAj8AngTTfX/cQMAwG
A1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAB5MXU47r6DlhxeaAJvxfrxh
FMf9iOmIXBrDCccx2dfszdreCX/UiyNQ+EKH6HFndhtQ7zu0IBUtElz480jg5U9+
n/4Nc0cOyEoQIB27jel+3YfyrEkACnCqPQbirZws3bPt71U1PWfJwviy9gEBYrAX
3bz/drpvdFbAknSZxIV8matT9yGQeH2GuPtr3kK9WameVVmiGe6Fad6Yk99T1jOi
/hWWgoYH1T0oBWYsmMElinmvmDsSEhqahHFFht0x46X6uHXK2+C67GOH/2D3/FDj
fAEXab7mLq5OFv6VOZhTNKlTQTrHSOV+clpWEkBDTsjxK/ybpvi638E0S0dW8/M=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://slavus.ca/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slavus.ca/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slavus.ca/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slavus.ca/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slavus.ca/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slavus.ca/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slavus.ca/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/ECP" index="10"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Slavonica Discovery s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Slavonica Discovery s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Slavonica Discovery</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Slavonica Discovery</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://slavus.ca</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://slavus.ca</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Anatoliy</md:GivenName>
      <md:SurName>Ilchuk</md:SurName>
      <md:EmailAddress>mailto:contact@slavus.ca</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://soaidp.soaplzen.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
      <Extensions>
        <shibmd:Scope regexp="false">soaplzen.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">IdP - soaplzen.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IdP - soaplzen.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">SOA IDP</mdui:Description>
          <mdui:Description xml:lang="cs">SOA IDP</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.soaplzen.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.soaplzen.cz</mdui:InformationURL>
          <mdui:Logo height="70" width="70">https://elza.archivplzen.cz/static/soalogo_70x70.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUKEK3shKti0bQ3PigqcJkpVMZrkowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUfBznuyOc6reQTTQ++jSa91iqTcIwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwSc29haWRwLnNvYXBsemVuLmN6MB4XDTIwMDkwODA4MzU1
N1oXDTQwMDkwODA4MzU1N1owHTEbMBkGA1UEAwwSc29haWRwLnNvYXBsemVuLmN6
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAjVZWfsOZKwLnei2VuK7I
SiFcIoI5Jks6zbmgngRbs26pgkixfFKeUMh3uCFWE/GvcnMpCk6dhPGgr74Hp3NU
NqD8tEDR2nItEDW9KkRTNLBdmfTOgIH2d4rEx7pED6Oz7T6wudAPgPktu23Ac8In
aSDJS18i0pYoks6E8afZkW1yJozsUlloWyhm1h9WCp3ivmaolL208dh1tdxXTq+R
aysmPVcg2EIMLpouarQkqa+tUWv1M/TvpQ1punuKpQhvLcmHfEqtNGGWOE0ndbq6
fA1HGOTX2ADQpfy7LHhy7xby8XOyN5I50ROmfXdUhb0iyIa4Zved3SrMUw/deRxh
PluBo0eqhDP4+TDkd71M2a7SZX+gFdW500toXYeKY48o0cGj0HZOAxZKKCW+Gw8V
TD3NQ9fIrP5C+y5hpu73CZL2+0fbN0jgdtwiOHrdkgE2umM46tvn9rEUkuE+o336
4KJgww6ENvZvBeiQUoJVzNQ8XVxyBIm6IjLAoqwgaAQPAgMBAAGjazBpMB0GA1Ud
DgQWBBQsETRa2HCEfvRyTrYQLKUacTrTtzBIBgNVHREEQTA/ghJzb2FpZHAuc29h
cGx6ZW4uY3qGKWh0dHBzOi8vc29haWRwLnNvYXBsemVuLmN6L2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBgQAWDJ+YRNWz8OpzvlPy3SUW/yZF76M3coWm
rLDGtY/0a0LHdstVCNFKD9FN2FzDJbde1fBdSzQU9Sa8Sh44DU0JsD0D0ByzknSq
EfyMrUNxIvMWYUEDv9TF7h6yGUyXXeCWbe4CjnidlTOcCqdZ5QBIX7lTkgz4nSyh
+/F0nRX5JWDOizxPV1VJ2e7c33PgcjdzOy4wU1Jinh+sfK3SVOOrdn+qbDdfYlyW
c9Wa0FI21lB/1JPNfSiphcQsJ9isxINUOc5Iu4+Zi3hOtBNBhuO+I42UiXUk0Nx9
mjsPPlvmE2zxmCpkQK09BdwqyyyxMY+G8E5bpepDYEYqTooZlUAxLQlnD9gLo/h8
pQJ23KIVupGWYP4p5BEu8f7RfOkL9+Hmqh/9R1SZkD6+gNrtHuCHUSc//BZUHBRj
7l23xPcGH6DNKNQiJCXBF6RNI8AFNe5yAKok91GFwG6+cQNzPug+BEB0EeBTWp+I
htlHHEKII4EelzkgEJLkwE4tf4UtTYs=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUeqUlXwS25w0oUV1BiNoINvEfR/0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://soaidp.soaplzen.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://soaidp.soaplzen.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://soaidp.soaplzen.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://soaidp.soaplzen.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://soaidp.soaplzen.cz/idp/profile/Shibboleth/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://soaidp.soaplzen.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">soaplzen.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUKEK3shKti0bQ3PigqcJkpVMZrkowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUfBznuyOc6reQTTQ++jSa91iqTcIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUeqUlXwS25w0oUV1BiNoINvEfR/0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://soaidp.soaplzen.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
    </AttributeAuthorityDescriptor>
    <Organization>
      <OrganizationName xml:lang="en">SOA</OrganizationName>
      <OrganizationName xml:lang="cs">SOA</OrganizationName>
      <OrganizationDisplayName xml:lang="en">SOA</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">SOA</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.soaplzen.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.soaplzen.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Římovský</SurName>
      <EmailAddress>mailto:rimovsky@soaplzen.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://softresource.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Softresource, spol. s r.o.</mdui:Description>
          <mdui:Description xml:lang="cs">Softresource, spol. s r.o.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://softresource.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://softresource.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://softresource.cz/shibboleth</ds:KeyName>
          <ds:KeyName>softresource.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=softresource.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUCUNPNIk8Qx6GKBwIKUNXrdb0P2kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softresource.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softresource.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://softresource.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softresource.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softresource.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softresource.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://softresource.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softresource.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://softresource.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://softweco.cz/shibboleth-sp">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://softweco.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>*.softweco.cz</ds:KeyName>
          <ds:KeyName>*.softwecogroup.cz</ds:KeyName>
          <ds:KeyName>*.suweco.cz</ds:KeyName>
          <ds:KeyName>softweco.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=softweco.cz,OU=Softweco Group\, a.s.,O=Softweco,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEvTCCA6WgAwIBAgIJAPbmblj/K1tHMA0GCSqGSIb3DQEBBQUAMGYxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>*.softweco.cz</ds:KeyName>
          <ds:KeyName>*.softwecogroup.cz</ds:KeyName>
          <ds:KeyName>*.suweco.cz</ds:KeyName>
          <ds:KeyName>softweco.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=softweco.cz,OU=Softweco Group\, a.s.,O=Softweco,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEvTCCA6WgAwIBAgIJAPbmblj/K1tHMA0GCSqGSIb3DQEBBQUAMGYxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softweco.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://softweco.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softweco.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softweco.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softweco.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://softweco.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softweco.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softweco.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softweco.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://softweco.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softweco.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://softweco.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://softweco.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://softweco.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softweco Group, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softweco Group, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Softweco Group, a.s.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Softweco Group, a.s.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://softweco.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://softweco.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vacek</md:SurName>
      <md:EmailAddress>admin@softweco.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp-cro.slu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Service provider for SLU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Service provider pro SLU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service provider for SLU</mdui:Description>
          <mdui:Description xml:lang="cs">Service provider pro SLU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://uit.opf.slu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://uit.opf.slu.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://uit.opf.slu.cz/_media/slu-znacka-hlavni.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp-cro.slu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp-cro.slu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>sp-cro.slu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sp-cro.slu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID7jCCAlagAwIBAgIJAOc2pwZe1ca9MA0GCSqGSIb3DQEBCwUAMBgxFjAUBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-cro.slu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Silesian University in Opava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Slezská univerzita v Opavě</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Silesian University in Opava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Slezská univerzita v Opavě</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.slu.cz/slu/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.slu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ježíšek</md:SurName>
      <md:EmailAddress>mailto:jezisek@opf.slu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sp.knihovny.cz/</ds:KeyName>
          <ds:KeyName>www.knihovny.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.knihovny.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDTCCAfWgAwIBAgIJAN8/Gxg8FlrBMA0GCSqGSIb3DQEBBQUAMBoxGDAWBgNV BAMTD3d3dy5rbmlob3ZueS5jejAeFw0xNjA4MjMxODAwMjhaFw0yNjA4MjExODAw MjhaMBoxGDAWBgNVBAMTD3d3dy5rbmlob3ZueS5jejCCASIwDQYJKoZIhvcNAQEB BQADggEPADCCAQoCggEBALKSFiYUgdzIH6HqKllebCVsrRHB0yIc/NFaIkFpp/1b AsOfEluFenLxe8jFauzeJjWSuQrwMsl4NGVdDky98Oz2sS5p5kVqu5L6zrlsDMQL mhezqM/5nFEZ+nSJqSfn9mClM5PlRH4mUGnvEf4AqeROGZLY9dNKcZCXh/6vHhVc VqagPkNHNOZrg47uvMoagxT8Qy6vesHT7aweEJzN1I35bM+9LQw/LOZk490w0gOD 5jpO7O0fd/Bg/2nxWVGNtndJEAktwRnitczrBi10/Qt+3l6OAAvN2hDCcyEaJLE7 /qvfGRDw9lAXL9soTaBSIRsrhDepb5pwjC16vASqDqkCAwEAAaNWMFQwMwYDVR0R BCwwKoIPd3d3LmtuaWhvdm55LmN6hhdodHRwczovL3NwLmtuaWhvdm55LmN6LzAd BgNVHQ4EFgQU6LbP8RmsTDjvxDZ0yN2LPct9bpowDQYJKoZIhvcNAQEFBQADggEB AFJik7o7s/1voo+ZPn2guTUgVNzfM3J9CaD2OVn6AK+r58UnOB9zrRqXjqKFlIhv 8RkDuKWvIvz9VUhSHa1QeA4sdNzeVV9Lu/3F5EXHB9FchHN3Cnwdofd2G3vX+QYl 3lfvfb31mNimfoxo8bzElvHvOhfkno+biJ0js4ohMblCJhbE1OQQaokfnec5Q9j8 m1NTw3yr0Zii+yzU+XTe/vRtcnkwjYWiFoQhKRHDI6NT2PkGbwCsXpWawyoRHjp8 xGTmsbkvKGcCGYmqctzrD7muVuEldgiDvwXLeZvjUCRPXYHb4Z0c//6ot1R9Q7zj bKUOdTK0GTlj+HkFTGcRZHU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp.sdnnt-test.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Out-Of-Commerce Works</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Seznam děl nedostupných na trhu</mdui:DisplayName>
          <mdui:Description xml:lang="en">Out-Of-Commerce Works</mdui:Description>
          <mdui:Description xml:lang="cs">Seznam děl nedostupných na trhu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://sp.sdnnt-test.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://sp.sdnnt-test.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://sdnnt-test.nkp.cz/sdnnt/logo-sdnnt-blue.33993314dd897deac243.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sp.sdnnt-test.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>sdnnt-test.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sdnnt-test.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJALlIqRGemA6bMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV BAMTFHNwLnNkbm50LXRlc3QubmtwLmN6MB4XDTIyMDIxNTA5MzM0OVoXDTI0MDIx NTA5MzM0OVowHzEdMBsGA1UEAxMUc3Auc2RubnQtdGVzdC5ua3AuY3owggGiMA0G CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDQ18BkRDb6IDlEXP7KPzB0vBB0ld4d cvHRjzelHRUfUWi0efDfZ6jXzv3k6DZaweOPwOGk55zX+C0dkvsFkozby9UHquwZ p/AMnr8FH6kXbmRMBjH7ZgjIBybaPwEs6zn/ykL5ZJKfwJy/Tn5XvxcuSUQcAqHO pcmfn68U8eIbkSn93U95WkjTYwY+Fh4fPRe14wtPaBHS/bubjSBRopo7DkzdVC6P EVpOI3B/1tX9DMIEk3PcQz7y16UoRqNv3lqwjJF9DD9l1hoCExMxuksePYwR+0aM 0IUasaIn2Ww7K+IXwQLmLHq+Zl69hyWUeGFw4HaFKK2ev0c7pgH+KrNQ5V3uJaxM AW0dTNFHynGuEn5zXoB159Q8EkgmYTPX/x740Jd/7v63zT/Rz7hPLQ3SF775XZko XVMYRu+h13bEoUE+yDjrvfR9SzvRlI5cLPo4qapQ9keZ5NVx/dDIZPun/I2mr9F5 Klc84b0qj73R0KNCq+OuWBkVeGhqvgcKjt8CAwEAAaNrMGkwSAYDVR0RBEEwP4IU c3Auc2RubnQtdGVzdC5ua3AuY3qGJ2h0dHBzOi8vc3Auc2RubnQtdGVzdC5ua3Au Y3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUkq0M0VtM+QbmVZYLHFiM1leLxSMwDQYJ KoZIhvcNAQELBQADggGBABuBKCxvP4hp9Gu2hZQnzmq4HDzyIxMmwCLaFjM+r7Tb u8ACaAImdPoMzoF9pAx/FTSje8pCStPBvq8aAQZEZussHJoRkzN38d7FpqKtx13S 6+udx35w6hHNVXAFvZBQRT0AE1J7f90uXsE53IpJr6bE5ZoBZDGM4Ajn9QVUGxsF oBhQgESUATkLyf1NzWFZgg0EEvm/mfS1DjWZd3fWoF5Inbo4Vj34TTEcsQ1uGe+0 z4/BWaWZLEv6mCl58wpmtosmvtzZz0n0MQpIEK5prS1FaY7e5mu7IFwitBG2pnTP V/HbcBusgC7X4uRjc0UH6J0nebEiqlFIqpvnft2dflCtF6VZUFmf4cOQ3LkZOFNH JGftcR72PrYyJleb9U69IbTopOcy+fynERvglqStGneg686ZqtnfDHvahnxSSsiP DstCukqlrJ3oSXINOVFpz/5eti0w+MwbvaIt9LDeRs6Ll1LpapE/mz6pdbTKYxTe cnb9i0ufkJke4z9jhz4PNg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Out-Of-Commerce Works</md:ServiceName>
        <md:ServiceName xml:lang="cs">Seznam děl nedostupných na trhu</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Out-Of-Commerce Works</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Seznam děl nedostupných na trhu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdenko</md:GivenName>
      <md:SurName>Vozár</md:SurName>
      <md:EmailAddress>mailto:Zdenko.Vozar@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp.veverka.ch/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp.veverka.ch/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp.veverka.ch/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sp.veverka.ch/shibboleth</ds:KeyName>
          <ds:KeyName>sp.veverka.ch</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sp.veverka.ch</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEDCCAfigAwIBAgIJAMSxspHvQo3hMA0GCSqGSIb3DQEBBQUAMBgxFjAUBgNV
BAMTDXNwLnZldmVya2EuY2gwHhcNMTQwNDA0MTMxODA0WhcNMzQwMzMwMTMxODA0
WjAYMRYwFAYDVQQDEw1zcC52ZXZlcmthLmNoMIIBIjANBgkqhkiG9w0BAQEFAAOC
AQ8AMIIBCgKCAQEA7JImgPYxzOk+5n4+2JG/wam/jPzH9RKQM+iN026tAnOnKV9h
uF5/AofkQkFyUnviAgEl1RL2sjsro3EDcTgyLxHQZ+vnQdsCQIVmRAtrx0NnQmZ+
W8iN/pl5cnQm0E3ov03V2ab0wV5c6shC+ugKGWbQpyDl44XKJi65EUKAK4zZQHq4
N3wQR2hekxkO2p5cBGcXhdrlsae+s3wvAf6pUArViDURQtUIN6YavUvgOKOQoaqR
FTJreIChquZS0IDiTwADn4xWZZxsOfD83CmvTlp8fKbP+pjargiunRQT67t/Vooq
eUgZZfxUGq8By9KVWawl9rRYwtO7Mo8hMcE1xwIDAQABo10wWzA6BgNVHREEMzAx
gg1zcC52ZXZlcmthLmNohiBodHRwczovL3NwLnZldmVya2EuY2gvc2hpYmJvbGV0
aDAdBgNVHQ4EFgQURJzjSydvxK4oTiio1Bc+Vq0oa+cwDQYJKoZIhvcNAQEFBQAD
ggEBAET39Z5mZze1BYX16eDfK0LpzKUDrISYaFtIzv1IQQfYc4bN4yFVgnNrZJf1
KKfpqsG5k4k5rEU9Udl9fEiW4596P6tHo0xZVJCjGWd1EG+U1uls1NmPz+WbSn7o
rc3YyQ6C3i4oMm5HepQHkl5lSewhxdBlJwqWtyTly6Rk1qgl0cR5Zf7HvizfPRPl
38lzpKX4iIGbMZWfeZjJVM2Xe/s5EYR9zPVdpKEuUeAVq3mQ7NErQAldznj+eWyk
2YVh9UQK4MwSBbQ2wdWiVRMh97uq57cqH8hL9G6VlIB+2OtTNKWziC+lyEygatB6
cTBvWor6BqduERJmzZk2GUWevK0=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp.veverka.ch/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp.veverka.ch/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp.veverka.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Veverka.ch</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Veverka.ch</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Veverka.ch</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://veverka.ch/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://veverka.ch/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>František</md:GivenName>
      <md:SurName>Kučera</md:SurName>
      <md:EmailAddress>sp-eduid.cz@frantovo.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://spcr.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://spcr.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://spcr.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>spcr</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=spcr</ds:X509SubjectName>
            <ds:X509Certificate>MIID3jCCAkagAwIBAgIUAZb7TX3Gjw0GjP+T59U9jlQs1FMwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAxMEc3BjcjAeFw0yNDA3MTExMTU5MzJaFw00NDA3MDYxMTU5
MzJaMA8xDTALBgNVBAMTBHNwY3IwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGK
AoIBgQDc7V0X6bEU99Ab75HI04mCQEoDBMdB1GuF2HLHXVQGzp9MgWAojYoZzkkd
qE0rD59FVm/4OG6lyWhvIn+puGSOtijYA16DvN6BY1AgCqV6YdE5ncfGgMrJflcC
A/mWR+1IJQka8Lu5fOrjNDE+v7iUylswhdSdIE9N5FgF738IomR9qYHJaXK21upq
GP4JifKRs+2cyxQWk3P1NtQoQSi9wBqHB9wBPcJYzXMQ0dzqSdWF/WKkHKW+XcMx
GApwmmw/+9CiUkbCV58ufCJ04DKQnp1BRkwc5a0U/0mpn5NqSJm3I1dxlErCdpER
0IwbBUgAQuiEwP65RhTSnMd9QuxD6LxzN5JNTMaQMEpxfKwGRXxFkpENAiWEJFU0
oTKAfgHwcp/aq5zbfjGtGDMJx9spzv9wcwoHOh6Y4+4Rb225IhFPTby+7oCRUF5C
tS90mMcZT0O9HKzkR6iVxaH1ZDHg0Aczarl+OYASJh0kLGCpAQJ2zWt87LxTQm7b
Rf8W8UkCAwEAAaMyMDAwDwYDVR0RBAgwBoIEc3BjcjAdBgNVHQ4EFgQUdBLBgmyZ
grQKQhtRDcX5ZmiPrBswDQYJKoZIhvcNAQELBQADggGBAIEn+bWHfUhvuQq/kpel
xBek8dZJWknXcNtGp0iZr3zyB//KDy317Rx86EUS2KGi9g7w3lW0cIwQK2utQwV7
3QfuMU/e4qsKAbNP8yQn6+tqat5+dt5vBe7s0RNOnH1775UUzmg4ABT39RgAaaAe
bqTG7ZCP4Kh4n+OQsQNIP2ri6penJsxIF7PUuGmw1BWMUGZFBcTNUdt5p9hPoxbU
MIH5aFhwNSIzjF12RYo5xIOrRk2N+E4FtsDS6ji1aTh4M4cv0NAWgloCmgZzFfH1
oODoAkFbpuhjWUEJEz7baXq2Xbo7ercS4GK+S9ib0x9QwqJ+JiU8dn46IBPqzbHC
oS6bHzbVgR8Ck9uOMTcEX+viKAuK/HVnGHCCWYaDDNLArALmo6kQHxVrhOSBMuOu
nJmoMHnhqj5cyTyfYJGxcsAu3orJJAiDU0aaVFwdteBpdSy772qpl3UGdUWXY84e
nJy89v1Ix6Oqf4ck7eHb1iEjj2ICXFQE4wEWzwgXXUturw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://spcr.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" cacheDuration="P7DT0H0M0S" entityID="https://sso.finesoftware.eu/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>https://refeds.org/category/code-of-conduct/v2</AttributeValue>
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>https://refeds.org/sirtfi2</AttributeValue>
          <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Fine Software - student license</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fine Software - studentská licence</mdui:DisplayName>
          <mdui:Description xml:lang="en">Software available for download</mdui:Description>
          <mdui:Description xml:lang="cs">Seznam software ke stažení</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.finesoftware.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.fine.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://sso.finesoftware.eu/privacy-policy/Fine_Software_Privacy_Policy.pdf</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://sso.finesoftware.eu/privacy-policy/Fine_Software_Privacy_Policy.pdf</mdui:PrivacyStatementURL>
          <mdui:Logo height="151" width="200" xml:lang="en">https://www.finesoftware.eu/public/assets/frontend/img/Fine-software-logo.png</mdui:Logo>
