<?xml version="1.0" encoding="utf-8" standalone="no"?><EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="eduid_sp" Name="https://eduid.cz/metadata" validUntil="2026-07-09T23:53:01Z" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd"><ds:Signature>
<ds:SignedInfo>
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<ds:Reference URI="#eduid_sp">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<ds:DigestValue>IQEocWk12esISG08KEw2UGtcTqMox7z4wGwnbreZbHc=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>
NH8WI9WVH1kbkDibAIT9o69COUG6iuxA1w1TVhHk5PuUG9Ekcx2rn1sXR71vHkNdN7+rkAxmkJFk
0m2qzw9XQp5rHgDizLzyEX1LST7OsybQ2R9StKpFAIfOCeFOtnyoeTX95s4zj2Q3PLsxOvR94M4d
dbb04j0IbKZe/jfhxXbZcZBTtv5xxapXhLCovS61n3kKBTg1NiJQN3o8dn4paDRZ8coHNavdR104
KCWRkDIZ15Ebw4PwsxVIrFhG/ZNNgSLcsB+CFwXt3yqQrWN17Va4x81aNN5QsCHEveH0+7Ack7O9
xOUk6q7kqBWA1Sgvo1sjgCQSNtkOJPVWLXTE5Q==
</ds:SignatureValue>
<ds:KeyInfo>
<ds:KeyValue>
<ds:RSAKeyValue>
<ds:Modulus>
/VoPIzznnB5h7aQhLDaiZ0B12a+mwCiF1BQ2YXikagIuD7zKOnJVpJd7IzB26pnPiuB55BpteOOQ
nccCZ5h7Ch3J2Kz/2atE4j+W8nYUaZ2t3PmAl9GpRZcKKQ5tz5fTXf3wajB144oQrB2GTnDOVGNs
Vv8fsJYU1941UlDv1ioaty42ntJvX9/UewzgMDHGg2PtvvQZSMfw8+/M/yzTlRG84cS2sbduT8wO
08NXDH2dOy3hEesNjqEAUvJGWOWjkSzor91UbBfSx+J9Dhh8eBsW/ELC/Px9cXHH1fmsHqOBPbGU
RixedOjv/gOeu3UFnYuG+TqHbZ3focxH59nCNQ==
</ds:Modulus>
<ds:Exponent>AQAB</ds:Exponent>
</ds:RSAKeyValue>
</ds:KeyValue>
<ds:X509Data>
<ds:X509Certificate>
MIIDDDCCAfQCCQDBU2aGFMc1pzANBgkqhkiG9w0BAQsFADBHMRIwEAYKCZImiZPyLGQBGRYCY3ox
FTATBgoJkiaJk/IsZAEZFgVlZHVJRDEaMBgGA1UEAwwRbWV0YWRhdGEuZWR1SUQuY3owIBcNMjAx
MjAxMDAwMDAwWhgPMjA1MDEyMDEwMDAwMDBaMEcxEjAQBgoJkiaJk/IsZAEZFgJjejEVMBMGCgmS
JomT8ixkARkWBWVkdUlEMRowGAYDVQQDDBFtZXRhZGF0YS5lZHVJRC5jejCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBAP1aDyM855weYe2kISw2omdAddmvpsAohdQUNmF4pGoCLg+8yjpy
VaSXeyMwduqZz4rgeeQabXjjkJ3HAmeYewodydis/9mrROI/lvJ2FGmdrdz5gJfRqUWXCikObc+X
01398GowdeOKEKwdhk5wzlRjbFb/H7CWFNfeNVJQ79YqGrcuNp7Sb1/f1HsM4DAxxoNj7b70GUjH
8PPvzP8s05URvOHEtrG3bk/MDtPDVwx9nTst4RHrDY6hAFLyRljlo5Es6K/dVGwX0sfifQ4YfHgb
FvxCwvz8fXFxx9X5rB6jgT2xlEYsXnTo7/4Dnrt1BZ2Lhvk6h22d36HMR+fZwjUCAwEAATANBgkq
hkiG9w0BAQsFAAOCAQEAESUXCctK+KTvJ2xkKNuQ41GXoLQRKWi0iLcBLJa7IWFM+2mXHrK92p4O
MQB+wOxTYMBRHlPWd8fY5xAFS9Jeeh0hAn72vTJnRzNrFYv8fHiOBOOdoK8hKHAcUavg8+6ukOoS
67en0fHfJhHBMq1TZ9C3tXS29dLNz0U7OZLr6ejn0B+KvEsWj2++EaIP/p71cm64LYVZxPsMWhZg
xeJomC01OcEdibLgPguX6mNMKdsh8H7v0zZIRlWvIx9rkgzTW3TlGQn3EXUHZX3irx/tnnbEtcfy
OAI/o7OXu4N9I7m2qrIxx8bdDlfNgWoN187daQLATcMTRpar7HFd4hKJWg==
</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</ds:Signature>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ada.tul.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">A°D°A</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">A°D°A</mdui:DisplayName>
          <mdui:Description xml:lang="en">Creative software Virtual futorologist A°D°A</mdui:Description>
          <mdui:Description xml:lang="cs">Kreativní software Virtuální futuroložka A°D°A</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ada.tul.cz/about.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ada.tul.cz/about.html</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://ada.tul.cz/img/icon.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ada.tul.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ada.tul.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ada.tul.cz</ds:KeyName>
          <ds:KeyName>https://ada.tul.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ada.tul.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDjCCAnagAwIBAgITb3tcc6mvRAktxzKuQGuAA3Gd7jANBgkqhkiG9w0BAQsF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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ada.tul.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ada.tul.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ada.tul.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ada.tul.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ada.tul.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ada.tul.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">A°D°A</md:ServiceName>
        <md:ServiceName xml:lang="cs">A°D°A</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Creative software Virtual futorologist A°D°A</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Kreativní software Virtuální futuroložka A°D°A</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Technical University of Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Srb</md:SurName>
      <md:EmailAddress>mailto:radek.srb@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://adapt.cjv.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>adapt.cjv.muni.cz</ds:KeyName>
          <ds:KeyName>www.adapt.cjv.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=adapt.cjv.muni.cz,O=Masarykova univerzita,L=Brno,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGrTCCBZWgAwIBAgIQD0IHAuAqIh/OV2K5hR8U+DANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://adapt.cjv.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Libor</md:GivenName>
      <md:SurName>Šťěpánek</md:SurName>
      <md:EmailAddress>cjv@cjv.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Kurowski</md:SurName>
      <md:EmailAddress>technici@cjv.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://agata.suz.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://agata.suz.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://agata.suz.cvut.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Czech Technical University in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">České vysoké učení technické v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Canteens of CTU in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Menzy ČVUT v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.suz.cvut.cz/en/the-facilities-administration-department-of-the-czech-technical-university-in-prague</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.suz.cvut.cz/sprava-ucelovych-zarizeni-cvut</mdui:InformationURL>
          <mdui:Logo height="40" width="53">https://idp2.civ.cvut.cz/cvutid/logo_cvut_40pix.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>agata.suz.cvut.cz</ds:KeyName>
          <ds:KeyName>https://agata.suz.cvut.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=agata.suz.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUW9fhpX3oGKA8iHpystxeRc+EWWswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://agata.suz.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://agata.suz.cvut.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cvut.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Kaňovský</md:SurName>
      <md:EmailAddress>mailto:admin@suz.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ais-ap1tst.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Testovací verze AIS Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University AIS testing</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Testovací verze AIS Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Charles University AIS testing.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ais-ap1tst.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ais-ap1tst.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDZzCCAk+gAwIBAgIJALFAcvH7jDouMA0GCSqGSIb3DQEBCwUAMEoxCzAJBgNV
BAYTAkNaMRswGQYDVQQKDBJVbml2ZXJ6aXRhIEthcmxvdmExHjAcBgNVBAMMFWFp
cy1hcDF0c3QuaXMuY3VuaS5jejAeFw0xOTA3MjYxMzQ4MDdaFw0zOTA3MjExMzQ4
MDdaMEoxCzAJBgNVBAYTAkNaMRswGQYDVQQKDBJVbml2ZXJ6aXRhIEthcmxvdmEx
HjAcBgNVBAMMFWFpcy1hcDF0c3QuaXMuY3VuaS5jejCCASIwDQYJKoZIhvcNAQEB
BQADggEPADCCAQoCggEBAKW66NEEJh5QFXsS9panu6Tt/AU9D0z5SXhu4S3S/l3D
/NmM1TomP2S+8Zd8OzR6ZRdlhWw4ltb+AvP31pLbb99EJuEWLbAxZoE9vTpaL4oS
MSrIGBaxl8Jaam7EXpuprVXQFU0NEOk9VA2MIkc2LPC9Xw+MLYy7WaFpmWtmFl8A
6hLd3GWljAQJ1u0+NSBLQpLbJFg9v0HYXL24aLeUcp/+a10Ud+mM92ez4l3JksWY
B3vYRIVAu6jfhVj94gAnEYrxzc3q3uUVSbkK3wBkyZkkmQLVQdtgE5BVCvHeTalX
woEn6qhctcbHjGy2pNDr2udCZLbeh2wPy6JbtpNmoqsCAwEAAaNQME4wHQYDVR0O
BBYEFKIakrwYmVAztqSWzASBx/SKx7zoMB8GA1UdIwQYMBaAFKIakrwYmVAztqSW
zASBx/SKx7zoMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAA4ZoUyK
yVYOwMoOOmicvUOj7eAXsxN8eTebe8mbVNF6zFuL2iGnbhJHzUfY5P7M0LU4QCc9
IFxWNDgpRG4DP8DHR5WErd1h9dnnwbB5NgnG/bT/thMBvVHb4WOgDjzNhtk9w5f+
q4V1pzukGpEzaU3R0HrR4l6+BtC5LbpAdrkemGb0j8TAF4nlumeFY2Q/091dylMw
QGZ+kg0SYmLzibG7vlkMDGeCvSesZWQEa1uU2vf38pusd+KVVyGDvNkglW4cq4bc
CQ3r1FWTuJ9x40t2K5xfKr1rGrw9AaveZf7kerPHxU8q/X5PxFOb8Luo52/0jhGE
vufOy83exhU3R7A=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ais-ap1tst.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ais.udauk.cuni.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Archivní informační systém Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Archival Information System of Charles University</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Informační systém Archivu UK pro výběr, správu, uložení, zpracování digitálních a analogových archiválií.</mdui:Description>
          <mdui:Description xml:lang="en">Information system of Archive of Charles University for appraisal, management, storage, and processing of both digital and analog archival materials.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://udauk.cuni.cz/ARCH-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://udauk.cuni.cz/ARCHEN-1.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ais.udauk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ais.udauk.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDXzCCAkegAwIBAgIJAJAUxOGbNq2rMA0GCSqGSIb3DQEBCwUAMEYxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ais.udauk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://albert.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>albert.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=albert.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUIafqdqe/m4+/POItwitS1PP0U5EwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>albert.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=albert.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUQbELimriAzXdPaO3QdwXMiMkxmIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://albert.vm.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://alchemist.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Alchymista</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Alchemist</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Interní build server a systém pro podporu projektů</mdui:Description>
          <mdui:Description xml:lang="en">Internal build server and project support system.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://alchemist.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://alchemist.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://alchemist.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://alchemist.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>alchemist.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://alchemist.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=alchemist.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIJANHGhmneRF1oMA0GCSqGSIb3DQEBBQUAMB4xHDAaBgNV
BAMTE2FsY2hlbWlzdC5jZXNuZXQuY3owHhcNMTcwNTI5MDkzMDUwWhcNNDcwNTIy
MDkzMDUwWjAeMRwwGgYDVQQDExNhbGNoZW1pc3QuY2VzbmV0LmN6MIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmZ941ACW2ky4k9CCvPT7HJDCD3KAtNsF
wMuUpAPOZL9JOgZ8K8vEYaS3P2IPsXoZhs7fu3ZJ/tqpHNNTc2nhpJJoNzP7toh7
Ye9dLtqUbs3d0Jwyv7hAw6z9gUzxcKmKkBSfdM64kbPvkNW70khLy7MZZ4EIRSfG
PUJmIxgrX6Jy5/AQ3zjlwRstXXFKdN4JJsfbyv5Qd1DzpJT+0x3JZcfxg30TmPbT
nQr54euLjfRZ8g2B2b/RT9YeAduEWBtFJdP4z+XVcNAkUtNeeVo+dxm0a9Cc/sDY
Met6Yoz4tJ5zeqh/P8+7JHe20cpYQxDC+ca2/0YQ3rMtsugAYH1gyQIDAQABo2kw
ZzBGBgNVHREEPzA9ghNhbGNoZW1pc3QuY2VzbmV0LmN6hiZodHRwczovL2FsY2hl
bWlzdC5jZXNuZXQuY3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUtgRm5lY81XRvGjoB
4i6+JgFzj7EwDQYJKoZIhvcNAQEFBQADggEBADDgYqmmuP9DxF1m1qCaI1V7ALIc
qA9C3k8aPlLI3AkHURrHVa6neyvgyNo6FRlDuCzQC1fUDBxYvvHjQHLVwtZMmjN4
8JhxUNBDssE9VuoP/NQ4737ZZ5yPooG/eQXZ9+4qqS5FDkAG6Hs8FcADzQ+uMoNk
60q/+H6CdIcBS9Umd8lQEVdOVLwF86a3XiFYKrHzZJ0GImJhICgvpzencxtc50I/
z8nbBim3q7mt1M+U7cuA0BPQUln1BlPKqOFHUTRd8n5nP2PsKzL3f+qNQ/ZSn8SJ
Y5yZrp46khEM1OiyFs6bfB4qLbH5rfbVeZuN460yswv7GXwyj6MifofsbeY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://alchemist.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.ten.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://alchemist.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, Síť národního výzkumu pro ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET, NREN for Czech republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Mach</md:SurName>
      <md:EmailAddress>mailto:jan.mach@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kacha</md:SurName>
      <md:EmailAddress>mailto:pavel.kacha@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://anketa.uhk.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">anketa.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">anketa.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://anketa.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://anketa.uhk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://anketa.uhk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-prod02.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-prod02.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBjCCAm6gAwIBAgIJAM/tASqVr/8gMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV
BAMTFXNydi1wcm9kMDIudXAudXBvbC5jejAeFw0yNDA4MDkxMDI1MjhaFw0zNDA4
MDcxMDI1MjhaMCAxHjAcBgNVBAMTFXNydi1wcm9kMDIudXAudXBvbC5jejCCAaIw
DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAPCLBeFhEL/OgGnsA5kQGMOmR64u
LrceEfwsEq6O/+C9BP/igmsKZgMqhcagChbXZ0Nb8tJI6ZnU0YcKcE6C4oMmqKpY
eJObQFNJqZqAagjGK674ojIhzQofq9Ag9x/8k0/zEt1L2bAtnWN7tt2ATIjuGMF3
azhD1xZc3cy9QjnbjH/tEggHEokPv5uZYa5KUFiXq97nM73hMdMUTLV6A10FM7zB
fzVe/ofP/ahtqAr93qpsRfdL8yltlHvWftc9Alegv7Ezi6isXe4iv+OEeoLyHd63
xQDgjXdfFbrVpgO7iwV3aGKrCoSKwrasVTFF4vpP3jepVJkIjHCQDK61K+D3PAe3
gz1tKDMkt48aNiohD1ckLqgEiir32t+JdI3SZyCF4z542TeEK8YkZg0vIkMmoA6E
wjhdUzR7lCQSl+IJ6A7MFoXKBpXdFav3Cd11YIR4ZpMKFJU2omWVHmFeSRcmdiD3
80TBlGx4YUeK5TL6+GVaziuqtxNkJM6nmdmNFQIDAQABo0MwQTAgBgNVHREEGTAX
ghVzcnYtcHJvZDAyLnVwLnVwb2wuY3owHQYDVR0OBBYEFHdrjSDtItAVvZPitDFI
9ugXlfZQMA0GCSqGSIb3DQEBCwUAA4IBgQB4PGJZ8d2n8jHj//bLUNs977m4g5y3
O5kUcfvz53/+JRepwBxqGLTof2xwdOprpfqk8AGA+RqXrczJKW2K6vjYoGiDLEp+
pB68d3Gsy+ibq0RLfuMvYI0Xqr/GQrge5fvGwXaVgPfr6s4b5S7qPw8KgQIWD4U2
4mSup3RUKlTX6Edwt3G41HMKkiVvXgQprAOe4+71GkqbnyhJiOy3Wnev4udS8ScC
yv8ph620joSJlp07k1ivPJSwkj8+6hp956mSY7heJEmLTbuZlWGaWOmhh3y45J6F
QmkLp6rydnl1uhYg7AMHZuNXVnTM8k6It6vjy4hVofk/rH3yWrLFT+Jpd8XrOvp9
jfhRBaKcuvvDwaZAkPx+etqlkTXK3/D3b7Cy81uStY7P8fHsqaSQl1alBSeds/1i
ivl/I1j++D6YakiNRG63Yru3UVxX2Ct2/0iqv9rgnxHXnVvU7rPw4vH5aV788sGf
Btc/OEWMX+mIa25mCuzMWDSYX7hBlvdzwM4=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.uhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.uhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://anketa.uhk.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Hep</md:SurName>
      <md:EmailAddress>mailto:frantisek.hep@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://anketa.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">anketa.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">anketa.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://anketa.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://anketa.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://anketa.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://anketa.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-prod02.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-prod02.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBjCCAm6gAwIBAgIJAM/tASqVr/8gMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://anketa.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://anketa.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://anketa.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Hep</md:SurName>
      <md:EmailAddress>mailto:frantisek.hep@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://ansible-eduid.inovatika.dev/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital library of the Regional Library in Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius - Digital Library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Krajské knihovny v Pardubicích</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kfbz.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>rDXFJ6-tm_wkPLNikui322wl1dQRjxDpRf35WzFqlr8</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="en">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Kfbz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Kfbz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.kfbz.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.kfbz.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Goláň</md:SurName>
      <md:EmailAddress>mailto:r.golan@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Barbora</md:GivenName>
      <md:SurName>Horáková</md:SurName>
      <md:EmailAddress>mailto:b.horakova@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://aperture.ceitec.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Laboratory information management system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Systém správy informací o laboratoři</mdui:DisplayName>
          <mdui:Description xml:lang="en">Access to laboratory information management system</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup k systému správy informací o laboratoři</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ceitec.eu/cryo-electron-microscopy-and-tomography-core-facility/cf94</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ceitec.cz/cryo-electron-microscopy-and-tomography-core-facility/cf94</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>aperture.ceitec.muni.czg</ds:KeyName>
          <ds:KeyName>https://aperture.ceitec.muni.cz//shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=aperture.ceitec.muni.czg</ds:X509SubjectName>
            <ds:X509Certificate>MIIERzCCAq+gAwIBAgIUa4opqblBvpAO/IqkHLEg1gPhAxswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aperture.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Laboratory Information Management Systeme</md:ServiceName>
        <md:ServiceName xml:lang="cs">Systém správy informací o laboratoři</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Access to laboratory information management system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup k systému správy informací o laboratoři</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CEMCOF</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CEMCOF</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CEMCOF</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CEMCOF</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ceitec.eu/centralni-laborator-kryo-elektronova-mikroskopie-a-tomografie/cf94</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ceitec.cz/centralni-laborator-kryo-elektronova-mikroskopie-a-tomografie/cf94</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nováček</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@ceitec.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://app.permonik-test.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://app.permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://app.permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://app.permonik-test.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik-test.nkp.cz/api/login/sso"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik-test.nkp.cz/api/login/sso" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>app.permonik-test.nkp.cz</ds:KeyName>
          <ds:KeyName>https://app.permonik-test.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=app.permonik-test.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPjCCAqagAwIBAgIUbgPtddUlH0J26bPrtlBOAO7TdrUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://app.permonik-test.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://app.permonik.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://app.permonik.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/api/login/sso"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/api/login/sso" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>app.permonik.nkp.cz</ds:KeyName>
          <ds:KeyName>https://app.permonik.nkp.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=app.permonik.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIJANdJewWfVhYhMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://atlases.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Atlases - Pathology Images</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Atlases</mdui:DisplayName>
          <mdui:Description xml:lang="en">Collection of high resolution histological images</mdui:Description>