          <mdui:Logo height="151" width="200" xml:lang="cs">https://www.finesoftware.eu/public/assets/frontend/img/Fine-software-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sso.finesoftware.eu/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.finesoftware.eu/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sso.finesoftware.eu/shibboleth</ds:KeyName>
          <ds:KeyName>sso.finesoftware.eu</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sso.finesoftware.eu</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUYAV9diX7d2owEuC2HCym9EsDU2IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.finesoftware.eu/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Fine Software - student license</md:ServiceName>
        <md:ServiceName xml:lang="cs">Fine Software - studentská licence</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Software available for download.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Seznam software ke stažení.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="samlPairwiseID" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="samlSubjectID" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fine spol. s r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fine spol. s r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.finesoftware.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fine.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>Fine Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:ssosupport@fine.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Fine Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:ssosupport@fine.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Fine Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:ssosupport@fine.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Fine-Security-Team</md:GivenName>
      <md:EmailAddress>mailto:sec@fine.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sso.pythia.bigdigdata.com/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Pythia</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Pythia</mdui:DisplayName>
          <mdui:Description xml:lang="en">Pythia - software for library acquisition</mdui:Description>
          <mdui:Description xml:lang="cs">Pythia - aplikace pro knihovní akvizice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.bigdigdata.com/pythia/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.bigdigdata.com/pythia/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.bigdigdata.com/pythia/dist/img/logo-128.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sso.pythia.bigdigdata.com/shibboleth</ds:KeyName>
          <ds:KeyName>sso.pythia.bigdigdata.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sso.pythia.bigdigdata.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIESzCCArOgAwIBAgIUIGBau+tCC3Z402wbbF7+X7axPW8wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Pythia</md:ServiceName>
        <md:ServiceName xml:lang="cs">Pythia</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.bigdigdata.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.bigdigdata.com/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Bedřich</md:GivenName>
      <md:SurName>Košata</md:SurName>
      <md:EmailAddress>mailto:beda@bigdigdata.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sso.testfine.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Software for academic users</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Software pro akademické uživatele</mdui:DisplayName>
          <mdui:Description xml:lang="en">Software available for download.</mdui:Description>
          <mdui:Description xml:lang="cs">Seznam software ke stažení.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.finesoftware.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.fine.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.finesoftware.eu/public/assets/frontend/img/Fine-2020-black-color.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sso.testfine.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.testfine.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sso.testfine.cz/shibboleth</ds:KeyName>
          <ds:KeyName>sso.testfine.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sso.testfine.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUBsOyvNCN9Ijq6avNxLqXts6Sf5gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.testfine.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Software for academic users</md:ServiceName>
        <md:ServiceName xml:lang="cs">Software pro akademické uživatele</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Software available for download.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Seznam software ke stažení.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fine</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fine</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.finesoftware.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fine.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@fine.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://stage.mzk.abbreva.site/simplesaml">
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Stage Abbreva - mzk.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Stage Abbreva - mzk.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Stage verze pro registrace a přihlášení k účtu Moravské zemské knihovny.</mdui:Description>
          <mdui:Description xml:lang="en">Stage version for account login to Moravian Library.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.abbreva.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.abbreva.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUJqaj/J5nKZ7eaUfM3Dh1Nb8gX7cwDQYJKoZIhvcNAQELBQAwRTELMAkGA1UEBhMCQ1oxEzARBgNVBAgMClNvbWUtU3RhdGUxITAfBgNVBAoMGEludGVybmV0IFdpZGdpdHMgUHR5IEx0ZDAeFw0yNTAxMjkxMzI4MDNaFw00NTAxMjkxMzI4MDNaMEUxCzAJBgNVBAYTAkNaMRMwEQYDVQQIDApTb21lLVN0YXRlMSEwHwYDVQQKDBhJbnRlcm5ldCBXaWRnaXRzIFB0eSBMdGQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDSTJVD7iVXPopMOYGtUBPo2fmM+dNEDbQ8aNzlUwUaRCe/iKMrQjGLtd8vInvNBzyqFYJ3wi6bAip28avoqxUW+tvhMPOWpaXrHdfPiD4ThN8vrjhFsRoOcA2efq4izzbOQ0qIWYhCXzrFipiHRG5Ge0vPPvoOm32W8quAbDgLbwAx0tEEY2/QGmG7x7LvPNPhf/1Xn9TekbDxyiOuu/WucgHsGhrEqApaaZzNnzpuKVjxxx9ecUFbWNQYgZsMUe/QAqZ9FDEzNP6su+rsdxS9F614S3U/aXsyUgE/w+nXu7tEDqDJ0Z2QJQBEmp7ZgTyo7lyM4agjuTTzNbtxhr5hAgMBAAGjUzBRMB0GA1UdDgQWBBR9tyeiL7YrfOTwWVkVjvOTO1ePfzAfBgNVHSMEGDAWgBR9tyeiL7YrfOTwWVkVjvOTO1ePfzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB6EbUn8ZKyXdPwnYr03qNglcw2gS6QMP13iKkv/yvPr5fbiO0WPLC2LSbovMhyAVvQm4VFRtvHp22Fi7Oyq04tn2ezs/iq3WznvVkCObL9aUjUHqOd4f3qXOQEpvzzcyDsappNSUXjtcW1mnJrnXawPfoA8YStnOHMAjLfjjiH+JHWPndIxaa8oQO6Kn7rOmuO1MBNT8MrkcxZCtAX9SoZgRMwx0iZ/EInm9Mi2tQHBI6afRa6d7ieupgFLp03az4G9y7fFiG9iUtlfebCJ+NyACNg3vWFqNMOaPUz+5wMa9xuGH6IUHX7klJVosDy4HsGa5SB5mBxkBWSlP0+F3LP</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stage.mzk.abbreva.site/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage.mzk.abbreva.site/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stage.mzk.abbreva.site/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Stage Abbreva - mzk.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Stage Abbreva - mzk.cz</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="schacDateOfBirth" Name="urn:oid:1.3.6.1.4.1.25178.1.2.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Abbreva s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Abbreva s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">ABBREVA</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">ABBREVA</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.abbreva.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.abbreva.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>7Labs</md:Company>
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Janda</md:SurName>
      <md:EmailAddress>mailto:petrjanda@7labs.cz</md:EmailAddress>
      <md:TelephoneNumber>+420776737996</md:TelephoneNumber>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://stats.czechelib.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CzechElib stats</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Statistiky projektu CzechElib</mdui:DisplayName>
          <mdui:Description xml:lang="en">Usage statistics system of project CzechElib.</mdui:Description>
          <mdui:Description xml:lang="cs">IS pro statistiky projektu CzechElib.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.czechelib.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.czechelib.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://stats.czechelib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stats.czechelib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>cel-stats.ntkcz.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cel-stats.ntkcz.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUPWBxBN2reNwYPwF+SK0cBQahzBcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>cel-stats.ntkcz.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cel-stats.ntkcz.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUPWBxBN2reNwYPwF+SK0cBQahzBcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.czechelib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CzechElib stats</md:ServiceName>
        <md:ServiceName xml:lang="cs">Statistiky projektu CzechElib</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Operator of ERMS system of CzechElib project.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Provozovatel ERMS projektu CzechElib.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://stats.test.czechelib.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CzechElib stats (test)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Statistiky projektu CzechElib (test)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Usage statistics system of project CzechElib (test).</mdui:Description>
          <mdui:Description xml:lang="cs">IS pro statistiky projektu CzechElib (test).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.czechelib.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.czechelib.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://stats.test.czechelib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stats.test.czechelib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>stats.test.czechelib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stats.test.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd3qaJoYNVP0i73a4w77yvI3xfxMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>stats.test.czechelib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stats.test.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd3qaJoYNVP0i73a4w77yvI3xfxMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.test.czechelib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CzechElib stats (test)</md:ServiceName>
        <md:ServiceName xml:lang="cs">Statistiky projektu CzechElib (test)</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Operator of ERMS system of CzechElib project.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Provozovatel ERMS projektu CzechElib.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://stigmator.ceitec.muni.cz/authzone">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CIISB administration</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Administrativa CIISB projektu</mdui:DisplayName>
          <mdui:Description xml:lang="en">Access to the project proposal administration</mdui:Description>
          <mdui:Description xml:lang="cs">Pristup k administraci CIISB projektu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ciisb.org</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ciisb.org</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://stigmator.ceitec.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>stigmator.ceitec.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stigmator.ceitec.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPDCCAqSgAwIBAgIJAN0JZrC0KN+4MA0GCSqGSIb3DQEBCwUAMCMxITAfBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CIISB administration</md:ServiceName>
        <md:ServiceName xml:lang="cs">Administrativa CIISB projektu</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Access to the project proposal administration</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Pristup k administraci CIISB projektu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Czech infrastructure for integrative structural biology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Czech infrastructure for integrative structural biology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CIISB</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CIISB</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ciisb.org</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ciisb.org</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Novacek</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@ceitec.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sts.windows.net/6bccc829-c614-4366-960b-d94ff368e798/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Revmatologický ústav</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Institute of Rheumatology</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Revmatologického ústavu - Azure AD</mdui:Description>
          <mdui:Description xml:lang="en">Identity Provider for staff of Institute of Rheumatology - Azure AD</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.revma.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.revma.cz/</mdui:InformationURL>
          <mdui:Logo height="187" width="400">https://www.revma.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">revma.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/6bccc829-c614-4366-960b-d94ff368e798/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/6bccc829-c614-4366-960b-d94ff368e798/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/6bccc829-c614-4366-960b-d94ff368e798/saml2"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Revmatologický ústav</OrganizationName>
      <OrganizationName xml:lang="en">Institute of Rheumatology</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Revmatologický ústav</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Institute of Rheumatology</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.revma.cz/</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.revma.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Robert</GivenName>
      <SurName>Fuhrman</SurName>
      <EmailAddress>mailto:informatika@revma.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sts.windows.net/886f83dc-091b-4294-b67e-59bd27a71eb6/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Vyšší odborná škola publicistiky</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">College of Media and Journalism</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro studenty a zaměstnance Vyšší odborné školy publicitisky.</mdui:Description>
          <mdui:Description xml:lang="en">Identity provider (IdP) for students and employees of the College of Media and Journalism.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.vosp.cz/o-skole/kontakty</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.vosp.cz/english</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://in.vosp.cz/images/vosp-logo-eduid.png</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">vosp.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/886f83dc-091b-4294-b67e-59bd27a71eb6/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/886f83dc-091b-4294-b67e-59bd27a71eb6/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/886f83dc-091b-4294-b67e-59bd27a71eb6/saml2"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Vyšší odborná škola publicistiky</OrganizationName>
      <OrganizationName xml:lang="en">College of Media and Journalism</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">VOŠP</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">VOŠP</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.vosp.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.vosp.cz/english</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Blažek</SurName>
      <EmailAddress>mailto:j.blazek@vosp.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sts.windows.net/c38e8f6c-0577-4e93-89d6-5aebb07d4538/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/hospital</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Nemocnice Jihlava, p.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Hospital Jihlava</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance Nemocnice Jihlava, p.o. - Azure AD</mdui:Description>
          <mdui:Description xml:lang="en">Identity Provider for staff of Hospital Jihlava - Azure AD</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.nemji.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.nemji.cz/en/</mdui:InformationURL>
          <mdui:Logo height="211" width="206">https://www.nemji.cz/html/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">nemji.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/c38e8f6c-0577-4e93-89d6-5aebb07d4538/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/c38e8f6c-0577-4e93-89d6-5aebb07d4538/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/c38e8f6c-0577-4e93-89d6-5aebb07d4538/saml2"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Nemocnice Jihlava, p.o.</OrganizationName>
      <OrganizationName xml:lang="en">Hospital Jihlava</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Nemocnice Jihlava, p.o.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Hospital Jihlava</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.nemji.cz/</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.nemji.cz/en/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>David</GivenName>
      <SurName>Zažímal</SurName>
      <EmailAddress>mailto:security@nemji.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sts.windows.net/f9f8419e-c286-461b-9e6d-0ba6b1d52345/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">NÚKIB ověření</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">NUKIB authentication</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Pro ověření účtů s doménou nukib.cz</mdui:Description>
          <mdui:Description xml:lang="en">To authenticate accounts with domain nukib.cz</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.nukib.cz/cs/kontakty/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.nukib.cz/en/contacts/</mdui:InformationURL>
          <mdui:Logo height="99" width="628">https://www.nukib.cz/images/logo-nukib.png</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">nukib.cz</shibmd:Scope>
        <shibmd:Scope regexp="false">nukibonline.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/f9f8419e-c286-461b-9e6d-0ba6b1d52345/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/f9f8419e-c286-461b-9e6d-0ba6b1d52345/saml2"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/f9f8419e-c286-461b-9e6d-0ba6b1d52345/saml2"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Národní úřad pro kybernetickou a informační bezpečnost</OrganizationName>
      <OrganizationName xml:lang="en">National Cyber and Information Security Agency</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">NÚKIB</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">NUKIB</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.nukib.cz/cs/</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.nukib.cz/en/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>OIT</GivenName>
      <SurName>NÚKIB</SurName>
      <EmailAddress>mailto:all.oit.osi@nukib.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://su-dev.fit.vutbr.cz/kis">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://su-dev.fit.vutbr.cz/kis/api/auth/eduid/discovery" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">KIS (development version)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">KIS (testovací verze)</mdui:DisplayName>
          <mdui:Description xml:lang="en">FIT BUT Students' Union membership registry (development version)</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně (testovací verze)</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://su.fit.vutbr.cz/kis/cs.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://su.fit.vutbr.cz/kis/en.html</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHTCCAwWgAwIBAgIUB1MuS4pWBRpwuQGPYAV1JTPMVvswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://su-dev.fit.vutbr.cz/kis/api/auth/eduid/assertion" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">KIS (development version)</md:ServiceName>
        <md:ServiceName xml:lang="cs">KIS (testovací verze)</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FIT BUT Students' Union membership registry (development version)</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně (testovací verze)</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Studentská unie FIT VUT v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">FIT BUT Students' Union</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">SU FIT VUT</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">SU FIT BUT</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://su.fit.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://su.fit.vutbr.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Budiský</md:SurName>
      <md:EmailAddress>mailto:xbudis02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Kotoun</md:SurName>
      <md:EmailAddress>mailto:xkotou04@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Ondryáš</md:SurName>
      <md:EmailAddress>mailto:xondry02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://su-int.fit.vutbr.cz/kis">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://su-int.fit.vutbr.cz/kis/api/auth/eduid/discovery" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">KIS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">KIS</mdui:DisplayName>
          <mdui:Description xml:lang="en">FIT BUT Students' Union membership registry</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://su.fit.vutbr.cz/kis/cs.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://su.fit.vutbr.cz/kis/en.html</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEETCCAvmgAwIBAgIUC0MoRO99PZ32OXlPlCEIWkD/aFswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://su-int.fit.vutbr.cz/kis/api/auth/eduid/assertion" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">KIS</md:ServiceName>
        <md:ServiceName xml:lang="cs">KIS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FIT BUT Students' Union membership registry</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Studentská unie FIT VUT v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">FIT BUT Students' Union</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">SU FIT VUT</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">SU FIT BUT</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://su.fit.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://su.fit.vutbr.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Budiský</md:SurName>
      <md:EmailAddress>mailto:xbudis02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Kotoun</md:SurName>
      <md:EmailAddress>mailto:xkotou04@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Ondryáš</md:SurName>
      <md:EmailAddress>mailto:xondry02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sulu.cesnet.cz:43081/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">jenkins for haas.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">jenkins for haas.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Honeypot as a Service build platform</mdui:Description>
          <mdui:Description xml:lang="cs">Honeypot as a Service build platform</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="267" width="411">https://haas.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>haas-jenkins.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://sulu.cesnet.cz:43081/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=haas-jenkins.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMjCCApqgAwIBAgIJAPfrX2/I5RXzMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radoslav</md:GivenName>
      <md:SurName>Bodo</md:SurName>
      <md:EmailAddress>mailto:haas-dev@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sulu.cesnet.cz:44081/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">warden visualization for haas.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">warden visualization for haas.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Honeypot as a Service data visualization</mdui:Description>
          <mdui:Description xml:lang="cs">Honeypot as a Service data visualization</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="267" width="411">https://haas.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>haas-viz.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://sulu.cesnet.cz:43081/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=haas-viz.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJjCCAo6gAwIBAgIJAPMfwPEWlgr+MA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radoslav</md:GivenName>
      <md:SurName>Bodo</md:SurName>
      <md:EmailAddress>mailto:haas-dev@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://svkkl.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">svkkl.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Central Bohemian Library in Kladno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Středočeská knihovna v Kladně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Central Research Library in Kladno</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Středočeské knihovny v Kladně</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.svkkl.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.svkkl.cz/cs</mdui:InformationURL>
          <mdui:Logo height="40" width="95">https://svkkl.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://svkkl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://svkkl.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://svkkl.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://svkkl.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Central Bohemian Library in Kladno</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Středočeská knihovna v Kladně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Central Bohemian Library in Kladno</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Středočeská knihovna v Kladně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.svkkl.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.svkkl.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://svkul.cz/idp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest>
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">svkul.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Ústí Regional Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Ústeckého kraje</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and readers of the Ústí Regional Library</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a čtenáře Knihovny Ústeckého kraje</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovnauk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovnauk.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="221">https://svkul.knihovny.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIID6zCCAtOgAwIBAgIJAKpmDApZEEPwMA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEXN2a3VsLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejAeFw0xNjA3MDYxMjEyMThaFw0yNjA3MDcxMjEyMThaMIGLMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcMBEJybm8xGTAXBgNVBAoMEE1vcmF2aWFuIExpYnJhcnkxGjAYBgNVBAMMEXN2a3VsLmtuaWhvdm55LmN6MR0wGwYJKoZIhvcNAQkBFg5jcGstaWRwQG16ay5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMtTidfVLguIUogeplKr206MLSLN/ZNMli2Pkbe5YwCXTnvVAjJ5PJzlyDSS3AsU1QaipWNZhcBdIj35BZ0xZbPBxVYATgDS7t3jgbNQdD7KkEheuTG/zrJv1zEdHxYhS+XUH6UjNq5u2NFdgnQ+z3/z2eTzOdolhBIeiKX9nbsQ3OX7TPq+wedcmytjU+4OCAmYzl8lmYYC3jKEXl+eIvoYx+ia8UkxoaskIC+eGeAAKUGWOahsbLg8IfdZ1JEt4MUNbhRTceQH+xx4d8GG8TDh5Wsru2qOHvSb3gYcR5Z5puDdC3uzT3J1V5eXG7REVhScVG2pUpGNA9d6d0dP9dMCAwEAAaNQME4wHQYDVR0OBBYEFOfBTkB5mY/d6agPNDOoHO0zUoETMB8GA1UdIwQYMBaAFOfBTkB5mY/d6agPNDOoHO0zUoETMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAL0ilHwrIJMa+f4VE1/7MgwIX/M1hV8HpG0jQW0eQmeB3QU/lI5HV4BXlV/WDOvqdvXFwocti/1+84C11uPwe4C4ogrGHfuVPCx2losf4g5AhmmiJKdBJeq66wSkBkSOrwt+0s5uKC7kr92XoKVSHGygqCPNhzqheUKrJXNXULPbfOaxM/jh/4wqFq3YWpdXmHf56Sg62iCPjrSRRrJSsbgPPardMJlECR7ryyT8h9ZB0ZijTMUtrrLmV1x4OXbyMqcDzrGHoZxAukcL1vY40WON3/fNxvyoxOMArvgUJ0T+9Fzi1ZXGTqOh9zy8Dda+d6DP6mit7lnifP4yuiqQPMA=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://svkul.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://svkul.knihovny.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://svkul.knihovny.cz/saml2/idp/SSOService.php"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://svkul.knihovny.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Ústí Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Ústí Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovnauk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovnauk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tcs-dev.cesnet.cz/simplesaml/">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TCS certificates</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Certifikáty TCS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Personal, server, robot, code and document certificates - development</mdui:Description>
          <mdui:Description xml:lang="cs">Osobní, serverové, robotové, aplikační a dokumentové certifikáty - vývoj</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://tcs-dev.cesnet.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://tcs-dev.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIESjCCArKgAwIBAgIJAK9HdKndFZh4MA0GCSqGSIb3DQEBCw
UAMDoxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKDAZDRVNORVQxGjAYBgNVBAMMEXRjcy1kZXYuY2VzbmV0Lm
N6MB4XDTIwMDUyMjE5MDMwMVoXDTQwMDUyMjE5MDMwMVowOjELMAkGA1UEBhMCQ1oxDzANBgNVBAoMBk
NFU05FVDEaMBgGA1UEAwwRdGNzLWRldi5jZXNuZXQuY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwgg
GKAoIBgQC28DHjySYjAVhnYBxXgEmZSDkna25/FW18xBWNM4IUWfd7LxjmPO70ZTRH2Gx099/xh7UO+R
G8Gea5Ar8jmiQuhoozDI61JUzPXh+oWsHk6EiJVt5nSGnw8BNFvP79daeOXlAh4DTVmwi31rIzQ57L4R
O4tQV56jzcDZ4qDKVNvdGdTY2HF4jSkTTBtXlzxc6dWXIa4Xyj9r5uWewIZjhw1r4VP6VudHoMK6pRhW
pDRTKyM5srldTu83PFSt153whMGX5J89pQ3EWIwFzIXeIirBUwsb8BUp927ofHp2yDO0tobp9IAz/VXk
zTyeXdFd5fCq+D8dbw8THxXB+TtLzsWOTORts4r6/pJHDIRu5sUm63zn00SWRyE9uiznVlrF8P6zCQzQ
JCVApgOhJPzrZYv8vepHs2e5lMcTKMstTVAQE8ROdzrDElLEvqZoD+Y3pLSzITy6AVEWtVrmOqCDaypr
f+yq51SxDl5Wxim+g418wApDcnbcqD3X7LmBmQOs8CAwEAAaNTMFEwHQYDVR0OBBYEFIfPOFmwnXVjwV
sHOgTrlHT/5y3wMB8GA1UdIwQYMBaAFIfPOFmwnXVjwVsHOgTrlHT/5y3wMA8GA1UdEwEB/wQFMAMBAf
8wDQYJKoZIhvcNAQELBQADggGBADtQjz/Sio8NgVAV5xUrHftskbdPVH/eoo0bHAcohPA6tljtTnmMLL
vAb+huNMMDthCAikJPTtnF3fmzC9QCtLccb531LTDziO6Jef41AJLr3jOMj+U2rbsOD8IgJqKgV+nnVz
YJL96HDjA1x21fMWRV/vWPl2nTYke7uUlCErb9sVFyC6VvKhUTYdG+5MM7/HNuQEOEHlJDaLA0ly1i3S
z0SHzFSkok+lt0EeN2AF226pCPbBmM0YOFs2XSnGqunHt8pfq4izuChUNSCA/TK9Q5EA1ElcNxiPborl
9ko05jFjE+0/NNQ4+hstS8hnP9U7auqgGRAsDwLSylxNKNV/d8ecqhBV7GWmZIvq6vyk+EX6nL/ax858
X4fssLjSRnR7Tyw2yxOwiqsOrWsqTP2WV3M+o+Olo5JBqRZ9BbgSblbpOAnoKr3XSB3hH8365XVwtbGg
DugjksoPafNxkkRRy/Bm0/0WossEmfphc1lMgiCmMxx9D/Lvd9aAqVDJnzxQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIESjCCArKgAwIBAgIJAK9HdKndFZh4MA0GCSqGSIb3DQEBCw
UAMDoxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKDAZDRVNORVQxGjAYBgNVBAMMEXRjcy1kZXYuY2VzbmV0Lm
N6MB4XDTIwMDUyMjE5MDMwMVoXDTQwMDUyMjE5MDMwMVowOjELMAkGA1UEBhMCQ1oxDzANBgNVBAoMBk
NFU05FVDEaMBgGA1UEAwwRdGNzLWRldi5jZXNuZXQuY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwgg
GKAoIBgQC28DHjySYjAVhnYBxXgEmZSDkna25/FW18xBWNM4IUWfd7LxjmPO70ZTRH2Gx099/xh7UO+R
G8Gea5Ar8jmiQuhoozDI61JUzPXh+oWsHk6EiJVt5nSGnw8BNFvP79daeOXlAh4DTVmwi31rIzQ57L4R
O4tQV56jzcDZ4qDKVNvdGdTY2HF4jSkTTBtXlzxc6dWXIa4Xyj9r5uWewIZjhw1r4VP6VudHoMK6pRhW
pDRTKyM5srldTu83PFSt153whMGX5J89pQ3EWIwFzIXeIirBUwsb8BUp927ofHp2yDO0tobp9IAz/VXk
zTyeXdFd5fCq+D8dbw8THxXB+TtLzsWOTORts4r6/pJHDIRu5sUm63zn00SWRyE9uiznVlrF8P6zCQzQ
JCVApgOhJPzrZYv8vepHs2e5lMcTKMstTVAQE8ROdzrDElLEvqZoD+Y3pLSzITy6AVEWtVrmOqCDaypr
f+yq51SxDl5Wxim+g418wApDcnbcqD3X7LmBmQOs8CAwEAAaNTMFEwHQYDVR0OBBYEFIfPOFmwnXVjwV
sHOgTrlHT/5y3wMB8GA1UdIwQYMBaAFIfPOFmwnXVjwVsHOgTrlHT/5y3wMA8GA1UdEwEB/wQFMAMBAf
8wDQYJKoZIhvcNAQELBQADggGBADtQjz/Sio8NgVAV5xUrHftskbdPVH/eoo0bHAcohPA6tljtTnmMLL
vAb+huNMMDthCAikJPTtnF3fmzC9QCtLccb531LTDziO6Jef41AJLr3jOMj+U2rbsOD8IgJqKgV+nnVz
YJL96HDjA1x21fMWRV/vWPl2nTYke7uUlCErb9sVFyC6VvKhUTYdG+5MM7/HNuQEOEHlJDaLA0ly1i3S
z0SHzFSkok+lt0EeN2AF226pCPbBmM0YOFs2XSnGqunHt8pfq4izuChUNSCA/TK9Q5EA1ElcNxiPborl
9ko05jFjE+0/NNQ4+hstS8hnP9U7auqgGRAsDwLSylxNKNV/d8ecqhBV7GWmZIvq6vyk+EX6nL/ax858
X4fssLjSRnR7Tyw2yxOwiqsOrWsqTP2WV3M+o+Olo5JBqRZ9BbgSblbpOAnoKr3XSB3hH8365XVwtbGg
DugjksoPafNxkkRRy/Bm0/0WossEmfphc1lMgiCmMxx9D/Lvd9aAqVDJnzxQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp-no-hostel"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel/artifact" index="13"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TCS development portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">Vývojový TCS portál</md:ServiceName>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Studený</md:SurName>
      <md:EmailAddress>mailto:dans@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tcs.cesnet.cz/simplesaml/">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TCS certificates</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Certifikáty TCS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Personal, server, robot, code and document certificates</mdui:Description>
          <mdui:Description xml:lang="cs">Osobní, serverové, robotové, aplikační a dokumentové certifikáty</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://tcs.cesnet.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://tcs.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC8zCCAdsCFGDCyNiKANX4GlKYj7z0jgJl2vTuMA0GCSqGSI
b3DQEBCwUAMDYxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKEwZDRVNORVQxFjAUBgNVBAMTDXRjcy5jZXNuZX
QuY3owHhcNMTkwNjI3MTM0NDI3WhcNMzkwNjI3MTM0NDI3WjA2MQswCQYDVQQGEwJDWjEPMA0GA1UECh
MGQ0VTTkVUMRYwFAYDVQQDEw10Y3MuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCg
KCAQEApRx/8Nk6S1PZKq90hE2kPqVe+ntPzDRHExhrqkjvTr9tsDgaL1TohIJR8UfV0c0lLQW9eeVasJ
GYnvZoFykCExiiTbQnHD+1Q4GWfrGk7FfrcQ2I8UgeiLF1SoTMd/eQPSwM/7wAyb8j+cyEtXJpztcnkR
SDxLnBiPn7lvc4UrR9eDxWWBMCRDEl5Z7EZLt8i1OVU/qQCXxHDxGYv9HG80vfS9XBIsIhNAqUa+iRqa
K0Yn1j+yuU0imAl7XLzZCp4w2RtmQWKpJW/NI5RKvZupU2QK1mEPNqQrQlbcVaszkjrt8MGtlTOrVeHK
Dc+NZBXUz5SwZPxmCb8cfQjFT0AQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQABp+5zL8l+3FxZGcUIeG
T1GS/7DINU5eVXxob6kxTYYeRU6bHD5IsUmC//QlAif01XRve21dG4p51BlFHmYHvKBv0W5BJOnkogKD
w92hhwp4oTo6In0XDOp25yl7msHXajKeBix6OQSe/jqBzOumBJexwhT10wp0eUWYssOVs8uNqof0Rl6E
ufI1DZRnmnmG9r4gq6G3cC2yQGTL+KcWSfnde/WQnWAPpvknXhDBNZDXAngNsCHgFv+h51eFkFSOOVqQ
ya5guunIxtrfewYJlmxFSHpJa75BJfEV3js8Q8481JSJ+S7DxRh+80M+UjvVkbbkwF55NUYbrZyQYGyv
z/</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC8zCCAdsCFGDCyNiKANX4GlKYj7z0jgJl2vTuMA0GCSqGSI
b3DQEBCwUAMDYxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKEwZDRVNORVQxFjAUBgNVBAMTDXRjcy5jZXNuZX
QuY3owHhcNMTkwNjI3MTM0NDI3WhcNMzkwNjI3MTM0NDI3WjA2MQswCQYDVQQGEwJDWjEPMA0GA1UECh
MGQ0VTTkVUMRYwFAYDVQQDEw10Y3MuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCg
KCAQEApRx/8Nk6S1PZKq90hE2kPqVe+ntPzDRHExhrqkjvTr9tsDgaL1TohIJR8UfV0c0lLQW9eeVasJ
GYnvZoFykCExiiTbQnHD+1Q4GWfrGk7FfrcQ2I8UgeiLF1SoTMd/eQPSwM/7wAyb8j+cyEtXJpztcnkR
SDxLnBiPn7lvc4UrR9eDxWWBMCRDEl5Z7EZLt8i1OVU/qQCXxHDxGYv9HG80vfS9XBIsIhNAqUa+iRqa
K0Yn1j+yuU0imAl7XLzZCp4w2RtmQWKpJW/NI5RKvZupU2QK1mEPNqQrQlbcVaszkjrt8MGtlTOrVeHK
Dc+NZBXUz5SwZPxmCb8cfQjFT0AQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQABp+5zL8l+3FxZGcUIeG
T1GS/7DINU5eVXxob6kxTYYeRU6bHD5IsUmC//QlAif01XRve21dG4p51BlFHmYHvKBv0W5BJOnkogKD
w92hhwp4oTo6In0XDOp25yl7msHXajKeBix6OQSe/jqBzOumBJexwhT10wp0eUWYssOVs8uNqof0Rl6E
ufI1DZRnmnmG9r4gq6G3cC2yQGTL+KcWSfnde/WQnWAPpvknXhDBNZDXAngNsCHgFv+h51eFkFSOOVqQ
ya5guunIxtrfewYJlmxFSHpJa75BJfEV3js8Q8481JSJ+S7DxRh+80M+UjvVkbbkwF55NUYbrZyQYGyv
z/</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp-no-hostel"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel/artifact" index="13"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TCS portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">TCS portál</md:ServiceName>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Studený</md:SurName>
      <md:EmailAddress>mailto:dans@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://teleinform.cz/simplesaml/module.php/saml/sp/metadata.php/portal1">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal1" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal1" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal1" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal1/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal1" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/metadata.php/portal3">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal3" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal3" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal3" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal3/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal3" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://telemedicina.med.muni.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/telemedicina"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/telemedicina" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/Login" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/safeid" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>telemedicina.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=telemedicina.med.muni.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDPzCCAiegAwIBAgIJANJeOnUMWhb8MA0GCSqGSIb3DQEBBQUAMCMxITAfBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>smid@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://test.ista.tacr.cz/ISTA">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2019-01-31T15:35:38Z"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TAČR - Technologická agentura ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">TAČR - Technologická agentura ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tacr.cz/index.php/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNzCCAh8CBFdyhyowDQYJKoZIhvcNAQELBQAwYDELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNzCCAh8CBFdyhyowDQYJKoZIhvcNAQELBQAwYDELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test.ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirect"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.ista.tacr.cz/ISTA/PUBLIC/saml/SAMLAssertionConsumer" index="0" isDefault="true"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceName>
        <md:ServiceName xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Technologická agentura ČR</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Technologická agentura ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.tacr.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.tacr.cz/index.php/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radovan</md:GivenName>
      <md:SurName>Lupták</md:SurName>
      <md:EmailAddress>mailto:luptak@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimír</md:GivenName>
      <md:SurName>Kubíček</md:SurName>
      <md:EmailAddress>mailto:kubicek@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://testing.futurebooks.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Softresource, spol. s r.o.</mdui:Description>