          <mdui:Description xml:lang="cs">Kolekce histologick\u00FDch obr\u00E1zk\u016F ve vysok\u00E9m rozli\u0161en\u00ED.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://atlases.muni.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://atlases.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://atlases.muni.cz/en/img/_logo80px.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/atlases"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/muni"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduid" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduidnew"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/WAYF/eduidnew" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/DS" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/DS/eduid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/DS/eduid" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/wayfdk"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/rediris"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/DS/dfnaai"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/DS/dfnaai" index="5"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/idemgarr"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/idemgarr" index="6"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/surf"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aaieduhr"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/eduidhu"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/eduidhu" index="7"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aconet"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/aconet" index="8"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/renater"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/renater" index="9"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/upki"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/upki" index="10"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/chimarrao"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/chimarrao" index="11"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aaf"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/aaf" index="12"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/pionier"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/pionier" index="13"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/arnes"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/arnes" index="14"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/switch"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/switch" index="15"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/tuakiri"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/tuakiri" index="16"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/edugate"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/edugate" index="17"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/gridp"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/gridp" index="18"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/sifulan"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/sifulan" index="19"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/safeid" index="20"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/cofre"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/cofre" index="21"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/colfire"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/colfire" index="22"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/minga"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/minga" index="23"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/aaiarn"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/aaiarn" index="24"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/kafe"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://atlases.muni.cz/Shibboleth.sso/kafe" index="25"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://atlases.muni.cz/Shibboleth.sso/elixir"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>atlases-selfsign-2018</ds:KeyName>
          <ds:KeyName>atlases.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=atlases.muni.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDBDCCAewCCQCb6/bGA0ev4jANBgkqhkiG9w0BAQsFADBEMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atlases.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://atlases.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://atlases.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pictures-mu.atlases.muni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://atlases.muni.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://atlases.muni.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://atlases.muni.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Atlases - Pathology Images</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Collection of high resolution histological images from Masaryk University, Brno.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.muni.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukas</md:GivenName>
      <md:SurName>Hejtmanek</md:SurName>
      <md:EmailAddress>mailto:xhejtman@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky</md:SurName>
      <md:EmailAddress>mailto:lubos.kopecky@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Atlases</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:atlases@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://attributes.eduid.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/sp-group/mojeid-edu</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Attribute Viewer</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Zobrazovač atributů</mdui:DisplayName>
          <mdui:Description xml:lang="en">A service displaying attributes released by your Identity Provider.</mdui:Description>
          <mdui:Description xml:lang="cs">Služba zobrazující atributy uvolněné Vaším poskytovatelem identity.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://attributes.eduid.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://attributes.eduid.cz/</mdui:InformationURL>
          <mdui:Logo height="94" width="200">https://attributes.eduid.cz/img/eduidcz.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://attributes.eduid.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://attributes.eduid.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>attributes.eduid.cz</ds:KeyName>
          <ds:KeyName>https://attributes.eduid.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=attributes.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIJAN6qY01fr+EJMA0GCSqGSIb3DQEBBQUAMB4xHDAaBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://atributy.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attributes.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attributes.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://atributy.eduid.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/dsadev/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://attributes.eduid.cz/Shibboleth.sso/SAML2/ECP" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Zobrazovač atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy uvolněné Vaším poskytovatelem identity.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="samlPairwiseID" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="samlSubjectID" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://au.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">File sharing service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Služba pro sdílení souborů</mdui:DisplayName>
          <mdui:Description xml:lang="en">File sharing service</mdui:Description>
          <mdui:Description xml:lang="cs">Služba pro sdílení souborů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://au.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://au.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://au.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://au.cesnet.cz/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://au.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>au.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://sluzba.organizace.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=au.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJALa1wOiu5p5RMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
BAMTDGF1LmNlc25ldC5jejAeFw0xODEyMTQwOTI2MjZaFw0yODEyMTEwOTI2MjZa
MBcxFTATBgNVBAMTDGF1LmNlc25ldC5jejCCASIwDQYJKoZIhvcNAQEBBQADggEP
ADCCAQoCggEBALn2AkruaSDFTbnmZWpCgIwbrZ4BCHhiGHzGzGOR4TWGFwTtUtA9
cOiZMZvsH3j8bNQUhKu6q0yZdGBPMR8RNsh1OHiQrfNBiES3UvaF6a3MQ/kGYz/j
mQYvr80QXUBdqdQmZJq+d/qKrdPsvWLFvk8gTjn9dPuPoL/Q3bQA0zJk4I460sK2
I3eelGsrPSQdo4HWeS/aK66vDD2fkkGzYrPcr69rajUMlZ0w9cCpag0gii9gG6Ue
Rxhb4mkqSJb7Pd/BzZSFq/WkrFa3TZ/HVfd0UIWXuo5d86n3NvzU8Ar7G3O87Lin
6RxL3syBr4FG4Kozwyk6uwn1H4q/VPSPyU0CAwEAAaNjMGEwQAYDVR0RBDkwN4IM
YXUuY2VzbmV0LmN6hidodHRwczovL3NsdXpiYS5vcmdhbml6YWNlLmN6L3NoaWJi
b2xldGgwHQYDVR0OBBYEFINEQrLctrhouZiDTqvHiOsl4+GhMA0GCSqGSIb3DQEB
BQUAA4IBAQAoqTUaydhTpFu38Qej1T/yui25mhHLid28JjdCX0f5HaACXetqJjJ2
tmUPbIJzD3eG9Jnx5fHDusMQOyJIVgkABAVaUmEvEEm2gEY1HdpZdIMt5pqQpBZK
eL5ZEoQxR0wG/IsnizRSvt8csJuICRkJwVGAURszWPmdPIoEfteA2CO0l9bwHdYe
MRXb4eRS1/+nlqws9sh7GM7dXCWot+zQPMG7x2zbZApWXIsq9fCZQ5LS3D7e0P+x
Vbz2dcJPT4OQl1W7wmxTTsC3E/0MKIKqfI4mOpxUY8CT2JEEbMikHJdZS+vyWB7V
5XGoWN4FbwH9aYCsleDF0Y3el+/wvlz6</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://au.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://au.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://au.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://au.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://au.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Projects support</md:ServiceName>
        <md:ServiceName xml:lang="cs">Podpora projektů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service for projects support (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba slouží pro podporu projektů (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://aurochs.is.cuni.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Interní institucionální repozitář publikační činnosti Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University Internal Research Publications Repository</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Institucionální repozitář publikační činnosti UK. Repozitář slouží pro interní potřeby Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Institutional repository of research outputs produced by Charles University authors. For internal use within Charles University.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://aurochs.is.cuni.cz/page/about?locale-attribute=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://aurochs.is.cuni.cz/page/about?locale-attribute=en</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>aurochs.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=aurochs.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDbzCCAlegAwIBAgIUZ3g2SKAyIng5B9YKXmP3bZY0grEwDQYJKoZIhvcNAQEM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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://aurochs.is.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://auror.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Auror</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Auror</mdui:DisplayName>
          <mdui:Description xml:lang="en">Auror scanner</mdui:Description>
          <mdui:Description xml:lang="cs">Auror skener</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://auror.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://auror.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://auror.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auror.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>auror.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://auror.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=auror.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUdkUYR/iYZ/mcbIwmKUnBgFITP6gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auror.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auror.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auror.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Auror</md:ServiceName>
        <md:ServiceName xml:lang="cs">Auror</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Auror - network security scanner</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Auror - síťový bezpečnostní skener</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, interest association of legal entities</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jaroslav</md:GivenName>
      <md:SurName>Svoboda</md:SurName>
      <md:EmailAddress>mailto:jaroslav.svoboda@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:eidas="http://eidas.europa.eu/saml-extensions" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ns0="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ns1="http://www.w3.org/2000/09/xmldsig#" xmlns:ns2="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:ns3="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:ns4="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:ns5="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ns6="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:ns7="urn:oasis:names:tc:SAML:metadata:ui" xmlns:pyff="http://pyff.io/NS" xmlns:q1="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:remd="http://refeds.org/metadata" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:ser="http://eidas.europa.eu/metadata/servicelist" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:ui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:xi="http://www.w3.org/2001/XInclude" xmlns:xrd="http://docs.oasis-open.org/ns/xri/xrd-1.0" xmlns:xs="http://www.w3.org/2001/XMLSchema" entityID="https://auth.eidas.cesnet.cz/sp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <ns4:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.eidas.cesnet.cz/Saml2SP/disco" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">eIDAS CESNET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eIDAS CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET's eIDAS services</mdui:Description>
          <mdui:Description xml:lang="cs">Služby CESNET eIDAS</mdui:Description>
          <mdui:Keywords xml:lang="en">eIDAS RemSig</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">eIDAS RemSig</mdui:Keywords>
          <mdui:Logo height="100" width="100">https://auth.eidas.cesnet.cz/img/logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">https://eidas.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://eidas.cesnet.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDnzCCAoegAwIBAgIJAItiVBY8jRe2MA0GCSqGSIb3DQEBCwUAMGYxCzAJBgNV BAYTAkNaMRYwFAYDVQQIDA1Tb3V0aCBNb3JhdmlhMQ0wCwYDVQQHDARCcm5vMQ8w DQYDVQQKDAZDRVNORVQxHzAdBgNVBAMMFnNhdG9zYS5laWRhcy5jZXNuZXQuY3ow HhcNMTkwODE1MTQxOTQ4WhcNMzkwODEwMTQxOTQ4WjBmMQswCQYDVQQGEwJDWjEW MBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEPMA0GA1UECgwG Q0VTTkVUMR8wHQYDVQQDDBZzYXRvc2EuZWlkYXMuY2VzbmV0LmN6MIIBIjANBgkq hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuIX2YYgZ2MPFnuDoDExJ9vx6ZqHbO/CL hwNwQ9sABPZup1muFv6MLwm9epzILHRoLsEAFTPqisD5KlVmpCZBi1/V0g7+kG8X QfiadIVLUJmKLtWhLLmr8fW2bH9SXdweDztlysW4W43nr3Z/OCOw1COi5SFKSB3s ifBhrDqKAkrtkAV6e1w/PYO6lnHa2zpDvnNXRdOZaCvqrg6h+t01t7aPcvuh2j9r nOfuAvcJ+2s4Hy2SfgqgtASDo08psyHmsYnK1i/lfkstvpr6ftDrVNLJxs7AYAu7 s+nGRU6CJlBzTGOonHjamFhQzQz+4lMgVnpwPTAEbDn7p0jiZw//PQIDAQABo1Aw TjAdBgNVHQ4EFgQUQGj4kiihZV94Yrj+EZ78kAsbfF0wHwYDVR0jBBgwFoAUQGj4 kiihZV94Yrj+EZ78kAsbfF0wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOC AQEAhS8UPv4GxfOKTjAXFl04GLO2HjCYe2t8HS2fxkpQbLJtCsdjgJA1xn1JRf5u xJIKUhm7DxJz2/6IfeF961d7xzbP9xTdsyaAcMUAhvLBOUPkXg+b+bvjYuejJoYC IzRyQ6IXXKluvadXsTD5RqYrLHd4M7S2M+c3/lXlnnh32ZpuHM/3JboqjoytUrlt SsemQ1GEgZF+IAkTf9ZcC+cnwBNUVO41B6hIo3IfzpsVIzOmDKUfhx5swp+f3b70 CD2FOy4TuApvf5NGxObOSRRQpGIgNxs64yUf+XLNvSvJA4mG7TrC25l3W69Hre8W WP8UE9eFzjICAQ3ms5H/c4nwgg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDnzCCAoegAwIBAgIJAItiVBY8jRe2MA0GCSqGSIb3DQEBCwUAMGYxCzAJBgNV BAYTAkNaMRYwFAYDVQQIDA1Tb3V0aCBNb3JhdmlhMQ0wCwYDVQQHDARCcm5vMQ8w DQYDVQQKDAZDRVNORVQxHzAdBgNVBAMMFnNhdG9zYS5laWRhcy5jZXNuZXQuY3ow HhcNMTkwODE1MTQxOTQ4WhcNMzkwODEwMTQxOTQ4WjBmMQswCQYDVQQGEwJDWjEW MBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEPMA0GA1UECgwG Q0VTTkVUMR8wHQYDVQQDDBZzYXRvc2EuZWlkYXMuY2VzbmV0LmN6MIIBIjANBgkq hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuIX2YYgZ2MPFnuDoDExJ9vx6ZqHbO/CL hwNwQ9sABPZup1muFv6MLwm9epzILHRoLsEAFTPqisD5KlVmpCZBi1/V0g7+kG8X QfiadIVLUJmKLtWhLLmr8fW2bH9SXdweDztlysW4W43nr3Z/OCOw1COi5SFKSB3s ifBhrDqKAkrtkAV6e1w/PYO6lnHa2zpDvnNXRdOZaCvqrg6h+t01t7aPcvuh2j9r nOfuAvcJ+2s4Hy2SfgqgtASDo08psyHmsYnK1i/lfkstvpr6ftDrVNLJxs7AYAu7 s+nGRU6CJlBzTGOonHjamFhQzQz+4lMgVnpwPTAEbDn7p0jiZw//PQIDAQABo1Aw TjAdBgNVHQ4EFgQUQGj4kiihZV94Yrj+EZ78kAsbfF0wHwYDVR0jBBgwFoAUQGj4 kiihZV94Yrj+EZ78kAsbfF0wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOC AQEAhS8UPv4GxfOKTjAXFl04GLO2HjCYe2t8HS2fxkpQbLJtCsdjgJA1xn1JRf5u xJIKUhm7DxJz2/6IfeF961d7xzbP9xTdsyaAcMUAhvLBOUPkXg+b+bvjYuejJoYC IzRyQ6IXXKluvadXsTD5RqYrLHd4M7S2M+c3/lXlnnh32ZpuHM/3JboqjoytUrlt SsemQ1GEgZF+IAkTf9ZcC+cnwBNUVO41B6hIo3IfzpsVIzOmDKUfhx5swp+f3b70 CD2FOy4TuApvf5NGxObOSRRQpGIgNxs64yUf+XLNvSvJA4mG7TrC25l3W69Hre8W WP8UE9eFzjICAQ3ms5H/c4nwgg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.eidas.cesnet.cz/Saml2SP/acs/post" index="1"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">eIDAS CESNET</md:ServiceName>
        <md:ServiceName xml:lang="en">eIDAS CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Služby CESNET eIDAS</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">CESNET's eIDAS services</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">eIDAS CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z.s.p.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:eidas@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Support</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:eidas@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://auth.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>camelot4</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=camelot4</ds:X509SubjectName>
            <ds:X509Certificate>MIIC3zCCAcegAwIBAgIJALi3n/nF8cDIMA0GCSqGSIb3DQEBBQUAMBMxETAPBgNV
BAMTCGNhbWVsb3Q0MB4XDTEzMDYxMDA1MTIwNloXDTIzMDYwODA1MTIwNlowEzER
MA8GA1UEAxMIY2FtZWxvdDQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
AQC635dWVDuuDWgZv3PVLZvEdCP7tDXUJUalC2gis81qjdTzzT4AZ5hEVJWn1eFT
Nj46SPnWFpx039Qc4RC6OTuuQ/9+LNRYyxg89HRhbD4Jhx7uyuAHHb3FfMx+byg+
Yg4CVToIHlqold8OMZf8dKQK+3F6JUDyZVJOx2wOw3UvDNIpSgrwTNqbnd0AdFgV
2ZmJJpqB7WDjZfUro+Sz5kh0Zz7Eeg1WWLsiNd2rQll9DgVMnT0WXq/A6BrNxCcI
7wFu9ttvF6O1IO54Pxz1DVKeMumtLYUTZXotLgKPkUqKsTSWv5XUMYqfQpFem5VO
jhfrrG2xviOiO/U+DaFI0WLHAgMBAAGjNjA0MBMGA1UdEQQMMAqCCGNhbWVsb3Q0
MB0GA1UdDgQWBBRhGepygVvGajw9xisxZ4Z8TBMgVDANBgkqhkiG9w0BAQUFAAOC
AQEAUD5qhU6iROLhx7s05KRg1wcePzdV/FGCOf2nr8358ny8QWJUUWf3S6zj4pjT
MHavxh7ZIo1UrMybdUQJJsdcuHSslzhyLmymwKpYcjsRD0q9V/BSUv0e5O0+zdek
TL1JmWRlNDnJWkdhQiBi9mvt6JHa25B+GAAduLAOcK0JsijOi51Mkr638Phnw7lI
4tOQUj5Fho86IKfQuGwrZoztQXqqKvjkoxd11TNGeEQ4ZCyY820m81crmBJaDYp1
WnYjNN8q8ce78xUsstkY/ONZ52At28sBmz33HTvvPALhy6vrYL474S3Wqkwkmadn
KZjBWMmp4CorgOgXiSsx9EtD2g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://auth.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Web</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://auth.polygraf.app/metadata">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/category/code-of-conduct/v2</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/discoResponse/default-sp" index="0"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Polygraf Online</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Polygraf Online</mdui:DisplayName>
          <mdui:Description xml:lang="en">Real-time speech-to-text and presentation streaming for students with hearing or visual impairments.</mdui:Description>
          <mdui:Description xml:lang="cs">Živý přepis řeči a streamování prezentací pro studenty se sluchovým nebo zrakovým postižením.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://polygraf.app/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://polygraf.app/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://polygraf.app/privacy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://polygraf.app/privacy</mdui:PrivacyStatementURL>
          <mdui:Logo height="80" width="80">https://polygraf.app/logo-eduid-80.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.polygraf.app/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Polygraf Online</md:ServiceName>
        <md:ServiceName xml:lang="cs">Polygraf Online</md:ServiceName>
        <md:RequestedAttribute Name="eduPersonPrincipalName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="mail" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="givenName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="sn" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="displayName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="eduPersonScopedAffiliation" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Teiresiás Centre, Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Středisko Teiresiás, Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.teiresias.muni.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.teiresias.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Suchan</md:SurName>
      <md:EmailAddress>mailto:suchan@blaze.codes</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Suchan</md:SurName>
      <md:EmailAddress>mailto:suchan@blaze.codes</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Svatoslav</md:GivenName>
      <md:SurName>Ondra</md:SurName>
      <md:EmailAddress>mailto:ondra@teiresias.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Suchan</md:SurName>
      <md:EmailAddress>mailto:suchan@blaze.codes</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Czech Academy of Sciences</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb</ds:KeyName>
          <ds:KeyName>avcr.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.fair-wizard.com/admin-api/saml-service-providers/bc7317e4-f0a0-4423-acc2-6c616a6159bb/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro AV ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Czech Academy of Sciences</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Czech Academy of Sciences</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d</ds:KeyName>
          <ds:KeyName>avcr.preview.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://avcr.preview.fair-wizard.com/admin-api/saml-service-providers/308f27c2-ce55-49cd-abdd-dcb9e4ac6d2d/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro AV ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Czech Academy of Sciences</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Akademii věd České Republiky</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://beta.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://beta.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://beta.knihovny.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://beta.knihovny.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front-devel.mzk.cz</ds:KeyName>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEsjCCA5qgAwIBAgIQLaS1jOufvcpsVCEBt02nazANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://beta.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://beta.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://beta.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://beta.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Kozlovský</md:SurName>
      <md:EmailAddress>mailto:kozlovsky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://camelot.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>camelot4</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=camelot4</ds:X509SubjectName>