          <mdui:Description xml:lang="cs">Softresource, spol. s r.o.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://testing.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testing.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://testing.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>testing.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=testing.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUaDpC8D5jIxOJSrCRZwkuhT+gQeQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testing.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://testk7.knihovnauk.cz:8443/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Test K7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Test K7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://krameriustest.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Test K7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Test K7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://krameriustest.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>0W21-3nfnAty3d_37P8kj_QqMIXCz_U1bv7T2snYmKk</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testk7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testk7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Ústí Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Ústí Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnauk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnauk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Luboš</md:GivenName>
      <md:SurName>Malý</md:SurName>
      <md:EmailAddress>mailto:lubos.maly@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zbyněk</md:GivenName>
      <md:SurName>Šachl</md:SurName>
      <md:EmailAddress>mailto:zbynek.sachl@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://thalamoss-data.ics.muni.cz/shibboleth">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">THALAMOSS Data Management Platform</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">System pro spravu dat projektu THALAMOSS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Management and distribution platform for THALAMOSS project on personalized therapy of b-thalassaemia</mdui:Description>
          <mdui:Description xml:lang="cs">System pro spravu a distribuci dat projektu THALAMOSS pro personalizovanou lecbu b-thalassemie</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://thalamoss-data.ics.muni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://thalamoss-data.ics.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="85">https://idp2.ics.muni.cz/muni_logo_85x40.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/ds"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/ds" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>thalamoss-data.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=thalamoss-data.ics.muni.cz,O=Masarykova univerzita,L=Brno-st\C5\99ed,ST=Brno,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIFOjCCBCKgAwIBAgIQCVxtej2wMm/B9oLwzK2HGTANBgkqhkiG9w0BAQsFADBk
MQswCQYDVQQGEwJOTDEWMBQGA1UECBMNTm9vcmQtSG9sbGFuZDESMBAGA1UEBxMJ
QW1zdGVyZGFtMQ8wDQYDVQQKEwZURVJFTkExGDAWBgNVBAMTD1RFUkVOQSBTU0wg
Q0EgMzAeFw0xNjEyMTYwMDAwMDBaFw0xOTEyMjAxMjAwMDBaMHcxCzAJBgNVBAYT
AkNaMQ0wCwYDVQQIEwRCcm5vMRQwEgYDVQQHDAtCcm5vLXN0xZllZDEeMBwGA1UE
ChMVTWFzYXJ5a292YSB1bml2ZXJ6aXRhMSMwIQYDVQQDExp0aGFsYW1vc3MtZGF0
YS5pY3MubXVuaS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOYC
HieVAHYudnFntB+8i1EOnT6jgvlmoCLBtnpD7aEKCl/oT2Tr60clOGY392RWpV9X
eUoqpcdxaDzk2OHCV2l6h2ghLsknMNlemCGREsq4Bzztvq1mjvy6YQF6sRAQmKFG
FfgkgjZ8w6354j6bhh+bPDYQZzK2sWamg2tVrNIXe2fN3Cj8by3PZ6zbyWy2LInC
Cv9HPFBP90+NuFaVLK0dURfMZKFb/CigkjXcAW2FavMnaZwKtUgSKLcx3fb4XRqr
suUuA+UZsHviqT0G1twgQ9adEpsOTaBUQrU2qPes2PiM4XzyYCWQ0UKgRiWFdpt6
o0fh924chUbkZFsvsF0CAwEAAaOCAdMwggHPMB8GA1UdIwQYMBaAFGf9iCAUJ5jH
CdIlGbvpURFjdVBiMB0GA1UdDgQWBBRCvYb69Isfe8+AtVSMp8p50gpMcjAlBgNV
HREEHjAcghp0aGFsYW1vc3MtZGF0YS5pY3MubXVuaS5jejAOBgNVHQ8BAf8EBAMC
BaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMGsGA1UdHwRkMGIwL6At
oCuGKWh0dHA6Ly9jcmwzLmRpZ2ljZXJ0LmNvbS9URVJFTkFTU0xDQTMuY3JsMC+g
LaArhilodHRwOi8vY3JsNC5kaWdpY2VydC5jb20vVEVSRU5BU1NMQ0EzLmNybDBM
BgNVHSAERTBDMDcGCWCGSAGG/WwBATAqMCgGCCsGAQUFBwIBFhxodHRwczovL3d3
dy5kaWdpY2VydC5jb20vQ1BTMAgGBmeBDAECAjBuBggrBgEFBQcBAQRiMGAwJAYI
KwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmRpZ2ljZXJ0LmNvbTA4BggrBgEFBQcwAoYs
aHR0cDovL2NhY2VydHMuZGlnaWNlcnQuY29tL1RFUkVOQVNTTENBMy5jcnQwDAYD
VR0TAQH/BAIwADANBgkqhkiG9w0BAQsFAAOCAQEAGcFXMqdnAy9AXryZkswFEdir
x4VgDFg+9icKvmenDnbG9Z2U+PfJGrakVT7ia7lX7tDNuyr1Q800Z/hGY9OUGaLu
4rZseipOU20oh9pgkdJhWQ6PvVLQjeAh4RbzBcSqa2iJf4iIiioYxGjRJuDhz/3R
xygDPTurMiajMGoft0B8pbP06By7cOrSxxkbl8kNWhVzioB7HFnn2nZ7MDnfd58K
CQw9kicnllXIrDGK5O6gYNnt3mQ8vLhxZuRKtj4BXTiKqVhy6cwsAsrn1BPe8fhz
/SSAoT2vFgwvdm1MLACLHoTawX47d6zRS7D02nTIJYZowWAENVkPuG1jKqIKAA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/artifact/soap" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/soap"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/post"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/soap"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/post"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/post" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/post-simplesign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/ecp" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml/post" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml/artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">THALAMOSS Data Management Platform</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Management platform for THALAMOSS project on personalized therapy of b-thalassaemia</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:mace:dir:attribute-def:displayName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Computer Science, Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ustav vypocetni techniky, Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Computer Science, Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ustav vypocetni techniky, Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ics.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Holub</md:SurName>
      <md:EmailAddress>mailto:holub@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Vojtisek</md:SurName>
      <md:EmailAddress>mailto:325192@mail.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://theses.cz/shibboleth/">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://theses.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Theses.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Theses.cz – Vysokoškolské kvalifikační práce</mdui:DisplayName>
          <mdui:Description xml:lang="en">Theses.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Theses.cz – Vysokoškolské kvalifikační práce</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://theses.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://theses.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://theses.cz/pics/design/th/m/logotyp.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://theses.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>theses.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=theses.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDATCCAemgAwIBAgIJAKXs0bzxFhYCMA0GCSqGSIb3DQEBBQUAMBQxEjAQBgNV
BAMTCXRoZXNlcy5jejAeFw0xOTA5MzAxMzI1MzhaFw0yOTA5MjcxMzI1MzhaMBQx
EjAQBgNVBAMTCXRoZXNlcy5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
ggEBANuIjoZZAahSFu+eQvbZKT6zNhnwM53juxhRFPl0/x+am8AjHREBiWcO0h3V
zt8kP7Tjo20z0x5nEMeGxfVBvpfuMl7yDCTW41y7HLdSr2ngoGG0+u2SCbgt26zB
8i5rAmQLugkiaaWmtzuV88f351mKoH3nBdCKyRX+EpWjPq8ggl51k3qB6FYPJqib
doB+LxtbDI6D551E240juUq1xmsR08tCBtjVdU4Fb78Ze1kr1TVF+X0/T6eFZ0Zi
EE/1xRgI3fUStJzNankqJp80uUeB3fQ/zCqKoxp5dFNTdimbYAUnRy8hL+gQ2c5p
jttDrrwt9QZ8wiYwRwTX6eQ1LPcCAwEAAaNWMFQwMwYDVR0RBCwwKoIJdGhlc2Vz
LmN6hh1odHRwczovL3RoZXNlcy5jei9zaGliYm9sZXRoLzAdBgNVHQ4EFgQUSoAz
+h6gl6QbRIDYPi/uVQXGM+UwDQYJKoZIhvcNAQEFBQADggEBAEahRhcV8aSJZF5f
siP7L8a2WApr7lJOX0c/NbzFrdncttjY/8VfC5NsKoPTtljMigpCbNSeSZXKT7BL
mjJRKjZgCDuUWjjJ/JZusGIa2FKfx9ukc1sxNmV+7T3VAKsZOiQ+7Z/qx4SPxHTm
+ClUsez6OlERE/n/bNXm9dtSxSTUNmK2XzKi5qMJA30lEczmgyQovB0bZhShFxAh
QUx1wikOBIjE2m/WXywcPdAclDhS2M694CqtbpVHZJ0BPl+H7XMo/9NDpUnWO9IQ
ZMOgIhg4ZT0KlIbqVHqsZtDwVuKE+ZYSE1V/f5ZJ9OLWqZGaNW+t+oArKcAIq4zO
V9mPSzY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://theses.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>theses.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=theses.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDATCCAemgAwIBAgIJAKXs0bzxFhYCMA0GCSqGSIb3DQEBBQUAMBQxEjAQBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://theses.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://theses.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://theses.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://theses.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://theses.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://theses.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://theses.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://theses.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://theses.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://theses.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://theses.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://theses.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://theses.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://theses.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://theses.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Prohlížeč atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy vydané vaším poskytovatelem identit.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Theses.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Theses.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Theses.cz – Vysokoškolské kvalifikační práce</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Theses.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://theses.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://theses.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Stančík</md:SurName>
      <md:EmailAddress>mailto:theses@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tom.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS, G3</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS, G3</mdui:DisplayName>
          <mdui:Description xml:lang="en">FTAS, G3 - monitoring systems test</mdui:Description>
          <mdui:Description xml:lang="cs">FTAS, G3 - testovani monitorovacich systemu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://tom.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://tom.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>tom.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=tom.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUSbcBvy0rppi/amRTeEhjgQzj5EkwDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAxMNdG9tLmNlc25ldC5jejAeFw0yMDAzMTYwODIzNDFaFw0z
MDAzMTQwODIzNDFaMBgxFjAUBgNVBAMTDXRvbS5jZXNuZXQuY3owggGiMA0GCSqG
SIb3DQEBAQUAA4IBjwAwggGKAoIBgQC2y7SrGH5nlcPrF8Ek9LQUKgL5Cj/B98Cc
uzH+FIVQNN18PEWKTu18yvWhbLLd4tYzv1hDL+Kz/vkZYRdn2W1zCyfBjSFfk4MO
MJN1t8wlxW0CVjsYe+A9xIwc/sFWnDJuJxzutJDYqw+dgUZnVWnubMMMAijShLER
lhAqco12bL/D0i/W8ipcyOXIiK/SC5cqtpO7SS2Pss82Dbznbsv+BUVzQVIB5ymW
SlVvdn0thn27trfu6/ANcqKl88RqbgraCiEa1zOMveqZAD+YysAu7FjNgI+Ec9w3
sEcwYXdBiVy2eWRGXvRNi1oRYSNFZA7q0KVBM/mKenOrSm7IwzH/RgxGzfiKeJyN
oNsn6tgFzIF1LVd11F06Is59fP1WvfxgEZBJvYyDjrzvh0qILCevWNzbQNlRXRD6
5vk0BcIY+VaTDpj3ORHFKZ2Hpez+/atgoN9QXbLsCTy8n8avOeTG3EYwwuv5P2DW
sinTqiPEPP82qbYUtQTosHMsC6x1kw8CAwEAAaNdMFswOgYDVR0RBDMwMYINdG9t
LmNlc25ldC5jeoYgaHR0cHM6Ly90b20uY2VzbmV0LmN6L3NoaWJib2xldGgwHQYD
VR0OBBYEFN0YSeiv6r6wMh3JySfRvwlEQMzoMA0GCSqGSIb3DQEBCwUAA4IBgQBE
A7hdIkmJKNUfI+19HsZ0Rw0dwHWX8wz6QKos8/6HoQb/goXvoUmFfz9Hyb352ZEu
HbXLPnp7AB7To3jWJh77QJq5WT0XY1mlaasugd64d0tMbilEl+7i5YBvd/uLqRu8
QjY6mUSbRI52PhbO9qaM50p7qIAHGnXgmU6DGPZn2GgnQxcb2z5XxOgeXCqMkvMv
qlddWNbsbigfJYyq9lYj+W3gIZ3lm6Z2e7TC5Tj3Lo8a/MyWofQir/ioEpqZbVpz
ORWj+PRO5PcvmsDl9+I5zDdooSMbna6aDkkP4pU7E41MatiiLfGDtoeCCiSegeqN
ifaLUmwlLHjCd8HohQgYcc0ybvXcNOa4p60m/ZQY8ldmfYN3PMCiNEKTBvDkc6Ju
Huch1lphv10tP2aVGJIwtTJ3g4zzkiLSWcX+KSsyMu/7ndgyBfH6DKo8MuKoXxf5
FaSlpAVEHHynHzkuZgv+G8cZV/Da5Y+Ufjza/CsvveUJHOV1AuV5tG3LEFbN9So=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS, G3</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS, G3</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FTAS, G3 - monitoring systems test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FTAS, G3 - testovani monitorovacich systemu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="persistent-id" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tom2.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom2.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">G3 system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">G3 system</mdui:DisplayName>
          <mdui:Description xml:lang="en">G3 system - monitoring site e-infrastruktury</mdui:Description>
          <mdui:Description xml:lang="cs">G3 system - e-infrastrukture network monitoring</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://tom2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom2.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://tom2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>tom2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=tom2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUEJmxfXs1ad4YjnmkADzyr8y0ayEwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAxMOdG9tMi5jZXNuZXQuY3owHhcNMTkwNjA3MTAwNDQ2WhcN
MjkwNjA0MTAwNDQ2WjAZMRcwFQYDVQQDEw50b20yLmNlc25ldC5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBANTiYYYpUdbdM6MGyMUwelEAlyc3XZDg
nh50qVTnmY13tSA6xy87zUtqe2HMzrwaXeTcErVIqLMj6HNaadOXveVJ/rN97Y1/
nkjUCyu1oogJhgKHG+qqEOswt6X5/nsOk1VhNFNC2QTcoHLZwqShTNhQTIiZFYuL
JRfvC+5esi2ZkS/J/uOVAf/ISeTwnUPSqrS+TCALWDcdAz9I1sHwZtJKdT9NxOzE
p3uFhTqZhEBiNoyaJxy7E/QxmFpq/F5J3KSpfAsbZlRKvvPOa2mVCjTI+uA9NFQ+
8kuWuJ5cjDcH+EKwtBQ7QRKXiqVXx/Kx6jitMCft4GLSakDdQudpjIni8RHm/dYw
D2FelRjZsr+wzLkrGORhCECIFv03TBv+opgCba4Wms26LsbGjLRYfxlcbn3QFze1
PcZGmRACC47qZib+H/tQwM1hGVrOZRXl66tuczDrZh9dpYYDDhn2wAgCxPWxOEV0
nwXUtxRK1SlhvIo9YdL/xmVW0z+XT/6pKwIDAQABo18wXTA8BgNVHREENTAzgg50
b20yLmNlc25ldC5jeoYhaHR0cHM6Ly90b20yLmNlc25ldC5jei9zaGliYm9sZXRo
MB0GA1UdDgQWBBQmSHlXnHDaKc+nb8jHUpy2duwwIjANBgkqhkiG9w0BAQsFAAOC
AYEAGvISdnb8xjqDziAuHf4qdWDtC2Zj4NzpuECCfSxVjUrjGBu6Yo/kPwndijmu
mdG5OpJ0qCJAHuinrkGBlHjvS4YdCVMsP/curKnyEWEencMRo5FG9Wf4dL8uUlLr
QN2lJynaAYyYCdT0a9Wc8vev5SB1tSIMa/vOxx3pD35kiJ5vkdQCLR2O13Zv2AtL
b1WqI5ruy1qBwOgYZ/97uOMQaCgY2FMVOjvDYLPhB4iFQfLVNa67oWYkliJwsrGF
8cES+Fk83ltIOq33fprl6d8EKj1oMS5we6o1U5RAKEqh42T4lF0hdiVXAn98xW6d
RDHK7+NUV+dkmFTB5HcxYBza86220nCvEh2qwHzzDaLAt6trHidbpzghdAk6wU2W
ypg0svnx2MZLpxfuO2J6xdRkV5K0qocBjH/rODeIAB9EQ/jcw93d7G3LOSQFNvb3
NE/u6x1Be5NpC5wud27Tkry/TkceMC8UGm7cKfC9LMu8Ak7J6pperHvpBMsZ34iU
h5T5</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">knihovna.turnov.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal library Antonin Marek of Turnov</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Městská knihovna Antonína Marka Turnov</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Municipal library Antonin Marek of Turnov</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro Městskou knihovnu Antonína Marka Turnov</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://knihovna.turnov.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.turnov.cz/</mdui:InformationURL>
          <mdui:Logo height="55" width="110">https://turnov-katalog.koha-system.cz/vufind/themes/ereading/images/turnov.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SSOService.php"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal library Antonin Marek of Turnov</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna Antonína Marka Turnov</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal library Antonin Marek of Turnov</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Antonína Marka Turnov</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://knihovna.turnov.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.turnov.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kolátor</md:SurName>
      <md:EmailAddress>mailto:jan.kolator@teamlibrary.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ufal-point.mff.cuni.cz/shibboleth/eduid/sp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://eduid.cz/uri/sp-group/clarin</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">LINDAT/CLARIAH-CZ services</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Repozitář a služby LINDAT/CLARIAH-CZ</mdui:DisplayName>
          <mdui:Description xml:lang="en">LINDAT/CLARIAH-CZ digital repository and services focused on language research infrastructure</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitář a služby projektu LINDAT/CLARIAH-CZ zaměřené na podporu výzkumu jazyka</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://ufal.mff.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://ufal.mff.cuni.cz/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://lindat.mff.cuni.cz/privacypolicy.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lindat.mff.cuni.cz/zoou.html</mdui:PrivacyStatementURL>
          <mdui:Logo height="29" width="29">https://lindat.mff.cuni.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://ufal-point.mff.cuni.cz/shibboleth/eduid/sp</ds:KeyName>
          <ds:KeyName>lindat.cz</ds:KeyName>
          <ds:KeyName>lindat.mff.cuni.cz</ds:KeyName>
          <ds:KeyName>ufal-point.mff.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lindat.mff.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEVjCCAr6gAwIBAgIJAOdH/SNVQUWDMA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">LINDAT/CLARIAH-CZ digital repository and services</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Repository and services of LINDAT/CLARIAH-CZ project at Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague, Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav formální a aplikované lingvistiky, Matematicko-fyzikální fakulta, Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚFAL MFF UK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ufal.mff.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ufal.mff.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Straňák</md:SurName>
      <md:EmailAddress>mailto:stranak@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Authentication Support</md:GivenName>
      <md:EmailAddress>mailto:lindat-technical@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Administrative Support</md:GivenName>
      <md:EmailAddress>mailto:lindat-technical@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://uzivatel.sso.vsb.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>as1.wps</ds:KeyName>
          <ds:KeyName>https://as.wps.vsb.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=as1.wps</ds:X509SubjectName>
            <ds:X509Certificate>MIIC/jCCAeagAwIBAgIJAJrmD73gTFVgMA0GCSqGSIb3DQEBBQUAMBIxEDAOBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://as.wps.vsb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">VSB - Technical University of Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola báňská - Technická univerzita Ostrava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">VSB - Technical University of Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">VŠB - Technická univerzita Ostrava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.vsb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://en.vsb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Abrahamczik</md:SurName>
      <md:EmailAddress>petr.abrahamczik@vsb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verify.studentbeans.com/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verify.studentbeans.com/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://verify.studentbeans.com/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>verify.studentbeans.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>emailAddress=developers@thebeansgroup.com,CN=verify.studentbeans.com,O=The Beans Group Ltd,L=London,ST=London,C=UK</ds:X509SubjectName>
            <ds:X509Certificate>MIIEODCCAyCgAwIBAgIJANJg6RwX4lGaMA0GCSqGSIb3DQEBBQUAMIGcMQswCQYD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verify.studentbeans.com/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Beans Group</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Beans Group</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">The Beans Group</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.thebeansgroup.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.thebeansgroup.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>William</md:GivenName>
      <md:SurName>Harris</md:SurName>
      <md:EmailAddress>william@thebeansgroup.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verso3-pp.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso test</mdui:Description>
          <mdui:Description xml:lang="cs">Verso test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility-test.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility-test.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAK8AUVuFqsJ8MA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verso3-test.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso test</mdui:Description>
          <mdui:Description xml:lang="cs">Verso test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verso3-test.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://verso3-test.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility-test.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility-test.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAK8AUVuFqsJ8MA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-test.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verso3.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso</mdui:Description>
          <mdui:Description xml:lang="cs">Verso</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verso3.vscht.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAKJNZSd5rxgqMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://video.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Video system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Video systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Video system</mdui:Description>
          <mdui:Description xml:lang="cs">Video systém</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://video.lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://video.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://video.lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://video.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUGpBULN8yt++0BLtToqjxECFLOUkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://video.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUBYQNI7r1fzWBm7Dl7WoIdWqQKJAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Video system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Video systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Video system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Video systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfp.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://video2.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Video system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Video systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Video system</mdui:Description>
          <mdui:Description xml:lang="cs">Video systém</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://video2.lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://video2.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://video2.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video2.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video2.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIUO1UuENwAKoIgKMBzeDDwzcolANQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://video2.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video2.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video2.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIULuXDQlxmilAm6c48yWvVW2JnG2EwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Video system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Video systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Video system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Video systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lpf.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby-test.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TBU Elections - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby UTB - test</mdui:DisplayName>
          <mdui:Description xml:lang="en">TBU Elections - test</mdui:Description>
          <mdui:Description xml:lang="cs">Volby UTB - test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://volby-test.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://volby-test.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby-test.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://volby-test.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUEum1vdx1NL+zXpXUMPJboHkvkGowDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAxMPaWdhLXRlc3QudXRiLmN6MCAXDTIwMTEwNDEyMzkyOVoY
DzIwNTAxMDI4MTIzOTI5WjAaMRgwFgYDVQQDEw9pZ2EtdGVzdC51dGIuY3owggGi
MA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDCEue0X2A5adLwWrVgRtZRE/cT
bb1uEPnKJX2biC6BtOl3NQhQr68IysncM4ufImn4YF30sFyDP08SJ6l3dJ39lZc8
mWD8Kr9OYmjEdM4IUhIyB98sBQK11XfH1dEbVDuJiaCyV58NFUZ35G4MjTk2ULXt
l5/G72qg5iPd+72Adry4+zUsRSGQDFGiMvUXvcQeHiMv2Fs2tgPawwlzvHlU0Ajk
My+pgrUtzeRoiT8BEBzBl0oK+ss9OElCtqYEe8CyWTGO6T1A9H2XAjP8ZsLWHxQe
8DDJ9+QdtlFvSATLH+gCf5fckCBuyu/BByXJUovrf8cilx4mdnEU0aD0Q1ORbBwV
HALjXkjbcbf72xIXt7K3aSJTN/MFTE2BZRiTcKFTvfBLs4g6Y4SWMbz8YP+PMmnY
7JUubYZn7p/tf8oNojTf/JYtG4ODH7VPDX6mxZm3K4Y71qnrdZn3isByAnp1Qojs
IoUOlJLdOi8LjFy2sMdlhrLJ7hCeJ/hEmw3tYK0CAwEAAaNkMGIwQQYDVR0RBDow
OIIPaWdhLXRlc3QudXRiLmN6hiVodHRwczovL2lnYS10ZXN0LnV0Yi5jei9zcC9z
aGliYm9sZXRoMB0GA1UdDgQWBBSaxM5M/+nUGEFhmUOnnRD6r7vCXTANBgkqhkiG
9w0BAQsFAAOCAYEADzMK9hKSL3IE4d31euEuaVim1Jwt+hTzmkUOOLG3pNCSjl2B
0LRdFdhc5PHWH1Oqtnr+JfERB4sXLXomueBCLuLyBVbJ5GW1GRTzOTrgxiR0Eo+r
CzR0/qlv+fNAGAhAS5xVE4Bg60eXVxzOnPYmDqOLNS/Me/g053r1qAe71BgjovpE
CmcPrE8E5wODaVJOBp+WPKQmjxm9f99Ro7ckiTCPiPidAMXvSsJIk74sRS0nOtTv
k7fkWzzU6SOE8VS1pVyK9mEiAZGUfsLBseAJJArZBtpcQCABRZJpLPe3Kbag7pZl
M1dcHrXYmCJmgkkIS2GBKMAsChIzVg9TYVSrnY4VxnP4aF0RRAeu66V6Dt6/k8U2
xT3L67HjRQuoC51tgFBeJXz86NjNgUiiNuowuiYf2hfu+EaVStAWm7fBE+22Oikr
TVSMh6nrlAjwY0fDqwCz8U3lim1PxWD2Phk8crse6nHQAaDBeBuptkR+3062rwLJ
NeD7H3JWIdf7BMfa</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUQigpC2rlx0r8uOPOv9Sc8NIN2fMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TBU Elections - test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby UTB - test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TBU Elections - test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volby UTB - test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby-test.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Election-test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby-test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Election-test system.</mdui:Description>
          <mdui:Description xml:lang="cs">Volební testovací systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby-test.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://volby-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>volby-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=volby-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUCvrGlhqOy86gOz189RVoKlFfI4cwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Election-test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby-tes</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Election-test system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volební-test systém.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TBU Elections</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby UTB</mdui:DisplayName>
          <mdui:Description xml:lang="en">TBU Elections</mdui:Description>
          <mdui:Description xml:lang="cs">Volby UTB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://volby.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://volby.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://volby.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUMQJKZThsmY6r2de0kxVu0+d10ccwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAxMKaWdhLnV0Yi5jejAgFw0yMDExMDQxNDI1MDdaGA8yMDUw
MTAyODE0MjUwN1owFTETMBEGA1UEAxMKaWdhLnV0Yi5jejCCAaIwDQYJKoZIhvcN
AQEBBQADggGPADCCAYoCggGBAMJye9tjX6YTL4OVKHOEa9LHM6If8J6jyrc0BmkC
Ieq637qIS3yJyhbrtXqgzJus4p6kgfsBgfbJXpFpSjgBQ8+VrUkghTg28KLt1xjQ
IZPsBMTwkxj+Lbaq8hfuJGumDKZM4lkYCxQOvFijklp4FKZQdetvrLmW2oQULxAl
V8BpYFzYZtP5KKdsHLE3sG4+KiHfBZup5HroqhangDe9hDNkVBWBSrwMNlyhuBwd
LnnoQkYBBgASncoxdHEbCR4qt6o0EeqSP7/AxkY3nNqaa8yiQRK3pNgF/GCQuT/t
OFRirWAlCBrd0Fsb6MClS2dJesxP64weWUMbl8nLboZM8TmRqZx1motyHazBarh+
xTjbhxYj+/F+w32IGUz0Ou8WHZVdjCaAdlR2v0ptxEtWY/5M0cg7wHCvOYTjhguM
cPjUCUH2oiW7vA8v7V7esTeGTYS62cnHPT8NoKeU61Zes77R+8rZcATz/ldpJj1j
XTMSx8SX4qvif2KQkdgX3dEACwIDAQABo1owWDA3BgNVHREEMDAuggppZ2EudXRi
LmN6hiBodHRwczovL2lnYS51dGIuY3ovc3Avc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
FdyBq1ySNBXfDDWA/Q3fUJd2SmswDQYJKoZIhvcNAQELBQADggGBAJZs7pqFtnDv
9dvctQh6hwUYjXyD7jz1f9nHem5sCQCRMQhM+TzG+/aywunmryJQcT7yoBR7GEsU
a2yu/+BIqnAv2MEzARuRcZnkYmKe4RlWsn+dkLcMwX0QNbHMd8edl7kRfWV9MZT6
O8Ju3jXsGMaYY9UwnXzgyrfDf6bPFze2l3RAlo9+aZ9nJ+NkUWinJ91Iv5FIQzsW
wYcJK7+ZgHrIMuI/E11SrD5FdpZww19Hgc1GxBchjk0o04WJ53Uoh4sDGU3hfx7P
FHqKoAi4m1o6AeH9FPWKxzysnGhSdjBJ7RP9KQx7sVO5rkOFOeUsomDfRzOabEUy
jwsKDK1ck9EHkwEs66/Jya6gSQb/M6o/58gj3Il1Nk+8uguO/2F+Ai4u9bvJC2Er
XuxS/Ij1QlrDQNB8tQDp3DIbxcexT6lhhmbsW9H6Cu4Uxyv7HRcP2AZIUrsTkJC8
YrN/bVIxy3ewrV2pKfhQL0cc9oKUi/PPsvNnrKeljiCPbtWIucOSVA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUaGGw5HaZ0SeuKUXB9Fz4tQntf1AwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TBU Elections</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby UTB</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TBU Elections</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volby UTB</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Election</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby</mdui:DisplayName>
          <mdui:Description xml:lang="en">Election system.</mdui:Description>
          <mdui:Description xml:lang="cs">Volební systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://volby.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>volby.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=volby.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd8FOgOUKbVMzxY6KbKfRD44Vim8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Election</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Election system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volební systém.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vpn.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET VPN portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET VPN portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET VPN portal</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET VPN portál</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://vpn.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://vpn.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vpn.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vpn.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vpn.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vpn.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUP1jkU5NS5JcKgo+3V1WP50BzwR4wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vpn.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET VPN portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">CESNET VPN portál</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET VPN portal</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">CESNET VPN portál</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="entitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ismemberof" Name="https://whoami.cesnet.cz/attribute-def/isMemberOf" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vscht.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">vscht.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">vscht.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://vscht.futurebooks.cz/en/1-ochrana-soukromi</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://vscht.futurebooks.cz/1-ochrana-soukromi</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://vscht.futurebooks.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://vscht.futurebooks.cz/</mdui:InformationURL>
          <mdui:Logo height="177" width="909">https://vscht.futurebooks.cz/storage/app/media/logoUSTAV%20EKON__%20MANAG_zuzene_barva.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vscht.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vscht.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vscht.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vscht.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vscht.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUZRDRabZdrOAT5NLFqODDtBYGh0swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vscht.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vut-vsb.cz/simplesaml/module.php/saml/sp/metadata.php/portal2">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal2" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal2" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal2" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal2/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal2" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vydavatelstvi.vscht.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">vydavatelstvi.vscht.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">vydavatelstvi.vscht.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna Vydavatelství VŠCHT Praha. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library of Vydavatelství VŠCHT Praha. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://vydavatelstvi.vscht.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://vydavatelstvi.vscht.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://vydavatelstvi.vscht.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://vydavatelstvi.vscht.cz/#about</mdui:InformationURL>
          <mdui:Logo height="130" width="813">https://vydavatelstvi.vscht.cz/storage/app/media/vydavatelstvi_logo.jpeg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vydavatelstvi.vscht.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vydavatelstvi.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vydavatelstvi.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUa7hKhaYBUviE/fz++n8LgFk3EJAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna Vydavatelství VŠCHT Praha. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library of Vydavatelství VŠCHT Praha. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://webcentrum-dev.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>bydleni.muni.cz</ds:KeyName>
          <ds:KeyName>ckr.muni.cz</ds:KeyName>
          <ds:KeyName>crc.muni.cz</ds:KeyName>
          <ds:KeyName>econ.muni.cz</ds:KeyName>
          <ds:KeyName>ics.muni.cz</ds:KeyName>
          <ds:KeyName>jobchallenge.muni.cz</ds:KeyName>
          <ds:KeyName>kariera.muni.cz</ds:KeyName>
          <ds:KeyName>poradenstvi.muni.cz</ds:KeyName>
          <ds:KeyName>webcentrum-dev.muni.cz</ds:KeyName>
          <ds:KeyName>webcentrum.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=webcentrum.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIFDjCCA/agAwIBAgIQH5/RzYjHO3ohnh231q9wuDANBgkqhkiG9w0BAQUFADA2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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ics.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Budík</md:SurName>
      <md:EmailAddress>web@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" cacheDuration="PT1H" entityID="https://webcentrum.muni.cz/">
    <SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">WebCentrum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">WebCentrum</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro tvorbu webů Masarykovy univerzity</mdui:Description>
          <mdui:Description xml:lang="en">Masaryk University web content management service</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://webcentrum.muni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://webcentrum.muni.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.jobch.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jobch.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webcentrum.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test2.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test2.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://research.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://research.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courses.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://courses.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alliance4life.com/AuthServices/Logout"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jobch.cz/AuthServices/Acs" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.jobch.cz/AuthServices/Acs" index="1" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="2" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="3" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="4" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="5" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/AuthServices/Acs" index="6" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/AuthServices/Acs" index="7" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Acs" index="8" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Acs" index="9" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Acs" index="10" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Acs" index="11" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Acs" index="12" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Acs" index="13" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Acs" index="14" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Acs" index="15" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Acs" index="16" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Acs" index="17" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Acs" index="18" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Acs" index="19" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Acs" index="20" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Acs" index="21" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Acs" index="22" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Acs" index="23" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test.muni.cz/AuthServices/Acs" index="24" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test.muni.cz/AuthServices/Acs" index="25" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test2.muni.cz/AuthServices/Acs" index="26" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test2.muni.cz/AuthServices/Acs" index="27" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://research.alliance4life.com/AuthServices/Acs" index="28" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://research.alliance4life.com/AuthServices/Acs" index="29" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courses.alliance4life.com/AuthServices/Acs" index="30" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://courses.alliance4life.com/AuthServices/Acs" index="31" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alliance4life.com/AuthServices/Acs" index="32" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alliance4life.com/AuthServices/Acs" index="33" isDefault="false"/>
      <AttributeConsumingService index="0">
        <ServiceName xml:lang="en">WebCentrum</ServiceName>