            <ds:X509Certificate>MIIC3zCCAcegAwIBAgIJALi3n/nF8cDIMA0GCSqGSIb3DQEBBQUAMBMxETAPBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://camelot.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://online.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="21"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Web</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cards-test.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Testovací portál průkazů Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University - student identification cards testing portal</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Testovací portál průkazů Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Charles University - student identification cards testing portal.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://cuni.cz/UK-1444.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://cuni.cz/UKEN-163.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>cards-test.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cards-test.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDdTCCAl2gAwIBAgIUNlkOHkQuS2mh1hl2eu1twNTHjXwwDQYJKoZIhvcNAQEM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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cards-test.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cards.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Portál průkazů Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University - student identification cards portal</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Aplikace slouží pro účely studentů a zaměstnanců UK. Poskytuje uživatelům přehled aktuálně vystavených průkazů a také možnost požádat o nový průkaz.</mdui:Description>
          <mdui:Description xml:lang="en">The application is used for the purposes of CU students. It provides users with an overview of currently issued cards and also the possibility to request a new card.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://cuni.cz/UK-1444.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://cuni.cz/UKEN-163.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cards.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cards.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>cards.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cards.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUZnvBr/cLYzTjnNB20Htj/OD8OoowDQYJKoZIhvcNAQEM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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cards.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:remd="http://refeds.org/metadata" entityID="https://cas-einfracz.dev.perun-aai.org/cas/samlsp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET e-Infrastructure - Dev(DRUID AAI)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">e-Infrastruktura CESNET - Dev(DRUID AAI)</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</mdui:Description>
          <mdui:Description xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/e-infrastruktura-3/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/e-infrastruktura-3/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Logo height="146" width="257">https://login.cesnet.cz/proxy/module.php/cesnet/res/img/cesnet_rgb_small.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUaJVcvA5PemoIXtFc8/Xcz8tzFpYwDQYJKoZIhvcNAQELBQAwKTEnMCUG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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMzCCAhugAwIBAgIUaJVcvA5PemoIXtFc8/Xcz8tzFpYwDQYJKoZIhvcNAQELBQAwKTEnMCUG
A1UEAwweY2FzLWVpbmZyYWN6LmRldi5wZXJ1bi1hYWkub3JnMB4XDTI1MDcwODA4MTIxOFoXDTM1
MDcwNjA4MTIxOFowKTEnMCUGA1UEAwweY2FzLWVpbmZyYWN6LmRldi5wZXJ1bi1hYWkub3JnMIIB
IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwsGmQuX+IsvtS06Nb0oowb8XjS52g3ouQ7FT
xI5ytfZw8FjW8EnFGLrCADtv6G9DQzRD9SQSePcXA5ZQ1y7RwknB935RT1W02FSSUa7pjP7IB5Q3
wTk+MJB+uST2Xer9b9e6x23kALgNPc1LfbxFTUE2bGYYdvGgAoF7nrgjDu7xoUiAW7Sgd/sFCmoh
2scWqD6sq2fGuCr10FKj52DrNE9TMvvCVDdHO2P57NHvyWBNfZV6eDmjakZmcLSxNwcle6S5Z1x0
uncj654YKRgqDKEBUVYLCQQiry2NQQBY4u7JvCWjZae0Kt4Sn/zutf10iH4gMWpgLKRFea+HH4C8
/QIDAQABo1MwUTAdBgNVHQ4EFgQUDW3hcyr0KlgFqNlM9wGKfkwcVoEwHwYDVR0jBBgwFoAUDW3h
cyr0KlgFqNlM9wGKfkwcVoEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAeuef
Bej+/D7v3lpZvpQBbmacpwAZBztpTHcCESDFwYV/la33M7/WEz55DGiM45uwmsRDmvLD5pYg3xZY
DmbLWCrKXUh+gDDvU8sfkTm2FE3jka+JwkHUNVXsVnHIuHQRXpfNmSp8UYG71iGN/F1W+cLrcKXE
ZK+EpyHeRzxyvnpaGN4ofSkTF+SIOl6DL7jQPbPYLhsyd7U+a2wmA9COXg4ll3YjBXAd0xwsIBo8
5SM78xUrliBp0QkYSDjrA3NiwKi0MoJs6Vp1x1O+Fu218k4vRVGOXf3tKZEokWr3VQNNBs8PfsOB
2Dx296o1GpKiAX2QAGLPMCeekBMDbMmsuw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas-einfracz.dev.perun-aai.org/cas/login?client_name=fed" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET e-Infrastructure - Dev(DRUID AAI)</md:ServiceName>
        <md:ServiceName xml:lang="cs">e-Infrastruktura CESNET - Dev(DRUID AAI)</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduroamUID" Name="http://eduroam.cz/attributes/eduroamUID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>CESNET-CERTS</md:GivenName>
      <md:EmailAddress>mailto:certs@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas.cuni.cz/cas/sp/edugain/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Authentication Service (CAS)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Autentizační služba Univerzity Karlovy (CAS)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Authentication to Charles University information services.</mdui:Description>
          <mdui:Description xml:lang="cs">Přihlášení k informačním zdrojům Univerzity Karlovy.</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas.cuni.cz/cas/login?client_name=edugain"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=edugain" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas.cuni.cz/cas/sp/eduid/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Authentication Service (CAS)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Autentizační služba Univerzity Karlovy (CAS)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Authentication to Charles University information services.</mdui:Description>
          <mdui:Description xml:lang="cs">Přihlášení k informačním zdrojům Univerzity Karlovy.</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas.cuni.cz/cas/login?client_name=eduid"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICozCCAYsCFC8ca+MqmqzCDIKcbf0PUGuJka4MMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNVBAMM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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/cas/login?client_name=eduid" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas1.cuni.cz/cas/sp/edugain/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Test SP at cas1.cuni.cz / eduGAIN</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací SP na cas1.cuni.cz / eduGAIN</mdui:DisplayName>
          <mdui:Description xml:lang="en">Test SP at cas1.cuni.cz for CAS development in eduGAIN</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací SP na cas1.cuni.cz pro vývoj CAS pro eduGAIN</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas1.cuni.cz/cas/login?client_name=edugain"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas1.cuni.cz/cas/login?client_name=edugain&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=edugain" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas1.cuni.cz/cas/sp/metadata">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Test SP at cas1.cuni.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací SP na cas1.cuni.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Test SP at cas1.cuni.cz for CAS development</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací SP na cas1.cuni.cz pro vývoj CAS</mdui:Description>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
          <mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cas1.cuni.cz/cas/login?client_name=eduid"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIClTCCAX2gAwIBAgIBATANBgkqhkiG9w0BAQUFADAOMQwwCgYDVQQDDANjYXMwHhcNMjMwNDIw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas1.cuni.cz/cas/login?client_name=eduid&amp;logoutendpoint=true"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.cuni.cz/cas/login?client_name=eduid" index="0"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">Univerzita Karlova</OrganizationName>
      <OrganizationName xml:lang="en">Charles University</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">Univerzita Karlova</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">Charles University</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="administrative">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Michal</GivenName>
      <SurName>Vocu</SurName>
      <EmailAddress>mailto:michal@cuni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/metadata.php/default-sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cawi.fsv.cuni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">lentea.com s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">lentea.com s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">lentea.com s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">lentea.com s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.lentea.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.lentea.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Kopriva</md:SurName>
      <md:EmailAddress>david.kopriva@lentea.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cis-login-eduid.vscht.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Login portal, CIS UCT Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:DisplayName>
          <mdui:Description xml:lang="en">Login portal, CIS UCT Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://cis-login.vscht.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://cis-login.vscht.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://tvp.vscht.cz/images/0!0/uzel/18546/logoVSCHT_zakl.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cis-login-eduid.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cis-login-eduid.vscht.cz,OU=CIS-IT_shib,O=CIS VSCHT Praha,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIFUTCCAzkCAgCoMA0GCSqGSIb3DQEBCwUAMHwxGDAWBgNVBAoTD0NJUyBWU0NI
VCBQcmFoYTELMAkGA1UECxMCSVQxIDAeBgkqhkiG9w0BCQEWEWhvcm5pY2VqQHZz
Y2h0LmN6MQ4wDAYDVQQHEwVQcmFoYTELMAkGA1UEBhMCQ1oxFDASBgNVBAMTC0NJ
UyBSb290IENBMB4XDTE4MDYyNjA5MDY1N1oXDTI4MDYyMzA5MDY1N1owYDELMAkG
A1UEBhMCQ1oxGDAWBgNVBAoTD0NJUyBWU0NIVCBQcmFoYTEUMBIGA1UECxQLQ0lT
LUlUX3NoaWIxITAfBgNVBAMTGGNpcy1sb2dpbi1lZHVpZC52c2NodC5jejCCAiIw
DQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBALcxsMD86ZU0/FTgE9YbMqHZzLsF
b04FeXTmCTjz3/hZJujqZogpyvXCPf1uz8G7Pf1QRgAA4mPpxisxJdOgFy8hLeXF
0prlcwv267MawFStbCqhbMlWh9bXMSJIWkfNJbbk7hEjAWxxUzyhhf6xRxBYLsgz
frERZBIdAH0gmVSLJ2/2sBk4Nomh2LeznWkTUQYfktSncxeNZmv5LhGozdBb3Sx0
RbNpPNa0qwGdeubmUqV6WYSdXRUb4+nVDKgmNDw3kbGO0pnxW+NYV7/jLFxvc3AN
nzbHMgDuZmZcq39pl04BERUHQJBeW18BjbiLOfhyWBUuXlbPSQVDYLQdXpdRtQjJ
jgh9mzxxusgPWYQ29v1oWTLBUwzXctO/lI+kG9rcbnambjfQkvWCu1Gmddvj+DOZ
BfoaGiWb96reOsJXsRQSynMH3COeT4oDrlxfOQKPN6haFnX8clrYhCkkiaCe/gEh
SzWsgkSj++9T2DNnd1UH9g1ZJu0lyuKHCoxPFJiKGgO4KQzIzJ5CK6tYpN7aZWvV
IKph81uPd2XfkwogGeGy7alqHeAP7IbTPYmmrtIPIaO6k7Cpua1dIUz2Fbr6Ni8o
tcNli7PSdbatvy+Oww6Q2TfkNb9oh/nZ0jA4ICcWRqpl2cdD25TAeOImpqhMToHF
Bk+Cq18tyId26xsrAgMBAAEwDQYJKoZIhvcNAQELBQADggIBADWs7FOrlATU034a
KP7MLTUi//K/7BmTfuKy4Zr4d7a5xYRyOHclVp/ma31TbdAzg9JfMkH/keShbnet
FXomy0CHNWdgSHWUrR44V7LL2ISH7EpG4YNs8M1Qrm+40wO+F2nINuw7s6f85+r4
P3QiSdjUehWu99xPGEZ705INfv8v8FCd6Vp8Fj1oYccq+/t2HV6xyFhcqKaYLyCq
bjtzolBDWQ5KIJTdKBInhs8bFQBpzPs8IwP95AXuIQOHOYEuVEPYqtSMJByJbTRa
rfZWLNoOx3LDwe6IAWDm0TY8pAly5PZqNCrGbVHgQfdAqPZucAC+FNE5oXICMh5v
NaV3FjW3NwAwCEndflZdbXiRa3qkJC4AQTo8mcWocEsQztkNsGT4PqynG9JFrElp
D72UIf2DmI+8wngNJfVkG+YTc09gsQ6w9zGMiVdDM2JHmZ18PvSXuCl34uYoq/rH
qz+ukTucxn4c3e9MIoU7IoQYUUcchdrtmi3sx1xGtyB7WzdKxVpzz2hEaZMy4oMk
DYCdmzREFh1NhfErKKIRDCtY1cX/JDGzmYSvtfQMQmnF7FHjwkeVTJDVT33EeRO0
wxjwc/CD6xmu24yD/Lv2YLjBduIT9XXEk0f2dmyxGghMmAmHWlZuSVztKmso2q/E
A7fRSRBj6KelLlULzUnKhNdObz09</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cis-login-eduid.vscht.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The University of Chemistry and Technology, Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The University of Chemistry and Technology, Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.vscht.cz/english/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.vscht.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Horníček</md:SurName>
      <md:EmailAddress>jan.hornicek@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ciselnik.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Organizations directory</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Číselník organizací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Organizations directory (not only) for eduID.cz and eduroam.cz.</mdui:Description>
          <mdui:Description xml:lang="cs">Číselník organizací (nejen) pro eduID.cz a eduroam.cz.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ciselnik.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ciselnik.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ciselnik.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://ciselnik.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ciselnik.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUUsugP6gf/ZT5VBmEzdcsz7cDQ3YwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ciselnik.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Organizations directory</md:ServiceName>
        <md:ServiceName xml:lang="cs">Číselník organizací</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Organizations directory (not only) for eduID.cz and eduroam.cz.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Číselník organizací (nejen) pro eduID.cz a eduroam.cz.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ckis.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ckis.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ckis.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ckis.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ckis.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDlTCCAn2gAwIBAgIJAM4Urn1svIKjMA0GCSqGSIb3DQEBCwUAMGExCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ckis.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ckis.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ckis.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/metadata.php/collector">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml2-logout.php/collector"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml2-acs.php/collector" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml1-acs.php/collector" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml2-acs.php/collector" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://collector-metacentrum.liberouter.org/simplesaml/module.php/saml/sp/saml1-acs.php/collector/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Cesnet TMC</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Cesnet TMC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Cesnet TMC</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Cesnet TMC</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.liberouter.org</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Cesnet</md:GivenName>
      <md:SurName>TMC support</md:SurName>
      <md:EmailAddress>tmc@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cpk-front-devel.mzk.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/DS" index="1"/>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front-devel.mzk.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cpk-front.mzk.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/DS" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/DS" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/MoZeK"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/DS" index="4"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/MoZeK"/>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/Artifact/SOAP" index="4"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/Artifact/SOAP" index="5"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/Artifact/SOAP" index="6"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/Artifact/SOAP" index="7"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/Artifact/SOAP" index="8"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/Artifact/SOAP" index="9"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/Artifact/SOAP" index="10"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/Artifact/SOAP" index="11"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cpk-front.mzk.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/Artifact" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/ECP" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10000/Shibboleth.sso/SAML2/POST-SimpleSign" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/Artifact" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/ECP" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/POST" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10001/Shibboleth.sso/SAML2/POST-SimpleSign" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML/Artifact" index="24"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML/POST" index="25"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/Artifact" index="26"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/ECP" index="27"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/POST" index="28"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10002/Shibboleth.sso/SAML2/POST-SimpleSign" index="29"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML/Artifact" index="30"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML/POST" index="31"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/Artifact" index="32"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/ECP" index="33"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/POST" index="34"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10003/Shibboleth.sso/SAML2/POST-SimpleSign" index="35"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML/Artifact" index="36"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML/POST" index="37"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/Artifact" index="38"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/ECP" index="39"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/POST" index="40"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10004/Shibboleth.sso/SAML2/POST-SimpleSign" index="41"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML/Artifact" index="42"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML/POST" index="43"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/Artifact" index="44"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/ECP" index="45"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/POST" index="46"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10005/Shibboleth.sso/SAML2/POST-SimpleSign" index="47"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML/Artifact" index="48"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML/POST" index="49"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/Artifact" index="50"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/ECP" index="51"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/POST" index="52"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10006/Shibboleth.sso/SAML2/POST-SimpleSign" index="53"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML/Artifact" index="54"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML/POST" index="55"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/Artifact" index="56"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/ECP" index="57"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/POST" index="58"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10007/Shibboleth.sso/SAML2/POST-SimpleSign" index="59"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML/Artifact" index="60"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML/POST" index="61"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/Artifact" index="62"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/ECP" index="63"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/POST" index="64"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10008/Shibboleth.sso/SAML2/POST-SimpleSign" index="65"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML/Artifact" index="66"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML/POST" index="67"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/Artifact" index="68"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/ECP" index="69"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/POST" index="70"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz:10009/Shibboleth.sso/SAML2/POST-SimpleSign" index="71"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML/Artifact" index="72"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML/POST" index="73"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/Artifact" index="74"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/ECP" index="75"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/POST" index="76"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpk-front.mzk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="77"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://csnonlinefirmy.agentura-cas.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Technical standard database</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Databáze českých technických norem</mdui:DisplayName>
          <mdui:Description xml:lang="en">Technical standard database.</mdui:Description>
          <mdui:Description xml:lang="cs">Databáze českých technických norem.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://csnonlinefirmy.agentura-cas.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://csnonlinefirmy.agentura-cas.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.agentura-cas.cz/wp-content/uploads/2020/01/cas_logo-cze.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>profi</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=profi</ds:X509SubjectName>
            <ds:X509Certificate>MIID1jCCAj6gAwIBAgIJAIhqRZClDUuAMA0GCSqGSIb3DQEBCwUAMBAxDjAMBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2021</ds:KeyName>
          <ds:KeyName>csnonlinefirmy.agentura-cas.cz</ds:KeyName>
          <ds:KeyName>https://csnonlinefirmy.agentura-cas.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=csnonlinefirmy.agentura-cas.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEVDCCArygAwIBAgIUei6V8W83eikq8gAVpsajvgj5AdQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csnonlinefirmy.agentura-cas.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Technical standard database</md:ServiceName>