        <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="fullName" Name=" urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Masaryk University, Institute of Computer Science</OrganizationName>
      <OrganizationName xml:lang="cs">Masarykova univerzita, Ústav výpočetní techniky</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Masaryk University, Institute of Computer Science</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Masarykova univerzita, Ústav výpočetní techniky</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://ics.muni.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://ics.muni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Budík</SurName>
      <EmailAddress>mailto:web@ics.muni.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://webcentrum2.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">WebCentrum2</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">WebCentrum2</mdui:DisplayName>
          <mdui:Description xml:lang="en">CMS login and login for services bydleni.muni.cz and bydleni.slu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Přihlašování do redakčního systému a služeb bydleni.muni.cz a bydleni.slu.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://webcentrum.muni.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://webcentrum.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="128">https://webcentrum2.muni.cz/css/webcentrum.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://webcentrum2.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webcentrum2.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Kentor</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Kentor,OU=UVT,O=MU,L=CZ,ST=CZ,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDezCCAmOgAwIBAgIJAPOAEFWtO4A8MA0GCSqGSIb3DQEBCwUAMFMxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum2.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ics.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Budík</md:SurName>
      <md:EmailAddress>mailto:dis-web@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://webhosting.vse.cz/shibboleth/eduid">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">webhosting.vse.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">webhosting.vse.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Webhosting server of Prague University of Economics and Business</mdui:Description>
          <mdui:Description xml:lang="cs">Webhostingový server Vysoké školy ekonomické v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vse.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vse.cz/english/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.vse.cz/english/about-vse/information-and-regulations/gdpr/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.vse.cz/informace-o-vse/informace-a-predpisy/gdpr/</mdui:PrivacyStatementURL>
          <mdui:Logo height="1772" width="1772">https://pr.vse.cz/wp-content/uploads/page/58/VSE_logo_CZ_circle_blue.jpg</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://akvs.cz/eduid/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.akvs.cz/eduid/Shibboleth.sso/Login" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://akvs.vse.cz/eduid/Shibboleth.sso/Login" index="3"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vykazy-akvs.vse.cz/eduid/Shibboleth.sso/Login" index="4"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vykazy.akvs.cz/eduid/Shibboleth.sso/Login" index="5"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/Login" index="6"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>webhosting.vse.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=webhosting.vse.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIC+jCCAeKgAwIBAgIJAPEjqrHapoNlMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://akvs.cz/eduid/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://akvs.vse.cz/eduid/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.akvs.cz/eduid/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vykazy.akvs.cz/eduid/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vykazy-akvs.vse.cz/eduid/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">webhosting.vse.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">webhosting.vse.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Webhosting server of Prague University of Economics and Business</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Webhostingový server Vysoké školy ekonomické v Praze</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoká škola ekonomická v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">University of Economics, Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola ekonomická v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">University of Economics, Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.vse.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.vse.cz/english/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdeněk</md:GivenName>
      <md:SurName>Tlustý</md:SurName>
      <md:EmailAddress>mailto:sus@vse.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://whoami-dev.cesnet.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">cesnet.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET (whoami-dev)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET (whoami-dev)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing Identity Provider (IdP) for CESNET employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací poskytovatel identity (IdP) pro zaměstnance CESNETu.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ces.net/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://whoami-dev.cesnet.cz/idp/images/whoami-dev.cesnet.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEPDCCAqSgAwIBAgIVAJTrWIXjnlXywbuO8Kg6oKopjkz0MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEPDCCAqSgAwIBAgIVAJ45VXaBI7U4O0vBuEfEAdWasUZ2MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://whoami-dev.cesnet.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://whoami-dev.cesnet.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://whoami-dev.cesnet.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET (whoami-dev)</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET (whoami-dev)</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.ces.net/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>CESNET-CERTS</GivenName>
      <EmailAddress>mailto:abuse@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://whoami.cesnet.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/other</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">cesnet.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider (IdP) for CESNET employees.</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity (IdP) pro zaměstnance CESNETu.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ces.net/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://whoami.cesnet.cz/idp/images/whoami.cesnet.cz.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUfhycq2ciNJX9gaQvHYRcI7a+J2QwDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAwwQd2hvYW1pLmNlc25ldC5jejAeFw0yMjAzMDEwNzQzNTJa
Fw0zMjAzMDEwNzQzNTJaMBsxGTAXBgNVBAMMEHdob2FtaS5jZXNuZXQuY3owggGi
MA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCA+C/U7dOcl2dneqGpFi2AEVwa
sytgYWzMOWaGRBBVGJoTfIJbvwI/nyerCK+K/CPO3ChJ4DxG6nDH9FQnxvN3jjhf
JBH6yBzNew3rDDlFLg+iNOW/srAXvDmNrN5/V91orjZ4qlKViNqvtOZrTwVhSDtF
QSxAPX7Q6b7zqRkPD531eHxVHCjFyriLacihUBEAevOqxO8xdXseeyZzaEQw7KEK
EEYFIHvH8VAWV/S/vLXj3S8Vam3AE464u87mCIHkED9XfaZAPkGSBe0SwwGdxQnM
o72G56BrKgBArlKDd/m8zE/fsaP97pBLx9amNA9u0EVhV4W9de2hepJKQowrXoo1
3LDE/dpbAkSTdlcsrL/g1eN3ziiZ8yOulJaI3zcOmgxqXPlO+wgeYdRiDnSgnQmm
qxekeZ5LXQfwrroK96ZJaheTUopO17UKDv7lek+c11nPwJiEQkgDqqD2rbwkdmvR
JUj5jJSyefoIVhtVLGCiCypwKcZJZCDO3y3vsz0CAwEAAaNnMGUwHQYDVR0OBBYE
FJyrRUYHac3G6UhW8eibyuLAcn9rMEQGA1UdEQQ9MDuCEHdob2FtaS5jZXNuZXQu
Y3qGJ2h0dHBzOi8vd2hvYW1pLmNlc25ldC5jei9pZHAvc2hpYmJvbGV0aDANBgkq
hkiG9w0BAQsFAAOCAYEAGYBXQE8GNMhaPuDoWkH0oL2cI4qoneX9NPaUoSwQ+A7O
qLY+jMm/wUkLpu+Kh61tXMY5NPWMEZLc23nwILegUSzrNGJqMpHnz8Mv1Ab5Alv5
FyUIr52VGkyNnJpIiq2XCSjIOnmHUkUdymL8nZf8J3IadRZq8jN9BKJy1vaLThlG
aAsqC2lZiPMMllYhPaOLtIQtBFEyYO97evmVvVNTZgmmk8fuF6P3gM18LRxXRbpQ
cQ5VS5nL3LrLi/1cATO8Jz+ERv4zaSLd+2UM0Ft899Ucowjzvoq0vmE+pvvlneNl
aEorT6nbXFeEsxaYuidg1pxWeoBqruRA0I7iD/4YzVgRHIdwBufQK+x1L4Pihp9U
ySPhVJJXdEdlSt5MnAjBv/Icn/FlGV1u/X37FqIJ7O/Alb5jfwSu97cgwd4pB6/j
ao2BQ3zYrSsaVU9qtnv0lE5nzG2b3QyPPkIbUR3nV/n7XOoZmGN8k0jX5N0shAfJ
wc9tCLkBo8qkL9vQaFAu</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIVAI6NHbEG2QoGwKTUzRSIXiHOnnw1MA0GCSqGSIb3DQEB
CwUAMBsxGTAXBgNVBAMMEHdob2FtaS5jZXNuZXQuY3owHhcNMjIwMzAxMDc0MzUw
WhcNMzIwMzAxMDc0MzUwWjAbMRkwFwYDVQQDDBB3aG9hbWkuY2VzbmV0LmN6MIIB
ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAn5kgxiNoK5y44dK0j8j0jj1f
uB9mV2GWz2pZba6ytQoIdcDb8udlEcbrjaD41txziJDS7LD/+meZIU4E6B8p0qgn
5RnMtQq/HfkmSbxplgoZK+ZLqVoIO422wtX8xgSsBsui9boG6LGEYkrF2+oak1OM
dd20dlSumVcQuRfsRf1JAlI2c08UlinwhoBf4CPMOigDD8qu95sMCaCR920AfLCR
29R6U2qz5mvps08yFFpkrTErGKLY6SNPHjrbLhW8VU/lqUuVCdnaMnxz9wPWNhAt
eE9YZLtPlFhqLbqDCloELc/Ekk5/XhVY0vr+B0rBsXmFaolEi9PnGCkIK665YAwk
cyarO0gyawE3mcX22HBlH1ysHDA4dpXNXtkr4BAiVTIiJAP8T7EUk1z2BDOsDVWC
8EWvXU6hfnJUabXzpqMMn8b4lCP730nYxuzYlPXmoq+epQVA23blJ5aVA0WUKicV
EfIx1y3MW1tRTxM2Ze9ELR/+bIv+AHfJt3ox3P83AgMBAAGjZzBlMB0GA1UdDgQW
BBR49Q5oZ5TRFe96o82mUye8raq17jBEBgNVHREEPTA7ghB3aG9hbWkuY2VzbmV0
LmN6hidodHRwczovL3dob2FtaS5jZXNuZXQuY3ovaWRwL3NoaWJib2xldGgwDQYJ
KoZIhvcNAQELBQADggGBADyYeU0OkhTtG75cXza1ah1wlnrXpVOCM2EjC08PmVMH
LSWIPF7wfzFfirlXonmzh+aM7iwSsm+DmLfEj59mfm0qb/ZrH6rCM8HHa2gpbFk+
rIRSO3uYvrUvUnK83ZOJ7TQF5HUp4Wz5dzcHh3eQafT2AykclRd5vE3tASBKLDbc
Lg67ZG8feQePEOT5bEYaLBSDXKVB+5zcMK3YpIInZLgVlw/ukYdkbMoVPH0SLKC2
kzBv+3qEAtnytl/1uSmZ+YN9sNT5hCgMC53/+L8sABJaclLEvoOCRvUp6xiewrya
txSk/8c8JLteuzEWor7DXvQxxHco/Uv5nAfFeGWhML5v8RmBq47TdTTWe3PKw3uf
sC5E47G4vQh7z8a9zDXkkhN0E73Mv8cm4ArzYXJzW3tvYQSwos+Sdq4rQGnYXZ+1
3AX2GScvmuCyeA8YIKmW3jqzGtWH0iA7Ic6wCnnDZwXtK76x8FMX8cnU2qMC2aVz
zFAqLcxs7apHvItdRCAPnA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://whoami.cesnet.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://whoami.cesnet.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://whoami.cesnet.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.ces.net/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Oppolzer</SurName>
      <EmailAddress>mailto:jan.oppolzer@cesnet.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>CESNET-CERTS</GivenName>
      <EmailAddress>mailto:abuse@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://whoami.vsb.cz/idp/shibboleth">
    <Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vsb.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">VSB – Technical University of Ostrava - TEST</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava - TEST</mdui:DisplayName>
          <mdui:Description xml:lang="en">VSB-TUO  Identity Provider</mdui:Description>
          <mdui:Description xml:lang="cs">Poskytovatel identity pro VŠB-TUO</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.vsb.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.vsb.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="90">https://idp.vsb.cz/idp/images/logo-vsb-40.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVALvMx/fJauUkMPmhEYg9UXbhKdeQMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAItlE/boD5IDWsHDu5nseeiGlS3fMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIVAOzhYKGh5WzrwxFavKFjs0zkv+IiMA0GCSqGSIb3DQEB
CwUAMBgxFjAUBgNVBAMMDXdob2FtaS52c2IuY3owHhcNMjAwODE4MDcwNDA3WhcN
NDAwODE4MDcwNDA3WjAYMRYwFAYDVQQDDA13aG9hbWkudnNiLmN6MIIBojANBgkq
hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAqrCP5E5M6gKia6rORGJOOsbZe+TSP287
INLiEMVSbUziqfDZOoBLsKA7g3CvOf3hG3BdrPtzLL1b0hKIHZsbs/y00C86xoax
qvnyxDUWhfcY80y+rNryl8zg9iQafMsgvyMNeMtQH10zBQrByYmkKG7SiwcYVi4a
que0fcdS2u+wKYp2D0tzNfEgfNP641bkrACztbE7wABF7RvxkVxT+jD2axlEhYT3
8BZT8oTU2jAEFCc10TvFWoxJ3e/mK+5I2oq19zvZ7WHBWa9ww+80DN8jIkVTdFVF
Eps1T6xw8icrH9Hr5JIBP5z6iRWE6NYA1Pr57TTDM3qJ+vm18sfoAtxI2uI0WP0Z
CaD9x0cJ5QFGd7yDjawU6/he2+Bjw7KXnASTAHHxFU0I3yeYFEE/3/YjJ9R649fF
QgJoWGDrIay3j+A3M8prf2hWil0f8yo8/KbiXl0kNya2w/Kfokql3aNeDETa15cu
UIlC1TJ1IV+LrAXdobnCSz7b3gIOtKRPAgMBAAGjYTBfMB0GA1UdDgQWBBTcSv1T
SAmf9qm8/nZ6uIvnpie+TTA+BgNVHREENzA1gg13aG9hbWkudnNiLmN6hiRodHRw
czovL3dob2FtaS52c2IuY3ovaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD
ggGBABngsLbQesXLQgtTgfHCElXquVNkX/AxQWPD1o6cf0j5mVjDcVo7IpExLCV+
USd0sKJIasmTWW/IZ6ilsR42F7YCMfjploD3FYlX5+sH+Jm/spd0ekeJ1Jb3ATyx
a7LuR8KWn90epgyFz9c9NDdjp34PEwi5ynaPiH4peC9LTTOXTg/OVfDj7+PQS31z
kgf0CSlx98jTGlabQdgsy/Qf1XjrJFdbacBKLMBNWuAWbvsXNd11Hz4k6ZJTzTEL
SYcaw86Ni0cRnSs0/whA/BOMU/qBYlbhvyVLJGFM0pWQkVwd6SH51+Yln+oQjQVu
ewRrFaMx/nwA8WADcgxeu0T0NG13gFOg1jLrGmQNHcNPZa2ikeHe9FJySXer9XFQ
JH25oVO4GcothMINM3QvimO86+aOe5Rt43aFt4b/1X7xdfzdK7aGvT827hjyoOEJ
2dtAYqRThbSgiG9QGpsLwXIgT6DA5p40a4v+O+6v8vtP2OEG5faVlH/HC/zH9G3k
zpzjsg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://whoami.vsb.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://whoami.vsb.cz/idp/profile/SAML2/POST/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://whoami.vsb.cz/idp/profile/SAML2/POST-SimpleSign/SSO" req-attr:supportsRequestedAttributes="true"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://whoami.vsb.cz/idp/profile/SAML2/Redirect/SSO" req-attr:supportsRequestedAttributes="true"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">VSB – Technical University of Ostrava - TEST</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola báňská – Technická univerzita Ostrava</OrganizationName>
      <OrganizationDisplayName xml:lang="en">VSB – Technical University of Ostrava - TEST</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava - TEST</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.vsb.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.vsb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Stanislav</GivenName>
      <SurName>Vaštyl</SurName>
      <EmailAddress>mailto:stanislav.vastyl@vsb.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jiří</GivenName>
      <SurName>Mrkva</SurName>
      <EmailAddress>mailto:jiri.mrkva@vsb.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Lasoň</SurName>
      <EmailAddress>mailto:martin.lason@vsb.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <GivenName>VSB SECURE TEAM</GivenName>
      <EmailAddress>mailto:abuse@vsb.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://wikisofia.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://wikisofia.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wikisofia.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>adedit.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>ffmisc.praha3.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>fronta.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>pma3.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>praha3.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>rozvrhy.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>wikisofia.cz</ds:KeyName>
          <ds:KeyName>wikisofia.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>www.wikisofia.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=wikisofia.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIFCDCCA/CgAwIBAgIQOuzhbBrml/accdy9tba+QTANBgkqhkiG9w0BAQUFADA2
MQswCQYDVQQGEwJOTDEPMA0GA1UEChMGVEVSRU5BMRYwFAYDVQQDEw1URVJFTkEg
U1NMIENBMB4XDTEzMDcxMTAwMDAwMFoXDTE2MDcxMDIzNTk1OVowOjEhMB8GA1UE
CxMYRG9tYWluIENvbnRyb2wgVmFsaWRhdGVkMRUwEwYDVQQDEwx3aWtpc29maWEu
Y3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCSpJshRuDdJ1CAHm40
++MV/YzKI9jocJ2JgunFLQlUgj86UMqXbCPCdEGnXL6VyLsLpbvCQ4J9xB64f0u1
krH0jzJDMcICsJFIwSveobxKQiBWiUXjjFXO1ocz5nTHyMnvWytoLWb7B408RsMl
TusT9DMGxq4r+6xJs0LGj+xEfwwtexo2DGMyapo0ZFnTYf+UE4vQG44X7PN+IjbJ
W3ZcDkeR8o3pWImhyJV19blOoyVVEkNNb1mdZ8aJj58HVkvdzJIhs9DQwmuh3n7r
E44zAC/9t9OOT7dbN0mOfnEtb/J7qkSKdKre1SSi4EzzdUQ6PR9MCncSbgq2Q8GY
iWzvAgMBAAGjggIMMIICCDAfBgNVHSMEGDAWgBQMvZNoDPPeq6NJays3V0fqkOO5
7TAdBgNVHQ4EFgQU8hD/VS2qOZr56Q1rcQYxhc+tkrAwDgYDVR0PAQH/BAQDAgWg
MAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMCIG
A1UdIAQbMBkwDQYLKwYBBAGyMQECAh0wCAYGZ4EMAQIBMDoGA1UdHwQzMDEwL6At
oCuGKWh0dHA6Ly9jcmwudGNzLnRlcmVuYS5vcmcvVEVSRU5BU1NMQ0EuY3JsMG0G
CCsGAQUFBwEBBGEwXzA1BggrBgEFBQcwAoYpaHR0cDovL2NydC50Y3MudGVyZW5h
Lm9yZy9URVJFTkFTU0xDQS5jcnQwJgYIKwYBBQUHMAGGGmh0dHA6Ly9vY3NwLnRj
cy50ZXJlbmEub3JnMIG5BgNVHREEgbEwga6CDHdpa2lzb2ZpYS5jeoIRYWRlZGl0
LmZmLmN1bmkuY3qCGGZmbWlzYy5wcmFoYTMuZmYuY3VuaS5jeoIRZnJvbnRhLmZm
LmN1bmkuY3qCD3BtYTMuZmYuY3VuaS5jeoIRcHJhaGEzLmZmLmN1bmkuY3qCEnJv
enZyaHkuZmYuY3VuaS5jeoIUd2lraXNvZmlhLmZmLmN1bmkuY3qCEHd3dy53aWtp
c29maWEuY3owDQYJKoZIhvcNAQEFBQADggEBAAyD8cjcEp3MufF4heZweBX0k33N
51rnwkhcgbi5fK3XDLjkEogaI0RDIRtExe3KV/JP6qegw3xZl3VYHAXRfWGswPge
Tnsu08jLX3P8CeKRldFDpPdbdn2sq/2403Y6OwY2fTGj7lLtGiPljxQkufgtJk4x
Mv9yLcnXb8s0YTIW8AIjAkeWOyW52t0t2UNPTncb/AdggokEgpB/dVCrZQeOnAzC
AZeKiKWMHshzRu2f25xH1dJIMP0mlwiCY9UYM1BfdBCp8wcIlHCzmFDOE1f36aGT
1eFZvKx4gmgA7g+98lsonCwZRaD+dTDvevYYPjk+yEicpJ/OrXMzl542pc8=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wikisofia.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wikisofia.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wikisofia.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wikisofia.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wikisofia.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wikisofia.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wikisofia.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajic</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://wsso.vscht.cz/idp/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://refeds.org/category/research-and-scholarship</AttributeValue>
        </Attribute>
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>https://refeds.org/category/anonymous</AttributeValue>
        </Attribute>
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>https://refeds.org/category/personalized</AttributeValue>
        </Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </EntityAttributes>
    </Extensions>
    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <shibmd:Scope regexp="false">vscht.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">University of Chemistry and Technology, Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for employees and students of the University of Chemistry and Technology in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro zaměstnance a studenty Vysoké školy chemicko-technologické v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://www.vscht.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.vscht.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUCiEnf2QSmdNPgNrxAwsLJdQcjf8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUWJSpBYMweHQ+TgFgcRcT9F2d+D8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIULC/3LQiHZFkIB4kmuKkjmGLwb/4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wsso.vscht.cz/idp/profile/SAML2/Redirect/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wsso.vscht.cz/idp/profile/SAML2/POST/SLO"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wsso.vscht.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
      <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wsso.vscht.cz/idp/profile/SAML2/POST/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wsso.vscht.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wsso.vscht.cz/idp/profile/SAML2/Redirect/SSO"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of Chemistry and Technology Prague</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.vscht.cz/?jazyk=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.vscht.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Antonin</GivenName>
      <SurName>Mares</SurName>
      <EmailAddress>mailto:antonin.mares@vscht.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.anlupa.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Anlupa.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Anlupa.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Anlupa.cz enables to easily and automatically search for grants and tenders.</mdui:Description>
          <mdui:Description xml:lang="cs">Anlupa.cz umožňuje snadné automatické vyhledávání a sledování výzev na projekty výzkumu, experimentálního vývoje a inovací vyhlašovaných národními a zahraničními poskytovateli grantů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.anlupa.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.anlupa.cz/</mdui:InformationURL>
          <mdui:Logo height="531" width="413">https://www.anlupa.cz/assets/logo-anlupa-b2779ddbcb416bc438a76b01a8c956a88b47248c6d6e9bea4670e298f222e5ec.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.anlupa.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.anlupa.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.anlupa.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.anlupa.cz,O=Anlupa.cz,L=Praha,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDlzCCAn+gAwIBAgIJAKKU2Hj3YkIiMA0GCSqGSIb3DQEBCwUAMGIxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.anlupa.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.anlupa.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.anlupa.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Anlupa.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Anlupa.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Přístup k aplikaci.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Application access..</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">https://www.anlupa.cz/</md:ServiceName>
        <md:RequestedAttribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="1"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Anlupa.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Anlupa.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Anlupa.cz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Anlupa.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.anlupa.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.anlupa.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubomír</md:GivenName>
      <md:SurName>Jiřišta</md:SurName>
      <md:EmailAddress>mailto:lubomir.jirista@mamereseni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" cacheDuration="P1D" entityID="https://www.bookport.cz/">
    <SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">BOOKPORT</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">BOOKPORT</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital library subscription</mdui:Description>
          <mdui:Description xml:lang="cs">On-line knihovna pro každého</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.bookport.cz/o-sluzbe/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.bookport.cz/o-sluzbe/</mdui:InformationURL>
          <mdui:Logo height="48" width="300">https://www.bookport.cz/Content/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.bookport.cz/AccountSaml/SignIn/" index="0" isDefault="true"/>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.bookport.cz/saml2/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.bookport.cz/saml2/Logout"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.bookport.cz/saml2/Acs" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.bookport.cz/saml2/Acs" index="1" isDefault="false"/>
      <AttributeConsumingService index="0" isDefault="true">
        <ServiceName xml:lang="en">SP</ServiceName>
        <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Grada Publishing, a.s.</OrganizationName>
      <OrganizationName xml:lang="cs">Grada Publishing, a.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">BOOKPORT</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">BOOKPORT</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.bookport.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.bookport.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.citacepro.com/simplesaml/module.php/saml/sp/metadata.php/eduid-sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml2-logout.php/eduid-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml2-acs.php/eduid-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml1-acs.php/eduid-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml2-acs.php/eduid-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml1-acs.php/eduid-sp/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Citace.com</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Citace.com</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Citace.com</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.citace.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.citace.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Miroslav</md:GivenName>
      <md:SurName>Gajda</md:SurName>
      <md:EmailAddress>miroslav.gajda@gmail.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Web Pages</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Webové stránky Univerzity Karlovy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Charles University Web Pages</mdui:Description>
          <mdui:Description xml:lang="cs">Webové stránky Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cuni.cz/UKEN-1.html</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.cuni.cz,OU=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDUzCCAjugAwIBAgIJANgOYj114fZ8MA0GCSqGSIb3DQEBCwUAMEAxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/metadata.php/eunis">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDgzCCAmugAwIBAgIJAJUUB9kZ2vvyMA0GCSqGSIb3DQEBCwUAMFgxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEOMAwGA1UECgwFRXVuaXMxETAPBgNVBAMMCGV1bmlzLmN6MB4XDTE0MDgwNDEyMzYzNFoXDTI0MDgwMzEyMzYzNFowWDELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMQ4wDAYDVQQKDAVFdW5pczERMA8GA1UEAwwIZXVuaXMuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDbiGi4VF7KEREzve811FSUOEoC2WgSoGXmzyK8U7x76T2CYYOabAu1+ookBhDMy3OiqQQ+fBjIuZtVz/vaTIqtz/wjABvMq/5c/G+xcQIlwmV5Q5GTh1MIUF71miskI5913omNyB8ef2L/G4FIWwfDGAnH70qXy5Ncjg0J9L6/klmK4x2dEdNAmWHGzaSJRZRY2pOMnst6gq+YVkq0W9lErIwozYB+I+159CUgX8iZNbgqP+xvr48WEeFEyJaE/X8Qj1pizXu/AsoGVKXW+Uvmf4NRW4GDesLOvcYyRLHLnGdD6LQEzbXXxBFN0H5zO0Hqizc3fsZtHZSxKz8LnMMpAgMBAAGjUDBOMB0GA1UdDgQWBBQxN/FPLWD/BflEyc76/L5Yi0AV0zAfBgNVHSMEGDAWgBQxN/FPLWD/BflEyc76/L5Yi0AV0zAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBVvcBXZM2DGc7vBJv4/vfhJ55eu5jjoIVVQsdc4UpBN8GQt1oYwBdJRE2ViQpGoSEh8FNHBr+BwUuCj5pjDVhK5Mwdvn2EPbLXfh0fZPoq3G1DYFd9lJyxCC98ue0T6d7mAz0JKT5+AsB3IeF0bdYIYsOOl1/Cu2ABw7W982jXYV2Ic80Vj6gIMFDGc8Y2YU5bIoDMaiVWH4KqK5QwfLaDqcJSQ7DStYaSkYXaTz4sXG9dUUJDiuuQG94lAWYQg3B+KrOG40wzltnbvHkppC7BVmH+XWQHeN4hNXe215CtARh4DQYiB0Z0EO/g4AXmVvSlnOirkQP1aqTwMKt+Ke/v</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/eunis"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/eunis" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/eunis" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/eunis" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/eunis/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Eunis</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Eunis</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Eunis</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Eunis</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.eunis.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eunis</md:GivenName>
      <md:SurName>Webmasters</md:SurName>
      <md:EmailAddress>webmaster@eunis.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.felk.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Czech Technical University in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">České vysoké učení technické v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Password and security settings for FEE at Charles Square.</mdui:Description>
          <mdui:Description xml:lang="cs">Nastavení hesla a bezpečnosti pro areál FEL na Karlově náměstí.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.felk.cvut.cz/?setLang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.felk.cvut.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="53">https://idp2.civ.cvut.cz/idp/images/logo_cvut_40pix.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.felk.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.felk.cvut.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.felk.cvut.cz/shibboleth</ds:KeyName>
          <ds:KeyName>www.felk.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.felk.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAPdon7RYL2FNMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.felk.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">FEL ČVUT</md:OrganizationName>
      <md:OrganizationName xml:lang="en">FEE CTU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Fakulta Elektotechnická, České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Electrical Engineering, Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.fel.cvut.cz/cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.fel.cvut.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Votava</md:SurName>
      <md:EmailAddress>mailto:votavon1@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Samek</md:SurName>
      <md:EmailAddress>mailto:samekma1@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.helgilibrary.com/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Helgi Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Helgi Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Statistical data, charts and reports for over 180 countries and 500 companies in 32 sectors.</mdui:Description>
          <mdui:Description xml:lang="cs">Statistická data, grafy a reporty pro více než 180 zemí a 500 firem ve 32 sektorech.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.helgilibrary.com/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.helgilibrary.com/</mdui:InformationURL>
          <mdui:Logo height="100" width="98">https://www.helgilibrary.com/assets/images/layout/logo.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.helgilibrary.com/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.helgilibrary.com/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.helgilibrary.com/shibboleth</ds:KeyName>
          <ds:KeyName>www.helgilibrary.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.helgilibrary.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEOTCCAqGgAwIBAgIUKqNZvENn9YSb7H0HIUMrCp9BUycwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.helgilibrary.com/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Helgi Library s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Helgi Library s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Helgi Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Helgi Library</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.helgilibrary.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.helgilibrary.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Branis</md:SurName>
      <md:EmailAddress>mailto:petr.branis@gmail.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.jib.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.jib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.jib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>octopus.is.cuni.cz</ds:KeyName>
          <ds:KeyName>sfx.jib.cz</ds:KeyName>
          <ds:KeyName>www.jib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.jib.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIErzCCA5egAwIBAgIRALfceU01+KqtOdYCIYVMWYYwDQYJKoZIhvcNAQELBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.jib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.jib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.jib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.jib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.jib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.jib.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.jib.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.jib.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.jib.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.knihzdar.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Knihovna Matěje Josefa Sychry</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Library Mateje Josefa Sychry</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Knihovna Matěje Josefa Sychry</mdui:Description>
          <mdui:Description xml:lang="en">Library Mateje Josefa Sychry</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://opac.knihzdar.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://opac.knihzdar.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="203">https://opac.knihzdar.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">knihzdar.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://opac.knihzdar.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Knihovna Matěje Josefa Sychry</OrganizationName>
      <OrganizationName xml:lang="en">Library Mateje Josefa Sychry</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Knihovna Matěje Josefa Sychry</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Library Mateje Josefa Sychry</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.knihzdar.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.knihzdar.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.korpus.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Czech National Corpus</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Český národní korpus</mdui:DisplayName>
          <mdui:Description xml:lang="en">Czech National Corpus services.</mdui:Description>
          <mdui:Description xml:lang="cs">Služby projektu Český národní korpus.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.korpus.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.korpus.cz/</mdui:InformationURL>
          <mdui:Logo height="25" width="164" xml:lang="en">https://www.korpus.cz/img/CNC-sirka-01-col-RGB.png</mdui:Logo>
          <mdui:Logo height="25" width="153" xml:lang="cs">https://www.korpus.cz/img/CNK-sirka-01-col-RGB.png</mdui:Logo>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.korpus.cz/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.korpus.cz/privacy-policy</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.korpus.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.korpus.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.korpus.cz/shibboleth</ds:KeyName>
          <ds:KeyName>www.korpus.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.korpus.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEDCCAfigAwIBAgIJAMm9J1kRx+OZMA0GCSqGSIb3DQEBBQUAMBgxFjAUBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.korpus.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.korpus.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.korpus.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.korpus.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.korpus.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.korpus.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.korpus.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">Czech National Corpus</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Services of the Institute of the Czech National Corpus, Faculty of Arts, Charles University, Czech Republic</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of the Czech National Corpus, Faculty of Arts, Charles University, Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav Českého národního korpusu, Filozofická fakulta, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">ÚČNK FF UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚČNK FF UK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://ucnk.ff.cuni.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://ucnk.ff.cuni.cz/cs/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Vondřička</md:SurName>
      <md:EmailAddress>mailto:shibboleth@korpus.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/metadata.php/default-sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Levná knihovna</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Levna knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronické knihy a multimédia</mdui:Description>
          <mdui:Description xml:lang="en">Electronic books and multimedia</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.levna-knihovna.cz/page/static/co-je-levna-knihovna</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.levna-knihovna.cz/page/static/co-je-levna-knihovna</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.levna-knihovna.cz/page/static/osobni-udaje</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.levna-knihovna.cz/page/static/osobni-udaje</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">Levná knihovna</md:ServiceName>
        <md:ServiceName xml:lang="en">Levna knihovna</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Levná knihovna - přihlášení SAML 2.0</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Levna knihovna - SAML 2.0 authentication</md:ServiceDescription>
        <md:RequestedAttribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vydavatelství a nakladatelství Aleš Čeněk, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Ales Cenek Publishing Company</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vydavatelství a nakladatelství Aleš Čeněk, s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Ales Cenek Publishing Company</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.alescenek.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.alescenek.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukas</md:GivenName>
      <md:SurName>Jelinek</md:SurName>
      <md:EmailAddress>mailto:admin@aiken.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web 2.LF UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">2.LF UK website</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web 2.LF UK</mdui:Description>
          <mdui:Description xml:lang="cs">2.LF UK website</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.lf2.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.lf2.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stary.lf2.cuni.cz</ds:KeyName>
          <ds:KeyName>www.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.lf2.cuni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEfzCCA2egAwIBAgIRAL6zHeFuW7gruMtW9mGerE0wDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lf2.cuni.cz/Shibboleth.sso/saml2/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lf2.cuni.cz/Shibboleth.sso/saml2/ecp" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.lf2.cuni.czdpl8.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/metadata.php/liberouter">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Liberouter</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Liberouter</mdui:DisplayName>
          <mdui:Description xml:lang="cs">TMC Cesnet</mdui:Description>
          <mdui:Description xml:lang="en">TMC Cesnet</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.liberouter.org/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.liberouter.org/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml2-logout.php/liberouter"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml2-acs.php/liberouter" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml1-acs.php/liberouter" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml2-acs.php/liberouter" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml1-acs.php/liberouter/artifact" index="3"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">Liberouter</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TMC Cesnet</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="upn" Name="urn:oid:1.3.6.1.4.1.311.20.2.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Liberouter</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Liberouter</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Liberouter</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Liberouter</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.liberouter.org</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.liberouter.org</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>TMC</md:GivenName>