        <md:ServiceName xml:lang="cs">Databáze českých technických norem</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Technical standard database.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Databáze českých technických norem.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CAS</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČSA</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech standardization agency</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Česká agentura pro standardizaci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.agentura-cas.cz/?language=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.agentura-cas.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Purchart</md:SurName>
      <md:EmailAddress>mailto:purchart@agentura-cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CUNI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Charles University</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Universitu Karlovu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45</ds:KeyName>
          <ds:KeyName>cuni.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.fair-wizard.com/admin-api/saml-service-providers/34b57c0c-da3f-40da-b22a-aee1c1838a45/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CUNI</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Charles University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Universitu Karlovu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cuni.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library  Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://cuni.futurebooks.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://cuni.futurebooks.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cuni.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cuni.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cuni.futurebooks.cz</ds:KeyName>
          <ds:KeyName>https://cuni.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cuni.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUVRbY5CIzOdBWTPmP1zyjLuNG2j4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cuni.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cuni.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for CUNI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Charles University</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Univerzitu Karlovu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282</ds:KeyName>
          <ds:KeyName>cuni.preview.fair-wizard.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC
Y3oxDzANBgNVBAgMBlByYWd1ZTEPMA0GA1UEBwwGUHJhZ3VlMSMwIQYDVQQKDBpD
b2RldmVuY2UgU29sdXRpb25zIHMuci5vLjEjMCEGA1UEAwwaQ29kZXZlbmNlIFNv
bHV0aW9ucyBzLnIuby4xKzApBgkqhkiG9w0BCQEWHHZvanRlY2gua25haXNsQGNv
ZGV2ZW5jZS5jb20wHhcNMjMwNTE1MTMzMDQ4WhcNNDMwNTE1MTMzMDQ4WjCBpjEL
MAkGA1UEBhMCY3oxDzANBgNVBAgMBlByYWd1ZTEPMA0GA1UEBwwGUHJhZ3VlMSMw
IQYDVQQKDBpDb2RldmVuY2UgU29sdXRpb25zIHMuci5vLjEjMCEGA1UEAwwaQ29k
ZXZlbmNlIFNvbHV0aW9ucyBzLnIuby4xKzApBgkqhkiG9w0BCQEWHHZvanRlY2gu
a25haXNsQGNvZGV2ZW5jZS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
AoIBAQDI3L6b/XZ33HpHqTK26iHucgrZ1XY4X+p+SAHtkJ14lFLwOQSkDuvijyGh
lw3/bSDTpnE4XyO4nsCchIj1U/iiw0EoFIimFvHOfg6s/oPyI2++xDeyo0VpArsf
fxC3SaFiGgQNe1lgH3vV7PSujDTASvC9lls/bG0vCm4Y7pD2EYd124VI9WAFgdLl
oPH5IAEoEk9hv+AezHASPxv3SdmsoHViqwOQdgWL5BD3L82a68mJDf4sHGGjaqrm
ypMV1/ZbxTN+pdb4FvKkryHp51ravvRXAl+qfxaFI46mCXoh1YTsTXUKjnbeSMH3
VNJpSeoyx2ei/gq5XsTdopsApYGNAgMBAAEwDQYJKoZIhvcNAQELBQADggEBAEID
ztgYejJq78v/jBwjOcfpfu94JKER9qpm61Y3P3RbZ1iC62aD8bo9VVc6x1MK/J2r
ZzAalKDMLPhOlYy+So8eo2Ug/lFyrERqqfHzZ81IrAamHbYxOO+4HgQrtjlGkeOM
Tf3oreFHqCVo7DQNkFd6SUc6Bf19dedQuN3se65PJiCnT4LEaEHmwNOqKGYI7rS7
RFNrlmrD+FgZEJNB/XmUS4kj61F/FhZ94Os6hizpHIaixsK3IaodT4igAJ2cgK3T
tvz/IC5cll2fbNjWONYZuvW15EvJDJNfHbEZMPgrUTFzj/gunQvULvObSjfvZhRz
QxeUZnNobOXN7VLe1ks=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/response" index="0" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cuni.preview.fair-wizard.com/admin-api/saml-service-providers/d43523eb-7c0e-4e5c-ab2a-0d0f338e3282/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for CUNI</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Charles University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Univerzitu Karlovu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/metadata.php/cz-online.aliveplatform.com">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml2-logout.php/cz-online.aliveplatform.com"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml2-acs.php/cz-online.aliveplatform.com" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml1-acs.php/cz-online.aliveplatform.com" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml2-acs.php/cz-online.aliveplatform.com" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cz-online.aliveplatform.com/simplesaml/module.php/saml/sp/saml1-acs.php/cz-online.aliveplatform.com/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">GTS Alive, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">GTS Alive, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">GTS Alive, s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">GTS Alive, s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.isic.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.isic.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Klein</md:SurName>
      <md:EmailAddress>radek.klein@isic.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dataset-catalog.liberouter.org">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Katoda - Dataset Catalog (Production)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Katoda - Katalog datových sad (Produkce)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dataset catalog.</mdui:Description>
          <mdui:Description xml:lang="cs">Katalog datových sad.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dataset-catalog.liberouter.org/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dataset-catalog.liberouter.org/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dataset-catalog.liberouter.org/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>katoda.liberouter.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=katoda.liberouter.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUK+dIykb3bocRW8bEH4ON9AiXx1owDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>katoda.liberouter.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=katoda.liberouter.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIEETCCAnmgAwIBAgIUJK9BKbEg7xF0ovaZ125Mzd5WH/0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dataset-catalog.liberouter.org/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Katoda - Production</md:ServiceName>
        <md:ServiceName xml:lang="cs">Katoda - Produkce</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dataset catalog.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Katalog datových sad.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Beneš</md:SurName>
      <md:EmailAddress>mailto:benesdavid@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://datel-demo.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Datel-demo</mdui:Description>
          <mdui:Description xml:lang="cs">Datel-demo</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://datel-demo.upce.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://datel-demo.upce.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://datel-demo.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datel-demo.upce.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>datel-demo.upce.cz</ds:KeyName>
          <ds:KeyName>https://datel-demo.upce.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=datel-demo.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUMR7Bfr0Repp52xGoB8qUbP+afm0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://datel-demo.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datel-demo.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://datel-demo.upce.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Datel-demo</md:ServiceName>
        <md:ServiceName xml:lang="cs">Datel-demo</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Datel project, demo enviroment.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Projekt datel, demo prostředí.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dbsportal.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">DBS Portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">DBS Portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">Application for supporting database education.</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace na podporu výuky databází.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dbsportal.cz/info/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dbsportal.cz/info/cs</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dbsportal.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://fit.dbsportal.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://czu.dbsportal.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://jcu.dbsportal.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dbsportal.cz</ds:KeyName>
          <ds:KeyName>https://dbsportal.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dbsportal.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDDCCAnSgAwIBAgIUO5wgd3PvdWKjOFycckqid2IMUv8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fit.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://czu.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jcu.dbsportal.cz/Shibboleth.sso/Artifact/SOAP" index="4"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fit.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://czu.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fit.dbsportal.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dev.fit.dbsportal.cz/Shibboleth.sso/SAML/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://czu.dbsportal.cz/Shibboleth.sso/SAML/POST" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/Artifact" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML2/ECP" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML/Artifact" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://jcu.dbsportal.cz/Shibboleth.sso/SAML/POST" index="24"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">DBS Portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">DBS Portál</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Application for supporting database education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Aplikace na podporu výuky databází.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">FIT CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">FIT ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Information Technology, Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fakulta informačních technologií, České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.fit.cvut.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.fit.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Hunka</md:SurName>
      <md:EmailAddress>mailto:hunkajir@fit.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dhcp.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">DHCP registration</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Registrace DHCP</mdui:DisplayName>
          <mdui:Description xml:lang="en">Workstation registration in DHCP server</mdui:Description>
          <mdui:Description xml:lang="cs">Registrace stanic v DHCP serveru</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dhcp.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dhcp.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dhcp.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dhcp.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dhcp.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dhcp.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://dhcp.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dhcp.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJAO6AdTB4WKePMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dhcp.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dhcp.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a.l.e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z.s.p.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Nejman</md:SurName>
      <md:EmailAddress>mailto:nejman@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://digi.law.muni.cz">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Digital Library of the Faculty of Law MU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Právnické fakulty MU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Publications related to law published since 1800 in czech lands.</mdui:Description>
          <mdui:Description xml:lang="cs">Publikace z oblasti práva vydávané od roku 1800 v českých zemích.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://digi.law.muni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://digi.law.muni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://digi.law.muni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>digi.law.muni.cz</ds:KeyName>
          <ds:KeyName>https://digi.law.muni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=digi.law.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAPYfNd/AzT23MA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digi.law.muni.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digi.law.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://digi.law.muni.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://muni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vlastimil</md:GivenName>
      <md:SurName>Krejčíř</md:SurName>
      <md:EmailAddress>mailto:kic_admins@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://digitool.is.cuni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://digitool.is.cuni.cz/shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://digitool.is.cuni.cz/shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>digitool.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=digitool.is.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDozCCAougAwIBAgIJAK92H6tieviqMA0GCSqGSIb3DQEBCwUAMGgxCzAJBgNV
BAYTAkNaMSMwIQYDVQQKDBpVbml2ZXJ6aXRhIEthcmxvdmEgdiBQcmF6ZTEWMBQG
A1UECwwNU2hpYmJvbGV0aCBTUDEcMBoGA1UEAwwTZGlnaXRvb2wuaXMuY3VuaS5j
ejAeFw0xNTEyMDMxNTEyNDZaFw0yMDEyMDExNTEyNDZaMGgxCzAJBgNVBAYTAkNa
MSMwIQYDVQQKDBpVbml2ZXJ6aXRhIEthcmxvdmEgdiBQcmF6ZTEWMBQGA1UECwwN
U2hpYmJvbGV0aCBTUDEcMBoGA1UEAwwTZGlnaXRvb2wuaXMuY3VuaS5jejCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANYSFDW53c2w4PSKsmPjOa6022vV
5lA1N8t89t98b8mTkZMAvb4gtmnTaERaNm/edUMxNvH+ETof2rWf3/W4zzW8ADac
fOrRuuXSvcpk5/w262x3byMykEZcEjrJSOp6svPk8627WlCkFBWXJMhDOrmrPMsB
IypL9GANG62m4nv6asOCJ2RwxOV+at/uKjbGT0ZW1ZMMq/79WyiSwiSqXqDtO2LV
RBLUfFOV4tLEUUDVKSa6Rve2kUYya0toU1Ix/5iLpyNH+JA9Ihs1tyVpou0jVJXg
B3kFneh/tdbc+r+VmcGN3TuLwM5w6zMYQHc0cmO7UHtbdL1OZXsNQqrRH40CAwEA
AaNQME4wHQYDVR0OBBYEFPhWVPQwRWsjLws4xsB5kmbkv2crMB8GA1UdIwQYMBaA
FPhWVPQwRWsjLws4xsB5kmbkv2crMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQEL
BQADggEBAJ0kKnaH+SzVu6lNJSNbGcWk+uVBfwWn5FwCCRZenAlTx9Dfz8RY1Hgx
MmBq+M1LUX5oy+pX5QJxUAHezQlAnXue05Pd+Id+lcjyoe0/2mIz7gTaXYhleqIS
kYbaOqqmETVxZE9Qu5uqD+CrV34Kpq4GYIIc+MMmwVIltPCPpgZIf6k9EUXpfVsz
L59kSL/izoCXpCP55WI4U6JcCbxocu9goPEpCQZ3ufLB8Tf2qkW+gpmW4xzHAXnL
4h8cpZwG1sxHrjOz1N4IQwxSIqVYEC82yOUh7EXY8YksgtZWZPnMth8VXtawua3F
OVwBT/eB4NHRU4kMHrYnKJKqSyqnF4E=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digitool.is.cuni.cz/shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digitool.is.cuni.cz/shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://digitool.is.cuni.cz/shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dl-archiv.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle courses archive</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Archiv Moodle kurzů</mdui:DisplayName>
          <mdui:Description xml:lang="en">Moodle courses archive</mdui:Description>
          <mdui:Description xml:lang="cs">Archiv Moodle kurzů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dl-archiv.cuni.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dl-archiv.cuni.cz/?lang=cs</mdui:InformationURL>
          <mdui:Logo height="90" width="128">https://dl-archiv.cuni.cz/moodle.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dl-archiv.cuni.cz</ds:KeyName>
          <ds:KeyName>https://dl-archiv.cuni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dl-archiv.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUXi9hVY4GZUAtVHayBiETHMaMvNYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dl-archiv.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle courses archive</md:ServiceName>
        <md:ServiceName xml:lang="cs">Archiv Moodle kurzů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle courses archive</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Archiv Moodle kurzů</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles Uviversity</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://cuni.cz/UK-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FAIR Wizard for Stellenbosch University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FAIR Wizard pro Stellenbosch University</mdui:DisplayName>
          <mdui:Description xml:lang="en">FAIR Wizard for Stellenbosch University</mdui:Description>
          <mdui:Description xml:lang="cs">FAIR Wizard pro Stellenbosch University</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fair-wizard.com</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://fair-wizard.com</mdui:InformationURL>
          <mdui:Logo height="140" width="53">https://fair-wizard.com/static/fair-wizard-logo.svg</mdui:Logo>
          <mdui:PrivacyStatementURL xml:lang="en">https://fair-wizard.com/privacy-policy</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/idps"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/request" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97</ds:KeyName>
          <ds:KeyName>dmp.sun.ac.za</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=cz, ST=Prague, L=Prague, O=Codevence Solutions s.r.o., CN=Codevence Solutions
s.r.o./emailAddress=vojtech.knaisl@codevence.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIDyjCCArICCQC7K7hmnJazxjANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/logout"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/logout"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmp.sun.ac.za/admin-api/saml-service-providers/3a66c274-798c-4b1a-b88e-26abd56bec97/response" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FAIR Wizard for Stellenbosch University</md:ServiceName>
        <md:ServiceName xml:lang="cs">FAIR Wizard pro Stellenbosch University</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FAIR Wizard for Stellenbosch University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FAIR Wizard pro Stellenbosch University</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Codevence Solutions s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://codevence.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://codevence.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vojtěch</md:GivenName>
      <md:SurName>Knaisl</md:SurName>
      <md:EmailAddress>mailto:vojtech.knaisl@codevence.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dpl8.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Weby 2.LF UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">2.LF UK webs</mdui:DisplayName>
          <mdui:Description xml:lang="en">Weby 2.LF UK</mdui:Description>
          <mdui:Description xml:lang="cs">2.LF UK webs</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.lf2.cuni.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.lf2.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dpl8test.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dpl8test.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDjCCAnagAwIBAgIUQsNqyrqOs0mMZbgo0IlR0waOMmUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dpl8test.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dpl8test.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDjCCAnagAwIBAgIUB0j8bOOOW0qXPOqLa543kyDRTugwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://imunologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telovychova.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jazyky.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vedecka-konference.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://epidemiologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fyziologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://anatomie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ortopedie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://orl.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://histologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patologie.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dvojka.edu.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://simulacemotol.cz/Shibboleth.sso/SAML2/POST" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.simulacemotol.cz/Shibboleth.sso/SAML2/POST" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clip.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verejne-zdravi.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.nadacnifond2lf.cz/Shibboleth.sso/SAML2/POST" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nadacnifond2lf.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cord.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="24"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="25"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dpl8n.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="26"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace-dev.ufal.mff.cuni.cz/shibboleth-sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TEST - CUNI Data Repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TEST - Datový repozitář UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">A test version of CUNI Data Repository</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací verze datového repozitáře UK</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://dspace-dev.ufal.mff.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://dspace-dev.ufal.mff.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dspace-dev</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace-dev</ds:X509SubjectName>
            <ds:X509Certificate>MIID8DCCAligAwIBAgIUJZ66WOBh7s4IKLc6bvSDuNpI6eEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dspace-dev</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace-dev</ds:X509SubjectName>
            <ds:X509Certificate>MIID8DCCAligAwIBAgIUVLWQbUAU5MAgebhqlfYWo9PgFfYwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAxMKZHNwYWNlLWRldjAeFw0yMzA5MTQwODMyMTZaFw0zMzA5
MTEwODMyMTZaMBUxEzARBgNVBAMTCmRzcGFjZS1kZXYwggGiMA0GCSqGSIb3DQEB
AQUAA4IBjwAwggGKAoIBgQDXWOmqT0mgG4wfwL46YcNCY6wrqrVinHuISmvJJDsh
ySELT5LN/6S0DPfLLVM7X/FYiJQAmeUm7TDEQjqeGL72M0yhK3bdmBe8vCSbIUW/
rRDga3r850JJtH1ozaVsClNp0mGxww72HqAX6sUls3YE/7dbF5dZ9pe+ineua5UD
g5hls9lt28qghNM+M0O0+fOmbYEs4pH+o7iB5GNiYUSvootCPDmLdYFTFlp/k+RQ
P/9P+N5NnIIxqWfUkQqFPC1tbFtmvs9Fu+Id97LN7LV0gHNNQSSlPrEBpC1CVTYx
ha83YF73gBxoB+YDuFC/jlfCduL2V8W0QwUkrDn6ACitOaSG4ImzPcRRWD2tzuHV
g/Mkk8SsUL0qnLysHFMRa3fCsogLuXPjqk0CE+VLBDlgs4+FRKlioF7DATjZc0EP
JBqalcZzEIGSHadxfVGUZN1deFGn/sFyV+4Cgiw6X8uwo3M73zZraZHqa1oxqZeI
+SPgzjqPW9mfECTrzyHSVoUCAwEAAaM4MDYwFQYDVR0RBA4wDIIKZHNwYWNlLWRl
djAdBgNVHQ4EFgQUxfG70iQ0TA0dmnxdmQmKLMOERkkwDQYJKoZIhvcNAQELBQAD
ggGBAIRRHDPjKNLsDW5tGzp3LfARtm5v62T+Df6uF+pYHGeu4KqMvbQQXr9iyDKe
fZbReVWGJuFddnFiwH4WTq1tS4S3U3Ah/ShnlzXhhdJblsm0uDoLM9vRAbbV7KuU
tFiys1OeCnD8XS5IWWssqZvwapTH8mGLUs76vI0BSp3zUhHRXhYL8VbC/h2ISOIt
t1ZSOGFQRNXg/oZKwONhoBnfQZydN82iCbOgTi0ppfVCUCVZGRW9IN3qZLcJM16a
E6cewsXh4bB2FovIexUjfV2ZDRhmvpeX1LL5JUVTl6RhbAIHmrlnQLB8qvGphRu/
SniU2dw+az9HIa1fdvmKoeC284VTsylIhVpLGVuJwTN0vWLf9ipLvxtG8W/O6Lba
Ay1TnXfMnr6RQ8yoKshKjWzFZ8mKvgi7tnHEh6sce6TRKHc3hwOdD1FAYeYJiRXi
1UZpjizVUMlWQy5RBzNUpLlAqvZc6UGhXl8Myc+KajyzqJMnPrr5jrv0ouhNWdnY
tvF1PA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace-dev.ufal.mff.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">TEST - CUNI Data Repository</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A test version of CUNI Data Repository</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:mace:dir:attribute-def:eduPersonEntitlement" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague, Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav formální a aplikované lingvistiky, Matematicko-fyzikální fakulta, Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚFAL MFF UK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ufal.mff.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ufal.mff.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Košarko</md:SurName>
      <md:EmailAddress>mailto:kosarko@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Straňák</md:SurName>
      <md:EmailAddress>mailto:stranak@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Authentication Support</md:GivenName>
      <md:EmailAddress>mailto:lindat-technical@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.amu.cz/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace.amu.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.amu.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">DSpace - AMU repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">DSpace - repozitář AMU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Theses repository</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitář kvalifikačních prací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dspace.amu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dspace.amu.cz/?locale=en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dspace.amu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace.amu.cz,O=Academy of Performing Arts in Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDcjCCAlqgAwIBAgIIM+c8V7acfyUwDQYJKoZIhvcNAQELBQAwUDELMAkGA1UE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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.amu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.amu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.amu.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.amu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace.amu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace.amu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of Performing Arts in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Academy of Performing Arts in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.amu.cz/?set_language=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.amu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomas</md:GivenName>
      <md:SurName>Jungwirth</md:SurName>
      <md:EmailAddress>mailto:tomas.jungwirth@amu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ivanov</md:SurName>
      <md:EmailAddress>mailto:jakub.ivanov@amu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Digitální repozitář Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University Digital repository</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální sbírky fakult Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Collections of faculties of Charles University.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://knihovna.cuni.cz/rozcestnik/repozitare/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://library.cuni.cz/openaccess/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>dspace.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDWTCCAkGgAwIBAgIJAMmtMod1bH0fMA0GCSqGSIb3DQEBCwUAMEMxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.test.amu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Dspace - theses repository - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Dspace - repozitář VŠKP - testovací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dspace - theses repository - test</mdui:Description>
          <mdui:Description xml:lang="cs">Dspace - repozitář VŠKP - testovací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dspace.test.amu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dspace.test.amu.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dspace.test.amu.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace.test.amu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.test.amu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dspace.test.amu.cz</ds:KeyName>
          <ds:KeyName>https://dspace.test.amu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace.test.amu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUIXeeJOwdH6WobqxfsP2HkAke+PEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.test.amu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.test.amu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.test.amu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Dspace - theses repository - test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Dspace - repozitář VŠKP - testovací</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dspace - theses repository - test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Dspace - repozitář VŠKP - testovací</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of performing arts in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">AMU Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">AMU v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.amu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.amu.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ivanov</md:SurName>
      <md:EmailAddress>mailto:jakub.ivanov@amu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace.vsb.cz/sp/shibboleth">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace.vsb.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dspace.vsb.cz</ds:KeyName>
          <ds:KeyName>dspace2.vsb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace2.vsb.cz,O=VSB-Technical University of Ostrava,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhzCCA2+gAwIBAgIRAKxr8VW1PH3Wmd+ghY+tl+cwDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dspace.vsb.cz</ds:KeyName>
          <ds:KeyName>dspace2.vsb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace2.vsb.cz,O=VSB-Technical University of Ostrava,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhzCCA2+gAwIBAgIRAKxr8VW1PH3Wmd+ghY+tl+cwDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.vsb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.vsb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.vsb.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace.vsb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">VSB - Technical University of Ostrava</OrganizationName>
      <OrganizationName xml:lang="cs">Vysoká škola báňská - Technická univerzita Ostrava</OrganizationName>
      <OrganizationDisplayName xml:lang="en">VSB - Technical University of Ostrava</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">VŠB - Technická univerzita Ostrava</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.vsb.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://en.vsb.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jiří</GivenName>
      <SurName>Vychodil</SurName>
      <EmailAddress>jiri.vychodil@vsb.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace5.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace5.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace5.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>dspace5.zcu.cz</ds:KeyName>
          <ds:KeyName>https://dspace5.zcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace5.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJAOtOvs1fpn4QMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace5.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dspace5.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.zcu.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://dspace7.test.amu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Dspace - theses repository ver. 7 - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Dspace - repozitář VŠKP ver. 7 - testovací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dspace - theses repository ver. 7 - test</mdui:Description>
          <mdui:Description xml:lang="cs">Dspace - repozitář VŠKP ver. 7 - testovací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dspace7.test.amu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dspace7.test.amu.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://dspace7.test.amu.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dspace7.test.amu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dspace7.test.amu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dspace7.test.amu.cz</ds:KeyName>
          <ds:KeyName>https://dspace7.test.amu.cz~/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dspace7.test.amu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENDCCApygAwIBAgIUJkk/Cbgt+GkWbSV0657hHxW+C4swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace7.test.amu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dspace7.test.amu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Dspace - theses repository ver. 7 - test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Dspace - repozitář VŠKP ver. 7 - testovací</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dspace - theses repository ver.7  - test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Dspace - repozitář VŠKP ver. 7- testovací</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of performing arts in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Akademie múzických umění v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">AMU Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">AMU v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.amu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.amu.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ivanov</md:SurName>
      <md:EmailAddress>mailto:jakub.ivanov@amu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://easygrant.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">easygrant.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">easygrant.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://easygrant.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://easygrant.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://easygrant.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://easygrant.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://easygrant.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-core02.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-core02.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBjCCAm6gAwIBAgIJAIzoRaj98d67MA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV
BAMTFXNydi1jb3JlMDIudXAudXBvbC5jejAeFw0yNDA4MDkxMDM0MDlaFw0zNDA4
MDcxMDM0MDlaMCAxHjAcBgNVBAMTFXNydi1jb3JlMDIudXAudXBvbC5jejCCAaIw
DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAJqKvUT26QjCVi3fg0FB2zZVHWUA
3k6hffZZ+ZcZlRs/wj2gb3480OUqkhNcZB2bKgjmnq5dUYdQfYv8m9w+HsPaJi9n
TQeJBiGhucWiczMgxxPL5qF7ZrhltpTwoGpmlbyAW6Oe7OiMZHFCnon6sOFs/erD
KQoZMde0HrimSovmeVlLcW2lrKjUM4kOr2DSpNDXCUOlX75wZycSPuclPG2dh6EJ
pFxvMxWYnw+rHQSaf2jTUscHJka3SljG6OiqfvnXUd7I8nulmWfDuEEdMgpi15pk
Kgg2KuK9fGtj1l6OXSekuP2Kof4ghmShfvAti4zSBzDILe8TUKjynr+QXyS3iR86
i/NeXKI8M0iQuyLcH0JLFzocGlMzXxTUrZrqwBnJ9XsGjFVWzIlDvfHpULLQPoAZ
eFkOCBvxmZs2JzPw1qByXJt3uM0Gfj0twKD13RB1PPJ8Odcl/MzXfsLzj0Zvkk0E
yR/oAmI52M7HSJQasVqN2OEGhDLOLvklG+DY0wIDAQABo0MwQTAgBgNVHREEGTAX
ghVzcnYtY29yZTAyLnVwLnVwb2wuY3owHQYDVR0OBBYEFF2y2kmywj5eGnwdIkJ9
O7/EsqxdMA0GCSqGSIb3DQEBCwUAA4IBgQAQq8cRPe/WIjItD7ClDyHyh8PBx+N3
Fu17F9o0hfkG9iej3jsQ2jPyAZXGRZNHmRgKXFZKKxY29v6WFlg73lp4F2V7698+
wjAeQw2Kq5Ult93cI7EsyZ5N1J9JBdW6T2/v6OZpNBKilA0KYc67Ctxduqy28DoO
dRvNeG+btFT/1XgzXqJxvNnSuFiOrUiCuTDgAoI2dUR3ON4H3N1Yzikg2vZLbvV9
HKiefudndSTCG3t13lUQ2Fu8iO5URnf7MEYWD8n74xi241sZeXT7xQub+qZAfIyE
Eh/IyCWqDiR8s5WELnYfEupnFilLH8jYT0ojSiBo+ROnY24CYv/CYA1dfUxk/vAr
w6e98IJuuJRwgijZOskCWwQzm9Tljg/Fn5V9UTeeBw5kgOwvn5wpFMmEGIrHjVB+
ryMvsTLbEHAh7ejZmo8fs9Io+NBr6fH9mskEM+Hvp5XKUpbL5jL7WNnYVQIztc5j
RLloUPzUjBg8/Ns2p+/rZEEPBpCuHn+jb1w=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://easygrant.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Vesely</md:SurName>
      <md:EmailAddress>mailto:frantisek.vesely@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://easygrant2.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">easygrant2.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">easygrant2.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://easygrant2.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://easygrant2.upol.cz</mdui:InformationURL>
          <mdui:Logo height="62" width="200">https://easygrant2.upol.cz/Images/Up_footer_gray_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://easygrant2.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://easygrant2.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>win-66g0ock6sfb</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=win-66g0ock6sfb</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJAIptPP0QrtrcMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant2.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant2.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://easygrant2.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Frantisek</md:GivenName>
      <md:SurName>Vesely</md:SurName>
      <md:EmailAddress>mailto:frantisek.vesely@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://edu.ista.tacr.cz/ISTA">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2019-01-30T17:35:38Z"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TAČR - Technologická agentura ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">TAČR - Technologická agentura ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tacr.cz/index.php/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh0CBFhKqfowDQYJKoZIhvcNAQELBQAwXzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh0CBFhKqfowDQYJKoZIhvcNAQELBQAwXzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://edu.ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirect"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edu.ista.tacr.cz/ISTA/PUBLIC/saml/SAMLAssertionConsumer" index="0" isDefault="true"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceName>
        <md:ServiceName xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Technologická agentura ČR</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Technologická agentura ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.tacr.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.tacr.cz/index.php/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radovan</md:GivenName>
      <md:SurName>Lupták</md:SurName>
      <md:EmailAddress>mailto:luptak@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimír</md:GivenName>
      <md:SurName>Kubíček</md:SurName>
      <md:EmailAddress>mailto:kubicek@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.kfbz.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital library of František Bartoš Regional Library in Zlín</mdui:DisplayName>
          <mdui:Description xml:lang="en">František Bartoš Regional Library in Zlín</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kfbz.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">KFBZ / Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Krajské knihovny Františka Bartoše ve Zlíně</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kfbz.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.kfbz.cz/ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.kfbz.cz/ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>G8_Lyvd82FsTfVPpqTxYSZ4q0CaONQog7SIQVToHgqc</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kfbz.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kfbz.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="en">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Kfbz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Kfbz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Františka Bartoše ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.kfbz.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.kfbz.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Zahrádka</md:SurName>
      <md:EmailAddress>mailto:zahradka@kfbz.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Libuše</md:GivenName>
      <md:SurName>Pavlicová</md:SurName>
      <md:EmailAddress>mailto:pavlicova@kfbz.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.kkvysociny.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Vysočina Regional Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius KKVYSOCINY digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kkvysociny.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna Vysočiny</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius KKVYSOCINY</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kkvysociny.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.kkvysociny.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.kkvysociny.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>w5Pakoa7-PMiee6cWyJVUy8TuHta5z5WPyGaZTWnIHE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kkvysociny.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kkvysociny.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Vysočina Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Vysočiny</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Vysočina Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Vysočiny</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.kkvysociny.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kkvysociny.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Král</md:SurName>
      <md:EmailAddress>mailto:kral@kkvysociny.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.knihovna-pardubice.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital library of the Regional Library in Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius - Digital Library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Krajské knihovny v Pardubicích</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>-nuVLSqhZqYMgZ-2NnmCDbk8BQw8ppp6_N80pmVNVYQ</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.knihovna-pardubice.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Kramerius - Digital Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Digitální knihovna Kramerius</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional library in Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna v Pardubicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.knihovna-pardubice.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.knihovna-pardubice.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radek</md:GivenName>
      <md:SurName>Goláň</md:SurName>
      <md:EmailAddress>mailto:r.golan@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Monika</md:GivenName>
      <md:SurName>Pospíchalová</md:SurName>
      <md:EmailAddress>mailto:m.pospichalova@knihovna-pardubice.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.knihovnakv.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Karlovy Vary Regional Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius KKKV digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovnakv.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Krajská knihovna Karlovy Vary</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius KKKV</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.knihovnakv.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.knihovnakv.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.knihovnakv.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>DhD-v4548ndNW1wy17KAOAdmcpSeTRvcKoev00JcEIo</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGYHbXNzDANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjUwNzE4MTMyMzMwWhcNMzUwNzE4MTMyNTEwWjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCfeJiEuxOXrQhUHOxiOEzvTa/c8OTHMDueX07WFUTfeuSasLszQV+N/7yPqvo10tfqKCp6RCLE8krgbGFf+KRATi2u+PWESZghoyDGpyMnksZPg7B9zSkMMFhdubXMLRjz1R747O5vT3DeZh3r0gDXagOKQ8fOzP05XbZbW7scJh5bRniUe946Mcc4mEuXVgSf7jeyfo/lrX631bg6lY6Zkhbz0/fUUs0MLcsyCvioVeBDzr9pjPJ9l0+I81j3DWgDqZTU7xhPAElD86yThncZAUES3eRqmJJnD/L7R8yhdGByXRUrLGwyJiqmTdbbeQw+qvETr0m+3QRP+OeMiyKVAgMBAAEwDQYJKoZIhvcNAQELBQADggEBAGEaKZLVmIplDqDa14P3wbEeKkuHpof+z5Rm/cSmEnABsgolmu94LrGxeOw+Nl3/tungnH4rcIcbV1RMniagRw4+CPBGKmkzH2g8U/qMUY6oOxd/DXdUjae/1EfIyPN/oJfdeMYsKg1RbOcRETZ+2kObMhufyWc/af0etWz0bv+M+cNnMjKUU7DuwN6jJouAE7743CCJZp+pCTILrvuHYN08h3nvFqX+MFNemBIVRDvYXknM9W5C2vU6G8smne/Yvl0XoUaBpubKbf9xtwRhMl35WpijRsvtksrVJAhW65WARbCJzdOHjQTR3KyypOenKAFltjDSH8VYx3eN9y5TVyE=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.knihovnakv.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.knihovnakv.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Karlovy Vary Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská knihovna Karlovy Vary</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Karlovy Vary Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská knihovna Karlovy Vary</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnakv.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnakv.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Evžen</md:GivenName>
      <md:SurName>Jakobi</md:SurName>