      <md:SurName>CESNET support</md:SurName>
      <md:EmailAddress>mailto:tmc@ro.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <q1:EntityDescriptor xmlns:q1="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.mecenat.eu/sp">
    <q1:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <q1:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:2.0:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mecenat</mdui:DisplayName>
          <mdui:DisplayName xml:lang="se">Mecenat</mdui:DisplayName>
          <mdui:Description xml:lang="en">Mecenat makes student life easier by providing discounts and benefits that are relevant to their studies.</mdui:Description>
          <mdui:Description xml:lang="se">Mecenat underlättar för de studerande genom att förmedla rabatter och förmåner som är relevanta under studietiden.</mdui:Description>
          <mdui:Logo height="140" width="250">https://www.mecenat.eu/img/federation-logo-2.png</mdui:Logo>
        </mdui:UIInfo>
      </q1:Extensions>
      <q1:KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIIEBTCCAu2gAwIBAgIJAPs0Eng4fXs9MA0GCSqGSIb3DQEBBQUAMIGYMQswCQYDVQQGEwJTRTEY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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </q1:KeyDescriptor>
      <q1:KeyDescriptor use="encryption">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIIEBTCCAu2gAwIBAgIJAPs0Eng4fXs9MA0GCSqGSIb3DQEBBQUAMIGYMQswCQYDVQQGEwJTRTEY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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </q1:KeyDescriptor>
      <q1:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</q1:NameIDFormat>
      <q1:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</q1:NameIDFormat>
      <q1:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.mecenat.eu/integrationservices/login.ashx" index="0" isDefault="true"/>
      <q1:AttributeConsumingService index="0" isDefault="true">
        <q1:ServiceName xml:lang="en">Mecenat</q1:ServiceName>
        <q1:ServiceName xml:lang="se">Mecenat</q1:ServiceName>
        <q1:ServiceDescription xml:lang="en">Mecenat makes student life easier by providing discounts and benefits that are relevant to their studies.</q1:ServiceDescription>
        <q1:ServiceDescription xml:lang="se">Mecenat underlättar för de studerande genom att förmedla rabatter och förmåner som är relevanta under studietiden.</q1:ServiceDescription>
        <q1:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </q1:AttributeConsumingService>
    </q1:SPSSODescriptor>
    <q1:Organization>
      <q1:OrganizationName xml:lang="en">Mecenat</q1:OrganizationName>
      <q1:OrganizationName xml:lang="se">Mecenat</q1:OrganizationName>
      <q1:OrganizationDisplayName xml:lang="en">Mecenat</q1:OrganizationDisplayName>
      <q1:OrganizationDisplayName xml:lang="se">Mecenat</q1:OrganizationDisplayName>
      <q1:OrganizationURL xml:lang="en">http://www.mecenat.eu</q1:OrganizationURL>
      <q1:OrganizationURL xml:lang="se">http://www.mecenat.se</q1:OrganizationURL>
    </q1:Organization>
    <q1:ContactPerson contactType="technical">
      <q1:Company>Mecenat</q1:Company>
      <q1:GivenName>Administrator</q1:GivenName>
      <q1:EmailAddress>mailto:it@mecenat.eu</q1:EmailAddress>
    </q1:ContactPerson>
    <q1:ContactPerson contactType="support">
      <q1:Company>Mecenat</q1:Company>
      <q1:GivenName>Customer</q1:GivenName>
      <q1:SurName>Service</q1:SurName>
      <q1:EmailAddress>mailto:customerservice@mecenat.eu</q1:EmailAddress>
    </q1:ContactPerson>
  </q1:EntityDescriptor>
  <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.mvk.cz/auth/saml2-idp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/library</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Masarykova veřejná knihovna Vsetín</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Masaryk Public Library Vsetín</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Masarykova veřejná knihovna Vsetín</mdui:Description>
          <mdui:Description xml:lang="en">Masaryk Public Library Vsetín</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://katalog.mvk.cz?locale=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://katalog.mvk.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="45">https://katalog.mvk.cz/auth/saml2-idp/organization-logo</mdui:Logo>
        </mdui:UIInfo>
        <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">mvk.cz</shibmd:Scope>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDVzCCAj+gAwIBAgIEX/Nb7jANBgkqhkiG9w0BAQsFADBcMQswCQYDVQQGEwJD
WjEXMBUGA1UECBMOQ3plY2ggUmVwdWJsaWMxEjAQBgNVBAcTCVBhcmR1YmljZTEP
MA0GA1UEChMGS1AtU1lTMQ8wDQYDVQQDEwZLUC1TWVMwHhcNMTkwODAyMTMyMzQz
WhcNNDYxMjE4MTMyMzQzWjBcMQswCQYDVQQGEwJDWjEXMBUGA1UECBMOQ3plY2gg
UmVwdWJsaWMxEjAQBgNVBAcTCVBhcmR1YmljZTEPMA0GA1UEChMGS1AtU1lTMQ8w
DQYDVQQDEwZLUC1TWVMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJ
jOfJyf0W2Xa+WHrJtfVPKHgFnkB0KcSUoJZwbuUfZws9QHjjLLoX7P+wJvlooMh/
Fxgq42jLIwe6khw4hepw433DZ74uuffXeZwv1V60Ny8VQJWGNnCC5CrrI2Ny+RZ1
m1OoEyktLUe9IQIijNQCHGeU4L2fIMVMYudyanP3N0c3rZV6b6TKPqCLqNJMaytO
pw1bR+mc3CYEx9b2SmkBAymWAtRzhGcz5qNId6fwNO47skCT3BUNQfv9Ggr5WuvW
Xm8TeXrtQi4KyJ+IdEzSK4j2xTVcuBaCLyhSYoGTj4rJ8XoZfT3UXjZnv5ivcWIp
3DLoOT/wEiHp58hj7WnpAgMBAAGjITAfMB0GA1UdDgQWBBTczhMuvAh3s8qtN9LP
b+D52Xw/LDANBgkqhkiG9w0BAQsFAAOCAQEAmypjHZx0uQY6OwrUKZig4ETP6vxm
ObyFxw75pdxPYcPIzFrMh/QkRaJnWs/mYd6qPiQeluRpjrJvchZxWXl3N+juAd6S
uJfopMvjophrR8X76av3HlBdETNXj7rf0sF26K7EaZI9OFaYRXNQQ3edLoJGdh9b
RoHNia6Or4cCsJHiNwXoK1OQmTJQvjGMK8dlhzUXtNaDXppKUsWvdQSHiNk0THoR
rYoBP5RH783N4PMq8EnSZztea+Dl5hCaw8ge0j3nJUl9GDZO2d4CvzL2DobkGSJt
yMzare/MvieEWcoF72/DBneOiu9YOsd163FCZbyBEIFdFeEnJ4abiON4UA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://katalog.mvk.cz/auth/saml2-idp/redirect-binding-sso"/>
    </IDPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Masarykova veřejná knihovna Vsetín</OrganizationName>
      <OrganizationName xml:lang="en">Masaryk Public Library Vsetín</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Masarykova veřejná knihovna Vsetín</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Masaryk Public Library Vsetín</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.mvk.cz</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.mvk.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Petr</GivenName>
      <SurName>Štefan</SurName>
      <EmailAddress>mailto:petr.stefan@kpsys.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.sitola.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Laboratory of Advanced Network Technologies</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Laboratoř pokročilých síťových technologií</mdui:DisplayName>
          <mdui:Description xml:lang="en">Resources provided by Laboratory of Advanced Network Technologies</mdui:Description>
          <mdui:Description xml:lang="cs">Zdroje poskytované Laboratoří pokročilých síťových technologií</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://sitola.cz/</mdui:InformationURL>
          <mdui:Logo height="135" width="135">https://sitola.cz/files/logo_sitola_24.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sitola.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sitola.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sitola.cz/Shibboleth.sso/muniidp"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>selfsigned</ds:KeyName>
          <ds:KeyName>sitola.cz</ds:KeyName>
          <ds:KeyName>www.sitola.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sitola.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIC4jCCAcqgAwIBAgIJAPVTzYNT7rppMA0GCSqGSIb3DQEBBQUAMBQxEjAQBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sitola.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sitola.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sitola.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sitola.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sitola.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sitola.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sitola.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.sitola.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.fi.muni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.sitola.fi.muni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sitola.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sitola.cz/Shibboleth.sso/SAML2/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sitola.cz/Shibboleth.sso/SAML2/ECP" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sitola.cz/Shibboleth.sso/SAML/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sitola.cz/Shibboleth.sso/SAML/Artifact" index="9"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova Universita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova universita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukáš</md:GivenName>
      <md:SurName>Ručka</md:SurName>
      <md:EmailAddress>xrucka@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.vsb.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VSB-TUO web</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VŠB-TUO web</mdui:DisplayName>
          <mdui:Description xml:lang="en">VSB-TUO web.</mdui:Description>
          <mdui:Description xml:lang="cs">VŠB-TUO web.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vsb.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vsb.cz/cs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vsb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.vsb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.vsb.cz/shibboleth</ds:KeyName>
          <ds:KeyName>wp2.vsb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=wp2.vsb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBDCCAmygAwIBAgIJAKxSPPLGzKXdMA0GCSqGSIb3DQEBCwUAMBUxEzARBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vsb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vsb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.vsb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vsb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vsb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.vsb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.vsb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">VŠB - Technical University of Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola báňská - Technická univerzita Ostrava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">VŠB - Technical University of Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">VŠB - Technická univerzita Ostrava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vsb.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vsb.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Rath</md:SurName>
      <md:EmailAddress>mailto:pavel.rath@vsb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://www.vutbr.cz/SSO/saml2/idp">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="true" errorURL="https://id.vut.cz/saml/module.php/core/error/ERRORURL_CODE?ts=ERRORURL_TS&amp;rp=ERRORURL_RP&amp;tid=ERRORURL_TID&amp;ctx=ERRORURL_CTX" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">vutbr.cz</shibmd:Scope>
        <shibmd:Scope regexp="false">vut.cz</shibmd:Scope>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Brno University of Technology</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vysoké učení technické v Brně</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider for Brno University of Technology.</mdui:Description>
          <mdui:Description xml:lang="cs">Identity Provider pro vysoké učení technické v Brně.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vut.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vut.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="116">https://www.vut.cz/logo_idp.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIFgzCCA2sCAQEwDQYJKoZIhvcNAQELBQAwgYQxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEmMCQGA1UECgwdQnJubyBVbml2ZXJzaXR5IG9mIFRlY2hub2xvZ3kxDTALBgNVBAsMBENWSVMxFjAUBgNVBAMMDUNBIElORlJBIFNBTUwwHhcNMjQwNTIxMDkzNzExWhcNMzQwMzMwMDkzNzExWjCBiTELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHDARCcm5vMSYwJAYDVQQKDB1Ccm5vIFVuaXZlcnNpdHkgb2YgVGVjaG5vbG9neTENMAsGA1UECwwEQ1ZJUzEbMBkGA1UEAwwSaWQudnV0LmN6L3NhbWwgSURQMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAqxb+z28X1BIBGLad7dhALloJcGik4IOkOg9uQkkUCpIbksbGrfA9byUlGaRUF3Uxdi3C4gqxe7RswwSNz/dAG7errcoEcc5YHAMCWa6iOPfoziFD/Rh7EwDAMoKi2UwIWzEM85I07sIKZuXVk6NAFIEAgTqYtmDsW+JtP+NTN/KDnFb2T0izKMy8BIU7WPXe/LlM1WZbOeyVGSBJb+5PtrLmKgm/JoG/xKoV7lU+vO1f0HZSVI41k/aRhKFqS0nSpl3sJypYjUDBKbxq/tZMrqCRhH6+EE7Ly+VJpRwkCHfY71k13Q3QfiVtoOosz+zyfffCnaet9TqahCcDsDm2VcEZuZ7w55n0KwZPxbJnW8eVYB7Tsr61nVgWXxiiymlCAu6Q1mTCw/hEQFKmipkksr0dpV6p6rGOK7ge0WQ7zP/Kf6Q0U/YVSNLYwnJ9pdIMygrNehTOWBUytSo6kyJrFq4drmfOJZFuOfIgxMGqBBuujZZPuXdPu8+wJLda1GAADfRdJsq0aqTPouFds5ZePJj0PfQCzTshn2HU+nCoWpLtXQLOs+loFbtTCf6hbGZp8v+4vzQlti11oa0HXxMFDvpkOWAK/dGtp56gbD96dmq9+3kSjW4GW5tOmV3tmZM+r3JHRgvdu5LlkJpQjQsUIegg5WdhXCMJcC52ASoKieECAwEAATANBgkqhkiG9w0BAQsFAAOCAgEADI6JnynwGDl3s/3dqi+pa+mj8bgV/7HLW63I3m/KcGoBRtIEyJ54kW/ttcMCu0h4qJl1b6nTlk4b/yOquGbQbK3+bEn0QWycPbQKB5O3eoq0nrftNGmNTn1v9sl7d/CVpdUG52mHV+7SJy+qu85PP+2VgrrSIiqTG0P/AJAVVKPo4E0icl8KfXco9UpI1G9/URUUnF5rT1F0+ggFA9VhTnWlE9nrqVhWSS2r62deSO7ANiUQE+I+Nt+/SaojK/mj4aQqdHo8rW5EEKzs8nJhr7903BFxZfdg2lWUYWDjUTV+owP+N7bhBgXmQo3nxc0OX2clIhwoRZt/O7q7QC23n9n5E8TL1ArTYfHj4h0NTGBaGaFu6CsFuAQtgPHm7LstOqdlcO0Y8B3hIDPoSN0aXwGrEavQMRataSIQt7lhlal83Ukhfq0DG6dXlGm5qnoja7jsUAFszHKBf1PnZXOPUVDX8M4H20/mXqQyn2HcPSlgcQEh5cO61gmFzmmnT7oEEPENCDai2fcjKrwi6madu/u7I4koIfee62V0YttglQGdSXb6tzMPCZGfiw9WFlrCSoJmwG1flz45ZeDc4MLyUi/syjCVm29EXWCYDAVKIziZ8pBGJAWs5Y0T5dYHDZVJKK+TwMancB4+5APyCCYyc9LtSL+w0Qe4rUXCS7x6RuE=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.vut.cz/saml/module.php/saml/idp/singleLogout"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.vut.cz/saml/module.php/saml/idp/singleSignOnService"/>
    </md:IDPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vut.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>VUT</md:Company>
      <md:GivenName>CVIS</md:GivenName>
      <md:SurName>Oddělení interních systemů</md:SurName>
      <md:EmailAddress>mailto:portal@vut.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:Company>VUT</md:Company>
      <md:GivenName>CVIS</md:GivenName>
      <md:SurName>Oddělení páteřní sítě</md:SurName>
      <md:EmailAddress>mailto:abuse@vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.vyzkumne-infrastruktury.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web www.vyzkumne-infrastruktury.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web www.vyzkumne-infrastruktury.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vyzkumne-infrastruktury.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vyzkumne-infrastruktury.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vvi.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vvi.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vvi.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIULfZzGD7FXq9h2pUHuzcn4mSGXREwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web www.vyzkumne-infrastruktury.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web www.vyzkumne-infrastruktury.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="entitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.vyzkumne-infrastruktury.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www-sp</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www-sp</ds:X509SubjectName>
            <ds:X509Certificate>MIICnjCCAYYCCQC2NfTD2+SxiTANBgkqhkiG9w0BAQUFADARMQ8wDQYDVQQDEwZ3
d3ctc3AwHhcNMTExMjA4MTQwMDAwWhcNMjExMjA5MTQwMDAwWjARMQ8wDQYDVQQD
EwZ3d3ctc3AwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCy4a5KvcSv
fVzx/EZVCtDEK3pOA1A1JpOu8CXLzk6o7hOtT45Wownx0RTUWskChT9veD13mJES
MCBMYXZce4H8w83w8ma0DOYzbQP9RIzq8h6KQN+b7Tos8S5DY4GZTEZ5o78oE3K5
lwZsI4judZABnQMvxPienRol7GY5+oRhiPZUzY7zYc9aZMBIykCzDDH319+JPM2j
8vIfsRhGuqPVqGZvNP5baLQPyJMHLbQv/xNseab6+1VhaX3ixgH5yVWOt3RRPWh9
73IXvr5RAV1C99kcAXgRH1P4ADYYveIBSNADNvL/9LyICvfExBwc8qLedeyDAKQg
rpbcoDN74hh5AgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAJLM6I/0oGJGOjTBGwNy
Vhkl5mGkIbYE2a4lGZcGXYRcUWs+A5SQv5UvIoboA7e0V7rg4Pz8HbB+p68eFpvR
Iss6I+A4Kocvpqd3OgcHXwJPblwEQWGlSm++ij4zgjJfGcZ13N71apBi+M8XOsPQ
47lPxuqeI21XN/Q9c5wX0GxmXiLWuIcW2YZ2vwI9xpCMsPxLaGYNoBWC7lENbZId
3RA9Gxc1SxUXu9Sy/SWZmPf2ntaINzqvHWOljO2GJgnB8m7NLwq3qZdJgQUY3olj
fcE0XrOHmBXE6ZJPJwC8rqaGmAebZetE6ZnOpdbtmUZGpiomeBD8W7bPueUvVJ0x
v4g=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ces.net/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <GivenName>Vladimir</GivenName>
      <SurName>Trestik</SurName>
      <EmailAddress>Vladimir.Trestik@cesnet.cz</EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.zubnilekarstvi.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://zubnilekarstvi.cz/Shibboleth.sso/zubnilekarstvi"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zubnilekarstvi.cz/Shibboleth.sso/zubnilekarstvi" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://zubnilekarstvi.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zubnilekarstvi.cz/Shibboleth.sso/Login" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://zubnilekarstvi.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zubnilekarstvi.cz/Shibboleth.sso/safeid" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.zubnilekarstvi.cz</ds:KeyName>
          <ds:KeyName>zubnilekarstvi.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=zubnilekarstvi.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIJAMhMZxpmWwGVMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://zubnilekarstvi.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>smid@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ziskej-demo.techlib.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Ziskej-demo NTK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Získej-demo NTK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Systém pro doručování dokumentů -- DEMO VERZE.</mdui:Description>
          <mdui:Description xml:lang="cs">Document delivery system -- DEMO VERSION.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ziskej-demo.techlib.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ziskej-demo.techlib.cz/</mdui:InformationURL>
          <mdui:Logo height="165" width="91">https://www.techlib.cz/public/assets/images/logo-ntk.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://ziskej-demo.techlib.cz/shibboleth</ds:KeyName>
          <ds:KeyName>ziskej-demo.techlib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ziskej-demo.techlib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENDCCApygAwIBAgIJAOuZv6hBj/pwMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technická knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.techlib.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.techlib.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Pokorný</md:SurName>
      <md:EmailAddress>mailto:jan.pokorny@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ziskej.techlib.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Document Delivery NTK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Získej NTK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Informační systém pro doručování dokumentů.</mdui:Description>
          <mdui:Description xml:lang="cs">Document delivery system.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ziskej.techlib.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ziskej.techlib.cz/</mdui:InformationURL>
          <mdui:Logo height="165" width="91">https://www.techlib.cz/public/assets/images/logo-ntk.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIJAMb6cqK69MTCMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML/POST" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technická knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.techlib.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.techlib.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
</EntitiesDescriptor>