      <md:EmailAddress>mailto:jakobi@knihovnakv.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://eduid.kramerius.nkp.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library - Kramerius 7</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library - Kramerius 7</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>7MTvxy2eHV-j2QJsLs0VpD9Tw7u0OttZvXzSGrvci5k</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGcm1curzANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjYwMjI2MTkwMzI4WhcNMzYwMjI2MTkwNTA4WjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCNZLYCM68iX8WZy6V0ThqOs4LYENmUk6vIGCXb1WbSsI8a/EKVUxsR9zWO6IlaHyTZCtrWS007DFr6IF14gvhitGgkDMkO1ylI7n56fdgdU3D6VK+IMs9WbIiGEr/U0Rq2zm+IKcU/UgUbtC508DLqaBchuW5vP3RPSby8E6ld3crYjpQjy8djr7sf+Z3PHFpZIM+wHqn8F82i6fvlgZJVupipUfPpftAA6NNpGCe4Sm6cdMJsMu2JR1wmvgbMX7gdS/TFP3KvcqFJUQvLU5e5X9d9CS33NOW8pvnWxnnKoJr0JUwSm9QfQXpVY4iZ1Axx4HEbFFdCndaNCVcCvaR9AgMBAAEwDQYJKoZIhvcNAQELBQADggEBAH3Frr5w5fad9SJlHpFANDMjoimsxEINgC07KwzibWIN5LnWrFlMadHSAvGwKT1RHo894ASOMDad36e5m68t9FpyfMfWP8yxPnN/P+JJ7+dab8Vtrz+YUvYh20FVOYQGOK72N/4P7v4yDEz79bDoLJ7+a5+6/R+xpPdDZIJ5IKUFhQo9jxerSDB2Ux597RxLJJxNYaso4ESGg4K142oWXMadFHpj7X3FoWMM0lLe1+SQbX3gCl90R8NFIvHIS+kCICG0vtlpHKlZB81wje/tlgzoEbVntrSAhkrStfW1AF9SmXAmRxxaPt7FrfDTRDpDblfENFxgqfFxHgcLYLUtIaw=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">NDK</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Holomek</md:SurName>
      <md:EmailAddress>mailto:jan.holomek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kotrba</md:SurName>
      <md:EmailAddress>mailto:pavel.kotrba@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://eduid.kramerius7.nkp.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library - Kramerius 7</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library - Kramerius 7</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna - Kramerius 7</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kramerius7.nkp.cz/terms</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>7MTvxy2eHV-j2QJsLs0VpD9Tw7u0OttZvXzSGrvci5k</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kramerius7.nkp.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">NDK</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Holomek</md:SurName>
      <md:EmailAddress>mailto:jan.holomek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kotrba</md:SurName>
      <md:EmailAddress>mailto:pavel.kotrba@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.kvkli.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Regional Scientific Library in Liberec</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius KVKLI digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.kvkli.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Krajská vědecká knihovna v Liberci</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius KVKLI</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.kvkli.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.kvkli.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.kvkli.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>iAPZHYaemz5I0q3c-Dv5A2M1ye_icHgiMvpPhnBgysg</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGZIEp6FTANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjUwOTA2MTgyNzU1WhcNMzUwOTA2MTgyOTM1WjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC8/WnGHP+ZoCiQbKbMpXdUbyfpJ93aOvcWlznOYYEdBbuU+QIbrZkZ2iuwHaNovGz5yVg5KJkIGaKDnE20QUMvrsdSys3VyvUpkJWJmvSiuIz9ST9ZTmTOp1cYWXkY8bx3DB4xulA4cz1yOCFczsXeJf1v/wGOYpdRbNtB1qkIbUwpEuSetGXHa9F2vREmHSU6fFy8aSQ7Dd7mRRYyyDuaTTCW+DHzrkRvCn4BcbvzAEQDc7XACciHPhKGuZ7O9c8aEeTNIr8z/HbXr/g5aKnVSn2qVdZDEUpGn+pIUIC6vNtLAtASu7K37lv/XxnMa6CXXQqVwh229rkpFXnvMDspAgMBAAEwDQYJKoZIhvcNAQELBQADggEBABdBjr2biLpidozRT0CslXG4nhdazjK4zJrdM93usXDkApBvJRjVpjbSRvGwco9wwPCw33eegzlYg/J3pZ5yZxRImIwP6+JM80eMPfDFOKxM4W60YerIMEkIJu0sVG/RXoVmhdHoLj/J/WrJr5+5Tf/COFo7frGcnN2mq1v+LlYsD98qGHRr5iNAFaaYFe4Zs5MPfffl6SqBXgCTXGlOQ3Qai27kNiDGfZkLuP6OzFQumIFeN5iXpv6CzyPJMbjk6Oi0V5tD6WPiH5Gm5R+3qH6CQzq6WSVgWIU2ZMwnBR6BBrGPqL0w3GO1vACLQCmE157juh4owKYnGMmD9NeJU0Y=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.kvkli.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.kvkli.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Regional Scientific Library in Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Krajská vědecká knihovna v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Regional Scientific Library in Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Krajská vědecká knihovna v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://en.kvkli.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.kvkli.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Miroslav</md:GivenName>
      <md:SurName>Filanda</md:SurName>
      <md:EmailAddress>mailto:filanda@kvkli.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Kříček</md:SurName>
      <md:EmailAddress>mailto:kricek@kvkli.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.mjh.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Museum of the Jindřichův Hradec region</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius digital library of the Jindřichův Hradec Museum</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.mjh.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Muzeum Jindřichohradecka</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius Muzea Jindřichohradecka</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.mjh.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.mjh.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.mjh.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>8GuxC5b4N1wc17dbkBUBB6vhoYCXGiufHCwFDjJbIOY</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.mjh.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.mjh.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Museum of the Jindřichův Hradec region</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Muzeum Jindřichohradecka</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Museum of the Jindřichův Hradec region</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Muzeum Jindřichohradecka</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mjh.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mjh.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Vokáč</md:SurName>
      <md:EmailAddress>mailto:vokac@mjh.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.mlp.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Municipal Library in Prague</mdui:DisplayName>
          <mdui:Description xml:lang="en">Municipal Library in Prague</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.digitalniknihovna.cz/mlp/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Městská knihovna v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Městská knihovna v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.digitalniknihovna.cz/mlp/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.digitalniknihovna.cz/mlp/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.digitalniknihovna.cz/mlp/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>9rNaMm8plNTBVwzAMwtNfx7g8HmdBdcpkmubmyiklKQ</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.mlp.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.mlp.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Municipal Library in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Městská knihovna v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Municipal Library in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Městská knihovna v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.digitalniknihovna.cz/mlp</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.digitalniknihovna.cz/mlp</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Černý</md:SurName>
      <md:EmailAddress>mailto:ondrej.cerny@mlp.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Světlý</md:SurName>
      <md:EmailAddress>mailto:michal.svetly@mlp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.msvk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Moravian-Silesian Research Library in Ostrava</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius MSVK digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.msvk.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius MSVK</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.msvk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.msvk.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.msvk.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>UKwvp_matzMRhFV1KtqSZEcrkp-lgUf-wAPZL0c5jL0</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGXQLbmFDANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjUwNjA1MTUyODM3WhcNMzUwNjA1MTUzMDE3WjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCszQUI2yYFroTczptt5fu2cj6z5p1Dqb2WSHBFwyo5c/o+XDJdfTO28zc2XvM0rsM2ndNiac7JTNjubtUz2+UfbvDkS1rq8m4LM5hCZLYa7CrLl8U80efm9fQ214m1KxigYmvzMNPSGMb+x/tCca03UCyrHpFjBkswT6jKz7+X7LM6VOZImrYsefVR5sg3NDY78UxzPwnMISJSJHRQ+cmn0z282LsTo+TqQ5/RLlnSfwiBhkWenLkNk66RaLJUQeyfcmQaF3UsSbblFVUup0Nu+IqV9PEbWDzMpfWxSrnbb6YXy2/QcFgu0ydLp0HaPuD3euYqAW/UMhQnocVkW+QBAgMBAAEwDQYJKoZIhvcNAQELBQADggEBAFfV8lkefbmL+Tb498xpF7/mjpIk/HNrGjGtkg2TMD6lfxgEeJdgj2t+28r8FobIWJduy56FaBT17YArkN2PJpow6o94RPW8HHXiBQDekAwqKlwJ8Bj8Zdf7IkHtuNE2Cavn1s+TBedPhJ8LzP9fp3PK/13IYyJLsooKpdlUsV45CBgj2DlFMHjH2syto+GR4baQ5S0FyY0n4rtXdEmtf0Xfu4ab82gW5mEBOPS8iACod3SxOEopLS0xF7mvL5d25PI792ekyyoAQ306ZM/+32zPktS2rr76nxPXZ+WxupugC8kkdXkJHjfBEd51qQbPFa+Mof3jBdy1OVjLB4NpwLY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.msvk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.msvk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Moravian-Silesian Research Library in Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Moravian-Silesian Research Library in Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravskoslezská vědecká knihovna v Ostravě</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.msvk.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.msvk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nováček</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@msvk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.npu.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The National Heritage Institute</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius NPÚ digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.npu.cz</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Národní památkový ústav</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius NPÚ</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.npu.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.npu.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.npu.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>WWiZMkR5oKy2oN9ARLuj9johLkQB_6TxRunPxKKfdPI</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.npu.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.npu.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The National Heritage Institute</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní památkový ústav</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The National Heritage Institute</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní památkový ústav</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.npu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.npu.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Volfík</md:SurName>
      <md:EmailAddress>mailto:volfik.petr@npu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Dohnal</md:SurName>
      <md:EmailAddress>mailto:dohnal.martin@npu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukáš</md:GivenName>
      <md:SurName>Kypta</md:SurName>
      <md:EmailAddress>mailto:kypta.lukas@npu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.ntm.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Technical Museum</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius NTM digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.ntm.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Národní technické muzeum</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius NTM</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.ntm.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.ntm.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.ntm.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>tl88j1poJrOno18sGoIblbxmNvxrK3nDcon_TwEz2N4</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIICoTCCAYkCBgGaclrMCjANBgkqhkiG9w0BAQsFADAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwHhcNMjUxMTExMDk1NzI0WhcNMzUxMTExMDk1OTA0WjAUMRIwEAYDVQQDDAlrcmFtZXJpdXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCcSv5XrtUPAMIf128dkcLes7dezTS97c/aXQaXbrItuk7bF6QqPMdq9HD21zlJ/DFwIWSftRSvLhNZlJjNeaxcQDUoy5+S1EvXgUQRZhImw2YFwO/grFb248uqjsQXlfNAHfTt6ZhbcUZC4ibHXv/c6mm0wHqBaGlATAIu6/XS9GJWP4RYVkjseLv0yx4Vq0qp5oElWwgtwU0r74Bn3Gn9xSeoC2NwEHJvzPuTq9aUgolG1EESx3dg+/XJ2FIVkCzEgkGa/rMFt4VM4aqukL9z6O3bbqbMOwx1+260J26avl7imAeP5rEaR86KnjCcJDNzx/GO1q5YvqXFCIVpmlVbAgMBAAEwDQYJKoZIhvcNAQELBQADggEBABYI57GDJzhWdrLCwRQYYHKlDULLMGm/zB7hjt5Sx4rY1YUrmpjnQdtOVFJHQoN9XVC5twbundIw2BbOtYymuyi9yAWKenMJZoxJgj70nB3T6aVLy3h5nxF1X76TQ8nVG7yeD/yF29uSM2OfTkNrAyeEdQ5pgDW4p33g42jEKuym9BTloBTcYr1X+F5F98oxuZB2y/l/XTjjmyr9iBsHWShbtp62QD6Yt2vdT4EO6vtsYOi+PdcIGZures1PB8pLQJ62G1toIs+MRQ/2hEWSm3FqSqZz12X+EFVwX7GJ+/VGaonOeasHZx3p8+YalLtKJe/q5S9ePi+7Jann745hW2M=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.ntm.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.ntm.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Technical Museum</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technické muzeum</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Technical Museum</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technické muzeum</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ntm.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ntm.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kraus</md:SurName>
      <md:EmailAddress>mailto:pavel.kraus@ntm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.nulk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">National Institute of Folk Culture</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius NULK digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.nulk.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Národní ústav lidové kultury</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius NULK</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.nulk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.nulk.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.nulk.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>D7FsG7RglygYnyJF8mBaRXgRlRSZiIThnXyvyJy8pnU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.nulk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.nulk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Institute of Folk Culture</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní ústav lidové kultury</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Institute of Folk Culture</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní ústav lidové kultury</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.nulk.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nulk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Rájecký</md:SurName>
      <md:EmailAddress>mailto:david.rajecky@nulk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vítězslav</md:GivenName>
      <md:SurName>Jaroš</md:SurName>
      <md:EmailAddress>mailto:vitezslav.jaros@nulk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.svkkl.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Central Bohemian Research Library in Kladno</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Central Bohemian Research Library in Kladno</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.svkkl.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Středočeská knihovna v Kladně</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Středočeská vědecká knihovna v Kladně, příspěvková organizace</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.svkkl.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.svkkl.cz/about</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.svkkl.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>uzWF-f5ToRgpS4j9RsVRmjEv8jEshwkLeojex765TbA</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.svkkl.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.svkkl.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Central Bohemian Research Library in Kladno</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Středočeská knihovna v Kladně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Central Bohemian Research Library in Kladno</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Středočeská knihovna v Kladně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://kramerius.svkkl.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://kramerius.svkkl.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Andrej</md:GivenName>
      <md:SurName>Chalupník</md:SurName>
      <md:EmailAddress>mailto:chalupnik@svkkl.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michaela</md:GivenName>
      <md:SurName>Kukić</md:SurName>
      <md:EmailAddress>mailto:kukic@svkkl.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.uk.tul.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius TUL digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.tul.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Kramerius</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius TUL</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.tul.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.tul.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.tul.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>7JCZuCwVVLfc8h8ZizTutP7-9HdFS1LScr0tNLG3Cqk</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.uk.tul.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.uk.tul.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Technical University of Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Igor</md:GivenName>
      <md:SurName>Kopetschke</md:SurName>
      <md:EmailAddress>mailto:igor.kopetschke@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.uzei.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Institute of Agricultural Economics and Information</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius UZEI digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Ústav zemědělské ekonomiky a informací</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius UZEI</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://dk.uzei.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://dk.uzei.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>lcjysC6pLcOE8lG1HSz_8on-OR89z1lXlpJIkZhFYdE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.uzei.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.uzei.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Agricultural Economics and Information</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav zemědělské ekonomiky a informací</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Agricultural Economics and Information</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav zemědělské ekonomiky a informací</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://iaei.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.uzei.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kravka</md:SurName>
      <md:EmailAddress>mailto:digitalizace@uzei.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://eduid.vkol.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Research Library in Olomouc</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius VKOL digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.vkol.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Vědecká knihovna v Olomouci</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius VKOL</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.vkol.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.vkol.cz/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.vkol.cz/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>xQ03jzO_0YZxqC0AR1F8mb9gNc8BTGNiBuN7rKWIDH4</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.vkol.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduid.vkol.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Research Library in Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vědecká knihovna v Olomouci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Research Library in Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vědecká knihovna v Olomouci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vkol.cz/olomouc-research-library</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vkol.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radim</md:GivenName>
      <md:SurName>Vančo</md:SurName>
      <md:EmailAddress>mailto:radim.vanco@vkol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://eduiddemo.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">eduiddemo.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eduiddemo.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">UP projects management software</mdui:Description>
          <mdui:Description xml:lang="cs">Sprava projektu na UP</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://eduiddemo.upol.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://eduiddemo.upol.cz</mdui:InformationURL>
          <mdui:Logo height="85" width="200">https://eduiddemo.upol.cz/images/UP_logo_horizont_cerna_cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://eduiddemo.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://eduiddemo.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>win-66g0ock6sfb</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=win-66g0ock6sfb</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJAIptPP0QrtrcMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduiddemo.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://eduiddemo.upol.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackeho Olomouc</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>David</md:GivenName>
      <md:SurName>Ketner</md:SurName>
      <md:EmailAddress>mailto:david.ketner@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://enem.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://enem.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://enem.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>enem.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=enem.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID8TCCAlmgAwIBAgIJAND73r3pH7J2MA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://enem.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://enem.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://enem.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://entk.goodatit.com/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NTK Service catalogue</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NTK Katalog služeb</mdui:DisplayName>
          <mdui:Description xml:lang="en">NTK services catalogue.</mdui:Description>
          <mdui:Description xml:lang="cs">NTK katalog služeb.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://entk.goodatit.com/help/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://entk.goodatit.com/help/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUdTuWBuaH73/bQa8u6Az7Vwy6apswDQYJKoZIhvcNAQEL
BQAwITEfMB0GA1UEAxMWa2F0YWxvZ3NsdXplYi5udGtjei5jejAeFw0yMjA4MjMx
NDU2MzNaFw0zMjA4MjAxNDU2MzNaMCExHzAdBgNVBAMTFmthdGFsb2dzbHV6ZWIu
bnRrY3ouY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQC/g60pmS7w
Xtd6vJ6TakweNYpY7TjPyo7AGG4p02nyKmopujMNYhNJ68udCrhYiT2VcCALSIHU
YFUxwUFzPACxlnVqJ71Pr8W8KzSztpCqKG1/dCnoL+GAJs9Y7OTIFRJLIOamPRUt
0OgCfCper1Au9NtjagKayVvoPm0F4oNbXvLnud54X/l6eKrZ5Dvqev+8g+CvKWIE
nVrkM+53JfXJ9oZeWGEw7nDxTR+I0Z55WzlAqbPD5hhfr7LJgf1z/unJiaqKfLzH
SAL6bI4yFmdjSeFaQqQh59ZpkOGj4BvKqz+GjuJkS61A3+KKqEzI8+1QzEAjQELv
3AppRMu4hg0I+3ebJHIvOdObI9JiRZu51RPZjsjZYh4+dlQwqZKzrDMfj0s1YONn
31D7aalOOoWNP5BrR4HAjyUVXUrgWwGfbCDUDhGJ2bV7G67mH49O3j7GcmXOUkRc
ogkmfhuAkhYI7ntBh6ZQwK5OqF+C/V63P9kAnZrSl3ZsR3faeyGK0GUCAwEAAaNE
MEIwIQYDVR0RBBowGIIWa2F0YWxvZ3NsdXplYi5udGtjei5jejAdBgNVHQ4EFgQU
eunB6SK4241kBOBxScyytLCv528wDQYJKoZIhvcNAQELBQADggGBAB6tEf0wZ7pL
rZM6MAo3lu8KJuhl/juuHXT4riglLgOndU4TCJNsbfKlPDwFRWRE+aOr7Zjc8A0q
DxY8IwxbvNjOfG8uwHXifsVD8qjPFMBVdZSfCfOAcnGi26wXfTvezeC7PDNI8jN+
IUT6Il1NmgbilMbbR4jL1HdrWDmRzVPI/pI61sx8//vMROuRNYR1f94bhSnF3Vv2
0OniDuT1bQDcFq9GwaqKbo8Qc1NPDDti6GSlndYuSh8ZDn5l0MJ4G1sDUcfbT6uN
wW02CAHMCh5mDAS31xGF+qUmkaKK42zX4k67KQiulFuYfqnnzmglhUjzJNd5BsmV
no9F2EvlRBrzc7m/DtB9puFAVcoj1Smxduoh+bZpwN4fM/m+pZLDld2RPtuCpAzw
rEFZil9YLdNGkpBlgk3VkP9BcObeqyEp2TC42PkRNIP1ce+TdyVhO+j9tthNZMyk
hzgqCb5dpGbtdfUhvxnnwqIPN2YxFB+9Q4eKaMgpBfbHJ9MtcJ9+Xw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://entk.goodatit.com/saml-login" index="1"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">goodatit.com</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">goodatit.com</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://entk.goodatit.com/help/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://entk.goodatit.com/help/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://erms.czechelib.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CzechElib ERMS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ERMS projektu CzechElib</mdui:DisplayName>
          <mdui:Description xml:lang="en">ERMS of project CzechElib.</mdui:Description>
          <mdui:Description xml:lang="cs">IS pro management elektronických zdrojů projektu CzechElib.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.czechelib.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.czechelib.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://erms.czechelib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://erms.czechelib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>erms.czechelib.cz</ds:KeyName>
          <ds:KeyName>https://erms.czechelib.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=erms.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIJAP4qKzMLz0FXMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>erms.czechelib.cz</ds:KeyName>
          <ds:KeyName>https://erms.czechelib.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=erms.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIJAP4qKzMLz0FXMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://erms.czechelib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erms.czechelib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://erms.czechelib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CzechElib ERMS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ERMS projektu CzechElib</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Operator of ERMS system of CzechElib project.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Provozovatel ERMS projektu CzechElib.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://evpn.isibrno.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">eduVPN ISI Brno</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eduVPN ÚPT Brno</mdui:DisplayName>
          <mdui:Description xml:lang="en">VPN service for ISI CAS</mdui:Description>
          <mdui:Description xml:lang="cs">Služba VPN pro ÚPT AV ČR, v.v.i.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://evpn.isibrno.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://evpn.isibrno.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://evpn.isibrno.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://evpn.isibrno.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>evpn.isibrno.cz</ds:KeyName>
          <ds:KeyName>https://evpn.isibrno.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=evpn.isibrno.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUPSD6X/dQ8hp5QE9jC1wiFVQxcdIwDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAxMPZXZwbi5pc2licm5vLmN6MB4XDTI1MDMyMDEyNDUzNFoX
DTQ1MDMxNTEyNDUzNFowGjEYMBYGA1UEAxMPZXZwbi5pc2licm5vLmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAyxEcVSkFHappgT/N0Q05WaeB+Xi+
dFC1/Z1nLmarJnfmGzKOBXyTdah0IhaCJup60dRCJe+qFY4Q1NEQ+3Fsb6qXlyuA
WxlURsfHspV/c5L50JwWW0asFO31gCXHnK1BAYv83V5c4UlUxbNSClZdYoAlrGJC
9w2Uq3xo+Yf5UtvggeEutgiNYIgaKWY76NNECqApWmLqN7SdcDW/VHYmSfrUNjuD
lQfpnGPd8di+/umopR/m1FdzFhZTPenwFymYDuC5gFkiVjd0OcZTNudervNmq9OK
8IgZrQ18a0QoVEorI88UtiGVKS5zAOzWrHlJbjfRaOijd0FOthCAS1D+TKhNDe8M
ize3L+4uBlx0S2IbdE8MvSVleBCgJ5bZzju8ng9OTtWxyjc76d3kwEJ9ehggfIwj
DkVv5RNYzYvXBvUDAQ6ZRIsVcQyqQ88pSYRP4fgZ5EV9T8UOvXvsCssbEZem3ytu
Gpmr124WtZfrO0tnLBnMr5PfByl+QvzH9H+7AgMBAAGjYTBfMD4GA1UdEQQ3MDWC
D2V2cG4uaXNpYnJuby5jeoYiaHR0cHM6Ly9ldnBuLmlzaWJybm8uY3ovc2hpYmJv
bGV0aDAdBgNVHQ4EFgQU0WtXGBbWZRHlKRx0wb0nvuIyiiswDQYJKoZIhvcNAQEL
BQADggGBAJ2G0SrsBnALrkyBXN1xGZTfpIwGXBfAbgIVfLJbyTKciLca+nWplxyf
tEozqobKaF/2PBk1ex85hSdnOcBob9+sAufFSIcNSpjEN8OTi0R/v7/1eN/Aw2qd
fO9mRwJC/MjwQh6fH/IVQXDNL6Bi3vfs0QcULHvkcJdb8H8LclprBtTYt/yCFkGM
Ct3TNOJoaBn3VWIQFFIvtSr4bwQ5eai9lvFcMdL6p2cGPWCIdJSnh1bg687+4qHT
smfGfNgmKxvdY2Z9Un2x77DjYN08GST9UI3xvHEI8EITe4siLDzPw9AQZKXlxV2g
eN+1+vzM68Ti9nZJvb4clU9bE4Lqm6ZOasIPDa1Q9vBKxI9H9UczGICCLEoEb7CC
zZu5cJ5m+b7wzp4RerAXpqzis9xZR8tSLWaEAwxA+r/PoqoicaiwyaLC9KDh+gqR
QLuc/fJm7wSpe0m3EMbgYkxxE0I58Y0q0lt89cMExSpYFEO2KetHjuiuOmO1cmhl
FNSq+DxhKQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://evpn.isibrno.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evpn.isibrno.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://evpn.isibrno.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">eduVPN ISI Brno</md:ServiceName>
        <md:ServiceName xml:lang="cs">eduVPN ÚPT Brno</md:ServiceName>
        <md:ServiceDescription xml:lang="en">VPN service for ISI CAS</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba VPN pro ÚPT AV ČR, v.v.i.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Scientific Instruments of the CAS</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav přístrojové techniky AV ČR, v. v. i.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">ISI CAS</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚPT AV ČR, v. v. i.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.isibrno.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.isibrno.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Marek</md:GivenName>
      <md:SurName>Vondra</md:SurName>
      <md:EmailAddress>mailto:mav@isibrno.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exa.civ.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Mitigating unwanted traffic</mdui:Description>
          <mdui:Description xml:lang="cs">Potlačení nežádoucího provozu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exa.civ.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exa.civ.cvut.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>exa.civ.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exa.civ.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUKq+DOUueIqqEoyhZ3uqZ1JlDsCUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>exa.civ.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exa.civ.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUO7814gSLC2PhgW0i8fMHM8wEcfYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exa.civ.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exa.civ.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cvut.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Bílý</md:SurName>
      <md:EmailAddress>mailto:Martin.Bily@cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exaddp.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS exaddp</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS exaddp</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exaddp.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exaddp.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2025</ds:KeyName>
          <ds:KeyName>exaddp.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exaddp.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEAjCCAmqgAwIBAgIUDx4k5JyFVxaLJLwtfpKQ0M0cR9IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaddp.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exaddp.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS exaddp</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS exaddp</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exaflow.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool exaflow</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool exaflow</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exaflow.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exaflow.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2023</ds:KeyName>
          <ds:KeyName>exaflow.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exaflow.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBTCCAm2gAwIBAgIUZnOqGUkhlum1IWM37dZzkLNQo3gwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAxMRZXhhZmxvdy5jZXNuZXQuY3owHhcNMjMwNjI1MTI0NDIz
WhcNMzMwNjIyMTI0NDIzWjAcMRowGAYDVQQDExFleGFmbG93LmNlc25ldC5jejCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKMYaay2edzTO9Ykb0rtoAAk
bv0g/D7o8nu60YDMVd2PyRtDYuja/xmPuogTOHqOPaEb4ZrUHM1FRXZpnxtDPg1R
0CtFzzbc0oUlVpjnwPUnAfdI2bJACbWuMIotl+bf6N1MJcGuDVGiQ+Y2ST51iA/4
3hUyjQw2tdzeALWD8DYz6+d01v1WjryF87BBgssqswPh5rHML491++eHrBFa8KLW
AsQRcFFE3lSBxit977iqSs8dkXC4MZ6Q9R1MfV9PrVe2H25BNoMpEV9lVMuStrTg
5f6KSqzOXX4xjbGMYiZ9AOmk38QVyMT/Maws/JHNQPW4Wlndhz8rp8re6x1YRmZc
LwV6wdzZEk5npW9YKzIyI8WdZCiFGoURkJv6P9tau3vsh1KhUzc4yRBjeE77muBP
L2m+qhWFEdwUf2VBQMrcoleENCSMnW8UCdN5M4nfeajKKC6ogO9/9OzhpS6BqoQ8
etKcFNyw+htZCxRyZqdrm22mC+ziWomZMllWPlS9XQIDAQABoz8wPTAcBgNVHREE
FTATghFleGFmbG93LmNlc25ldC5jejAdBgNVHQ4EFgQUvVfxRIf3DDF0JStrXjXZ
cx776SowDQYJKoZIhvcNAQELBQADggGBAGamUCDKsrssYgAnydRSfvQqviZl/S5j
l7H6HJ4CX8vPWuGTazXBmwCg6D6kb1OMcwoa8WK32ot206fpq08ms0l5uUUgr+xv
d32DoYTRK8rCYMYYCUnNlDwOl/dIP6HTy6e80LWFFWjuC9iUlsOWshkYls9aePWH
UI2BaApQV1p1kdRsyDxSYHvO6JkZ7mohN268ZYa6k9ccIysS7DazKEhCpy/2e6Mw
N1hZlSorgr3f5RBDv6uEM529+4cUagV87AkP/oMF5cMyE1QBqfUw8iDFWuERlwZ3
2zM7/P2+zdF4Sm60MR0Esf+7d0npbR7pkeLlWTnJYBgO6wUHSuvnaqDRSE3PrdMv
YC9b4CzPTN/9DCdRxs1IdGt+zyx9AvvxZh26k2BENlMOZ/epxf2rn+yEW4luSPgH
twZEIHztzhrUksBguijZFyqWxLaE/TGnhrKAs1Kdu1CcKVs/jVe5Zazk9g2yTiTw
S/YAOAN+NLAg9WhZpsMofvZ3BsEfcFxbFQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaflow.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exaflow.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exafs.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exafs.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exafs.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2020</ds:KeyName>
          <ds:KeyName>exafs.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exafs.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJANYkXwMAu26fMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exafs.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://exafs.tul.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">exafs.tul.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">exafs.tul.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tul.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tul.cz/info</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://exafs.tul.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://exafs.tul.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>exafs</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=exafs</ds:X509SubjectName>
            <ds:X509Certificate>MIID4TCCAkmgAwIBAgIUci2nYqWbMXWTzXMXaXnKApkuGi8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.tul.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.tul.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://exafs.tul.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://exafs.tul.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://exafs.tul.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">exafs.tul.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">exafs.tul.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Technical University of Liberec</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://extlogin.ctk.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CTK Infobank</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Infobanka ČTK</mdui:DisplayName>
          <mdui:Description xml:lang="en">CTK - Infobank - access to Czech national news agency's archives</mdui:Description>
          <mdui:Description xml:lang="cs">ČTK - Infobanka - přístup do databází zpravodajství národní tiskové agentury</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ctk.cz/sluzby/databaze/infobanka/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ctk.cz/sluzby/databaze/infobanka/</mdui:InformationURL>
          <mdui:Logo height="54" width="70">https://extlogin.ctk.cz/img/ctk-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://extlogin.ctk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://extlogin.ctk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>O=Internet Widgits Pty Ltd,ST=Some-State,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUcVdYtxFq4aysUkVIOGOcUuLbV/4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>O=Internet Widgits Pty Ltd,ST=Some-State,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUCbm3ZgMz7wfsCi27KZLEpFUyYAAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://extlogin.ctk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://extlogin.ctk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://extlogin.ctk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CTK Infobank</md:ServiceName>
        <md:ServiceName xml:lang="cs">Infobanka ČTK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CTK - Infobank - access to Czech national news agency's archives</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ČTK - Infobanka - přístup do databází zpravodajství národní tiskové agentury</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Czech News Agency</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Česká tisková kancelář</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">ČTK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ČTK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ctk.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ctk.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kodera</md:SurName>
      <md:EmailAddress>mailto:kodera@ctk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdeněk</md:GivenName>
      <md:SurName>Houdek</md:SurName>
      <md:EmailAddress>mailto:houdek@ctk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ezdroje.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Portál elektronických zdrojů Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University eResources Portal</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Portál elektronických zdrojů Univerzity Karlovy zpřístupňuje informace o elektronických zdrojích ve vědě a výzkumu, které jsou přístupné pro zaměstnance, studenty a uživatele Univerzity Karlovy.</mdui:Description>
          <mdui:Description xml:lang="en">Charles University Electronic Information Resources Portal provides access to electronic information resources in science and research, which are open to staff, students and users of the University.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://ezdroje.cuni.cz/napoveda.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://ezdroje.cuni.cz/napoveda.php</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ezdroje.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ezdroje.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>ezdroje.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ezdroje.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDWzCCAkOgAwIBAgIJAIkmH6sQjDyVMA0GCSqGSIb3DQEBCwUAMEQxCzAJBgNV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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ezdroje.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ezdroje.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://feg.ceitec.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CEITEC facility accounting and reporting system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Vyúčtovací a reportovací systém pro facility CEITEC</mdui:DisplayName>
          <mdui:Description xml:lang="en">Access to CF accounting and reporting system</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup k vyúčtovacímu a reportovacímu systému CEITEC</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ceitec.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ceitec.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>feg.ceitec.muni.cz</ds:KeyName>
          <ds:KeyName>https://feg.ceitec.muni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=feg.ceitec.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUJLRVHyv40YNYkRV+hiwzUoktaMYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://feg.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CEITEC facility accounting and reporting system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Vyúčtovací a reportovací systém pro facility CEITEC</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Access to CF accounting and reporting system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup k vyúčtovacímu a reportovacímu systému CEITEC</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CEITEC MU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CEITEC MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CEITEC MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CEITEC MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://ceitec.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://ceitec.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nováček</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@ceitec.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ffws05.ff.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ProCzeFor</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ProCzeFor</mdui:DisplayName>
          <mdui:Description xml:lang="en">ProCzeFor</mdui:Description>
          <mdui:Description xml:lang="cs">ProCzeFor</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.proczefor.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.proczefor.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stream1</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stream1</ds:X509SubjectName>
            <ds:X509Certificate>MIID5zCCAk+gAwIBAgIULurnMENzEqWhJpiVqCxBwbF58hQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ffws05.ff.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ProCzeFor</md:ServiceName>
        <md:ServiceName xml:lang="cs">ProCzeFor</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ProCzeFor</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ProCzeFor</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Arts, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Filozofická fakulta, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Arts, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Filozofická fakulta, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ff.cuni.cz/home/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ff.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jitka</md:GivenName>
      <md:SurName>Veroňková</md:SurName>
      <md:EmailAddress>mailto:Jitka.Veronkova@ff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://filesender.cesnet.cz/saml/sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FileSender</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FileSender</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNETs servis for sending files.</mdui:Description>
          <mdui:Description xml:lang="cs">Cesnetí služba pro posílání souborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://filesender.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://filesender.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://whoami.cesnet.cz/idp/images/cesnet-logo-40.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/filesender.cesnet.cz"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender.du1.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender4elixir.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/filesender.cesnet.cz" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender6.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/filesender.cesnet.cz/artifact" index="15"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky - administrator</md:SurName>
      <md:EmailAddress>mailto:du-support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://filesender2.cesnet.cz/saml/sp">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FileSender</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FileSender</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNETs servis for sending files.</mdui:Description>
          <mdui:Description xml:lang="cs">Cesnetí služba pro posílání souborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://filesender2.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://filesender2.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="99">https://whoami.cesnet.cz/idp/images/cesnet-logo-40.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://filesender2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://filesender2.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>filesender2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=filesender2.cesnet.cz,O=Cesnet,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIC+DCCAeACCQCE9o94rtGBqzANBgkqhkiG9w0BAQsFADA+MQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://filesender6.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://filesender2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender6.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender2.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky - administrator</md:SurName>
      <md:EmailAddress>mailto:du-support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://fsv.spotsuapp.com/shibboleth">
    <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">FSV Spotsu</mdui:DisplayName>
          <mdui:Description xml:lang="en">Spotsu dedicated FSV instance</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://fsv.cuni.cz</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">FSV Spotsu</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Spotsu instance pro FSV</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://fsv.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDczCCAlugAwIBAgIUfSNJKxxLKdqPPdfpuLFbbbFw0DowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDczCCAlugAwIBAgIUfSNJKxxLKdqPPdfpuLFbbbFw0DowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </KeyDescriptor>
      <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fsv.spotsuapp.com/shibboleth/post" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fsv.spotsuapp.com/shibboleth/artifact" index="1"/>
      <AttributeConsumingService index="0">
        <ServiceName xml:lang="en">FSV Spotsu</ServiceName>
        <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">FSV UK</OrganizationName>
      <OrganizationName xml:lang="cs">FSV UK</OrganizationName>
      <OrganizationDisplayName xml:lang="en">FSV UK</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">FSV UK</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://fsv.cuni.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://fsv.cuni.cz</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Urx</SurName>
      <EmailAddress>mailto:urx@spotsuapp.com</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas-pa.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based Traffic Analysis System</mdui:Description>
          <mdui:Description xml:lang="cs">Flow-based Traffic Analysis System</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/DS" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ftas-pa.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>emailAddress=kosnar@cesnet.cz,CN=ftas-pa.cesnet.cz,OU=FTAS Measurement - Pardubice region,O=CESNET a.l.e.,L=Prague,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIF8jCCA9oCCQDnHVMkc4tr3TANBgkqhkiG9w0BAQsFADCBujELMAkGA1UEBhMC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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas-pa.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas-ui.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ftas-ui.zcu.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ftas-ui.zcu.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">ftas-ui.zcu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">ftas-ui.zcu.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">ftas-ui.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">ftas-ui.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>ftas-ui.zcu.cz</ds:KeyName>
          <ds:KeyName>https://ftas-ui.zcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ftas-ui.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUTZG4emVLbm0nA9xDdEER9vGx0QgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>ftas-ui.zcu.cz</ds:KeyName>
          <ds:KeyName>https://ftas-ui.zcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ftas-ui.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUQ4q2K5sa3f6Zkz6M0bwk+MLJMi4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas.zcu.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas-ui.zcu.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ftas-ui.zcu.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">ftas-ui.zcu.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ftas-ui.zcu.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ftas-ui.zcu.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Čepák</md:SurName>
      <md:EmailAddress>mailto:cepakj@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based traffic monitoring.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring provozu na bázi toků.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/sluzby/sitove-sluzby-1/sitovy-monitoring-sledovani-ip-provozu-ftas-34</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/en/services/network-1/network-traffic-monitoring-ftas-34</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/en/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gc1.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas.cesnet.cz/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gc1.cesnet.cz/Shibboleth.sso/Login" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas2.cesnet.cz/Shibboleth.sso/Login" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gc1.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://gc1.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gc1.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHTCCAoWgAwIBAgIUIujHVD8eTPdPdauplqTKxyRep1MwDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAxMNZ2MxLmNlc25ldC5jejAgFw0yNjAzMDkxNDMyNTdaGA8y
MDU2MDMwMTE0MzI1N1owGDEWMBQGA1UEAxMNZ2MxLmNlc25ldC5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBAMXldmYsCl9BVmk02Kef4Gkh9FR6SeGh
12T6q3B/Uov7CUherHV9QhikssvfDqdu9rpN5SQ6V9OXwfLrrPQm0b9aPVd9q7sI
s4/izwTsMfpF5XpmYNcqzFAbI8AasCxOFuDKd2aUz5OpjyH+v+U+Qgw2G4Y+Hjsc
rOMKBPu86LT1c+OZalI1DdM3hRep3A9fqdpoNGU07c/jSEFQa8RPGiOa/xpXzk0R
JQvT7kC57V/o56dZ9XijsY8QEh/g5na4IsN3/bwp06Fs6yv4P7mNS75b9pDDnPtN
b2DL9pUrvRYhM+fZMHtEDquCGLJYXnuiHpIT4eBCi33xlrhzR8IUBAMXg69lGbtb
hvoY1MNkLcq/tEXogr4r5qyp47KMI9DZ57hVSXS2qqXNBDEGYe8lt3QftNkRvU2k
Slz/9y7CF16I9pFTuQQpfpmrkwk8V8YPoNNH6N6uTsWA5ZqdsbnijfiGb6G3Y5ZQ
iZRhXMZwgo+lmrOfJxq6Ev5O9RhmQsK2LwIDAQABo10wWzA6BgNVHREEMzAxgg1n
YzEuY2VzbmV0LmN6hiBodHRwczovL2djMS5jZXNuZXQuY3ovc2hpYmJvbGV0aDAd
BgNVHQ4EFgQUXQmuvB1Gvi1jgGHYazH1qdgsUgcwDQYJKoZIhvcNAQELBQADggGB
AL8QiI3+BlWbiHdrjlzforSzTQV9gBsV6CHhpx41xMcZvVRrC4KYC/3dFo4pWcnL
GK8pgj6rWPIUoF7aj9xaiXnhlMliNjbF4Hjjc2XwB2e/schFLI1to72dErNCzXZ0
+MYfP7lg5Oe+4nRxw5dAdA5c57OCpq6ebMVwr6NdLiTOO8d1Szp4ldvxzHdRNgi3
Qxqr4/gwEvBDB3pUjiiS75H/feloRKW81OC6dmKFlIPKDTTfdzWNjJ6Hs5rfWPKH
Sgc0f+y3Gd48UsT7mUoRPwyxZiGPf28nzGrUWG03l32e3jpdP3P6XdQXIRImLJ0P
Wo+UzdpD/3YkqYiNUs1cpEoHd/OBlJcap7DJuxpNiwNCp4j/d3X/86rNeTtJVPsq
HnifvyK+HXpmYnWy0DEI5IBf0gVxQ3NDpWek2bW5jcUaIoT8bx+cngCYkg5NCtjk
mgqen7fOVjanxvs783H7KIyK1p4mz8w+xkSwhN8Eg+FEbOXzCEnIu0Vbbi8QTXFi
nQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gc1.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Flow-based traffic monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring provozu na bázi toků.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Košňar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ftas.fit.cvut.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ftas.fit.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ftas.fit.cvut.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEmzCCA4OgAwIBAgIRAKovif7NJ2S4neCPUbevAfowDQYJKoZIhvcNAQELBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ftas.fit.cvut.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">FIT CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">FIT ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Information Technology, Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fakulta informačních technologií, České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.fit.cvut.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.fit.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Bílý</md:SurName>
      <md:EmailAddress>bily@fit.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://g3-du.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">G3 system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">G3 system</mdui:DisplayName>
          <mdui:Description xml:lang="en">G3 system - monitoring sitove infrastruktury datovych ulozist</mdui:Description>
          <mdui:Description xml:lang="cs">G3 system - data storages infrastructure network monitoring</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>g3-du.vm.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://g3-du.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=g3-du.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIJALOMPo1pZOxOMA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://g3-du.vm.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://g3.bb.ces.net/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET3 backbone - internal monitoring.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET3 páteř - interní monitoring.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Internal backbone monitoring with G3 system.</mdui:Description>
          <mdui:Description xml:lang="cs">Vnitřní monitoring páteře systémem G3.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://g3.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://g3.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://g3.bb.ces.net/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3.bb.ces.net/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>g3.bb.ces.net</ds:KeyName>
          <ds:KeyName>https://g3.bb.ces.net/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=g3.bb.ces.net</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHTCCAoWgAwIBAgIUQKxft19XB9/KmjXS8811cvLA0IUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.bb.ces.net/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.bb.ces.net/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://g3.bb.ces.net/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">G3 monitoring - CESNET3 backbone.</md:ServiceName>
        <md:ServiceName xml:lang="cs">G3 monitoring - CESNET3 páteř.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Internal backbone monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Vnitřní monitoring páteře.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Košňar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://g3.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">G3 system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">G3 system</mdui:DisplayName>
          <mdui:Description xml:lang="en">G3 system - monitoring site e-infrastruktury</mdui:Description>
          <mdui:Description xml:lang="cs">G3 system - e-infrastrukture network monitoring</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://g3.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://g3.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>g3.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://g3.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=g3.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUSdyarU2JkIA2Su48N5Ke4xhaFL4wDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAxMMZzMuY2VzbmV0LmN6MB4XDTE5MTAxNTExNDA1N1oXDTM5
MTAxMDExNDA1N1owFzEVMBMGA1UEAxMMZzMuY2VzbmV0LmN6MIIBojANBgkqhkiG
9w0BAQEFAAOCAY8AMIIBigKCAYEAm9pS+cj3vm+Lru8lTYeH7Zk1iwuxorP7XYBZ
3TS4EABUlvBkO3zgwb1qtn7+NugpjfIiYZzZBOhSUwjOjGuH1h42g6Crqj0as7xM
B+0DpITQ/rxs6PL6t2sAdbo0gnVpGAUn+kArp6NF6NNeHnVLEoAKKW4bFvyvN4qC
fuQJz2xLPA00kUa3zNLy/au1nWPyDqt6uhU+NlNqUiEq9jWI0i27HmoM5g8GSPNK
wMYFPKExOCA1oo5fdWGMHxJzWvYsXlZR8k7LHjq/c81vcMV1LLYdRQOHQXFk68r8
TGskk0oob3/5tqNB6bQboRjdtxBiZ/IwNQDJNpvIo9fQYFHrC+fUpQ0bLYbFbNCf
3aL4d7ayMx/F7lz/rKcJUfPHGSPJBEA0DVH16F5ggLyd4m3X1KvvJ6O06NHdRoeB
hjNfEhh4jxckDk8H/7EuEp2pMQw8BfzzMv9rLnQpCkNQya8CQBrPMWhzt0YgK8Jz
l6PYV0rZsQw/hed4hmncQN/+X9crAgMBAAGjWzBZMDgGA1UdEQQxMC+CDGczLmNl
c25ldC5jeoYfaHR0cHM6Ly9nMy5jZXNuZXQuY3ovc2hpYmJvbGV0aDAdBgNVHQ4E
FgQUMJfOfKDCBalw4pVmxcLf0NxEi3wwDQYJKoZIhvcNAQELBQADggGBAGpinkIA
p8J82ZkHOOCr6hVtZ9STRdluwq9cyER4ED1W0HxefVMoafayj0J9GbFRxb5Pz3SB
QTmmHWSPL8AYeb9vLEEBFnmncc2cYlhGdoSY+HCNiRTdhuCmNvxWePpArXTJ8VdJ
3u3ZmTQ+C0OBrNdRcShiTB1aeNCStKCQPltekJcUt+H0XZHJn9YYu1Q8lALhjsAQ
lCm7VTRWwnJsJDXRexcKC2BdNZVeyWY3WcPaYUmrHYnXVNfaqyrDFuoEjInDpbON
LJp10YCER9WJgUSWvykGXzlwmTuybKAdryZDvWKT3dyLW9uz4VADjid6vRjvMUQm
2KdkKDVKccwOVmXg7tlVxhSxisWhFLvL6JeiPEd+/XPwJ8iCsEVIl0Ycs71Y7T5w
GlA86tc/rgGh2ktGlqk9fAYGkwDzTWRO8VT3QrR75MDudwzTXm5BV/GSmmW/vg5/
+65upfFhhKz05wom2YTaNd5t9B2MHbghDh9Qsn241NLK3fnl8apahhrIgA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://g3.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://galaxy.ceitec.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2018-03-14T16:39:46Z"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Galaxy server</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Galaxy server</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web-based platform for NGS analysis (CEITEC).</mdui:Description>
          <mdui:Description xml:lang="cs">Webove rozhrani pro analyzu NGS dat (CEITEC).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://galaxy.ceitec.muni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://galaxy.ceitec.muni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>galaxy.ceitec.muni.cz</ds:KeyName>
          <ds:KeyName>https://galaxy.ceitec.muni.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIJANw7BqtnZ5tYMA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://galaxy.ceitec.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CEITEC</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CEITEC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CEITEC</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CEITEC</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.ceitec.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.ceitec.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Demko</md:SurName>
      <md:EmailAddress>mailto:xdemko@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gc1.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based traffic monitoring.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring provozu na bázi toků.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/sluzby/sitove-sluzby-1/sitovy-monitoring-sledovani-ip-provozu-ftas-34</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/en/services/network-1/network-traffic-monitoring-ftas-34</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/en/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gc1.vm.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://gc1.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gc1.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUJyfAe/41BpOtxRkARM+lX6ItihwwDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAxMQZ2MxLnZtLmNlc25ldC5jejAeFw0yNTEyMDMxMTA1MzRa
Fw00NTExMjgxMTA1MzRaMBsxGTAXBgNVBAMTEGdjMS52bS5jZXNuZXQuY3owggGi
MA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDBeHCFMXSZLt5neUe4WQMmz4Uu
5lf7gcPAolN78ljq19cjHK+kprUtqjSIu16rS5M0xre9e4WRMPo2sNGFA4nsWKVi
ZYzFPMVw/ZdPcl2mdOXj5BymU5EZvIpS9qDvft3EUEbpjZyNZ/+YoFZvYSe5jL5B
qjOwP5p0JzqaUT7jEvtQv4nVtCxXgRXTeoobH2oZlGpl+rME68tQgW0XzzcpEH7K
ye9tHq8qB/GXtDS6gMT1j5RSmEh1KG1ys6+VIBmOFtB8c4I0q7Sq44AY+mBUHeWk
l2Z/U0P9Ggnm6RIsd2EGbsV5aOpS0LNf+HezeJSLqI5g6IjFnN6b6s5Rlmg37OC4
bSqiaHMIsHMpx2grYj1qNfPdz1n8njcczye9er7gb0NLOWzn13my0Kp9aNXoE+nv
IScgM14YhkHWIPijyKbMxCVzO+zjNPr4TOJ+sOth22a7zfEgsZyQ/2PG7sXitWR7
QSRJLZqCKtU3RHkcpBdU4JuCVMTvzVXqeM2S+zcCAwEAAaNjMGEwQAYDVR0RBDkw
N4IQZ2MxLnZtLmNlc25ldC5jeoYjaHR0cHM6Ly9nYzEudm0uY2VzbmV0LmN6L3No
aWJib2xldGgwHQYDVR0OBBYEFC/2gyzWj+hJ6ozl6665ic4UjWydMA0GCSqGSIb3
DQEBCwUAA4IBgQA4SiGxa1sKWKkWsCvQWXQi7fJ/H225Dt38tPr0kBNNFJ6oqCjL
yJ3G7uicOEpq7Ko93fbzDGybLBdKppymd+60bx0/tSEs7PlvG43Spmn/BD35Aoq1
NdNGvCCRrS9TimIPr0kg6ivRh1J8PKbY/7GDyzODCh8qG8zxItIOnmJYXWy2owyp
eg8b86oIj/87mm6+aKtn9E2GWAicYbDHzC7Wo6zcDl/WfX/PX1JgjehyQkwfiluZ
Zx/pvBFREp0NGRRBrUN8sWCEuJFAKdsF6f9e5yGtuDkyfo5M5F/OXafIUPFCwniP
g0IlRsGe4JfFhnKE41lQLuKiiyVly1fTKThklg/GdlYZDV6jCZfFwCoN+QcoTtVX
wqjNLvDzyUX1KaudMkYwl8cL7yrsAFMTRO7r30RW5qOwy9eaU9vMt9MT3npnrHtB
ZddODVEff5dUt06dxsPhQ1+C7856tqR3unoQaI0dkLG7CmlI/xFJ/dYbu+VNkIEX
SNvFTdDb2FuQgRU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gc1.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Flow-based traffic monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring provozu na bázi toků.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Košňar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gc30.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Flow-based traffic monitoring.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring provozu na bazi toku.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gc30.cesnet.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gc30.cesnet.cz/Shibboleth.sso/DS" index="4"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gc30.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://gc30.cesnet.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gc30.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEITCCAomgAwIBAgIUFIvBonGVmnpTR7lkpcqe9Juui5kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc30.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc30.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc30.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ftas.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gc30.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="8"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Flow-based network traffic monitoring.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring provozu site na bazi toku.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gerrit-2.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Gerrit Code Review</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Gerrit Code Review</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET's Gerrit Code Review</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET's Gerrit Code Review</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://gerrit.cesnet.cz/Documentation/intro-gerrit-walkthrough-github.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://gerrit.cesnet.cz/Documentation/intro-gerrit-walkthrough-github.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>gerrit-2.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gerrit-2.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEETCCAnmgAwIBAgIUXbOXVa1rsd6BPHZsWalRDziJWQMwDQYJKoZIhvcNAQEL
BQAwIDEeMBwGA1UEAxMVZ2Vycml0LTIudm0uY2VzbmV0LmN6MB4XDTI1MDUwNjE2
MDcwN1oXDTM1MDUwNDE2MDcwN1owIDEeMBwGA1UEAxMVZ2Vycml0LTIudm0uY2Vz
bmV0LmN6MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEApEBZJDJgNZ/P
NzaxmF1TXgWNPPPemhppM9QZADLzgZwqnt8kTFZgIB+8nMsJwYNKwZUu0l72CE8z
L6AAEOXV+aPEM6D8GiwCqNYcjCQAS/pEPamVmbOjz2fPXFZNt4zpgb6RWXwEi8sE
ORmi2rbN5XlU0w42A9rrlR7iB/kgYTmoEFPz6rFD4yB/OTZZSp7JtBSQZ3zIhu6c
NszLtidSFM+MnPGK9lyYE5b87QVZsHfrfSON/xEFP1iYnpG8txsHJjTtaRUZpHER
8OJzioygIKzv2nZgMxXa3UznmF0cQriAeK+IUUGG2RvuFJwtkTqRGsHP5TgbNA3I
s4CZfGPntDPmNl5K2DX1/o9IgHwc1kKjOQf2d3gUbUTgFi6VOnvWtcdEipZx4MOw
QMEyjXmAm3TzjtBsF0YwQlGJfF9ftxPdcn9fNZrxpAlA2wmgL/AqinY8a4znszCm
+6kQDhi8DG9I2bQ1TbxZU1Fo/P2C3bVJYCIbTKf2bDsDhyGANJfjAgMBAAGjQzBB
MCAGA1UdEQQZMBeCFWdlcnJpdC0yLnZtLmNlc25ldC5jejAdBgNVHQ4EFgQUzMSc
QHOYEixr1YrTvuvfSz4x9ZQwDQYJKoZIhvcNAQELBQADggGBAJdkxZ2HMGFtIK8w
wEWgMfvdh8vuJNOUjoVWRryXGQwp9lWRwg0M9hxp9Eqpa1GuacKoS5Z/FohWcfk2
LicW8nfeTQE3EIVpM0xImhmENsDpt6HH0yCeAZIzQynXsobdFrq+arFbiPipGHyK
YjO5M0+cYAszbMQkGdQqKrV6wiRuyE4M5ZfLMsatRlRfw+fiA1bYk8EGny9HDxdD
SASbaTs3qfxsY/tpf6NQBTtYomvqtJgtTdMwaFM5YXY4NHHEf9+0MnhjNYIJJ5gS
HxP9PnnOHh+UUfTUClRn4ZdI7TPOeMy3enYMMnxFXbyB/FkoV9LWz5eGd0OnIuX8
WfOo5yNKWWqPlfkQeLQRUm5UJ1AN9zcsavI6q158jFuALPH+80L6sAxvaCdxeDRT
m3/HyFK1QvguwuYzp3h5etUpiKRn6JvAGjHHVvO0nH+32Wy8wHNpBJ+Mxi9px/zG
kORHHPH/AldORVNc9X4x6ZDo8WKRuqqLDJC3OOt5dyBSZhsS4g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>gerrit-2.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gerrit-2.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEETCCAnmgAwIBAgIUc9IOTiyqUk2povzg8DBGCCdAa+MwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit-2.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit-2.vm.cesnet.cz/Shibboleth.sso/Login" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Gerrit Code Review</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Gerrit Code Review</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kundrát</md:SurName>
      <md:EmailAddress>mailto:support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gerrit.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>gerrit.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gerrit.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID9zCCAl+gAwIBAgIJAJNkrN+ieHJiMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gerrit.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="cs">https://www.cesnet.cz/?lang=cs</OrganizationURL>
      <OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Kundrát</SurName>
      <EmailAddress>mailto:jan.kundrat@cesnet.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" cacheDuration="P1D" entityID="https://gradabookporttest.azurewebsites.net/">
    <SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">BOOKPORT-TEST</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">BOOKPORT-TEST</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital library subscription</mdui:Description>
          <mdui:Description xml:lang="cs">On-line knihovna pro každého</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://gradabookporttest.azurewebsites.net/o-sluzbe/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://gradabookporttest.azurewebsites.net/o-sluzbe/</mdui:InformationURL>
          <mdui:Logo height="48" width="300">https://gradabookporttest.azurewebsites.net/Content/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gradabookporttest.azurewebsites.net/AccountSaml/SignIn/" index="0" isDefault="true"/>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIID7jCCAtagAwIBAgIJAOaxj9I1F483MA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejAeFw0xODAxMDkxNjAxNDJaFw0zODAxMDQxNjAxNDJaMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALBdA92fPEK9/S4eWJFqXLlhkmQaLzrd0LCl27FF1AqoD139rPQSHyyfOXg3V/xfUyFin/WTXJswSZ80J2RYhlEvMG2RzHGheGLHI5e8GqPb/4vdHHBbc31DDqQl53hD0buma2/Vi4+aiQlUhwzyni2xffev2ZijXCj6u8n3fKyZyW0dX8UTFQYGK5yZmrXToHfZDyIrl4RlF8ME8ckB/RtWecqIgb5Zcbntgl0fenVyucRnb69weUL6Qvqd5sf5ZWwbG5BuC1Do4CLYlP9a62FOWAPIpH47ZOMM9JSMhmWKMWVgc5xpxIK7U624emd11FufHeVdV1PXviPuePS+h+8CAwEAAaNTMFEwHQYDVR0OBBYEFJSzRnb3AMo/eb94KIYvQVlKVMs2MB8GA1UdIwQYMBaAFJSzRnb3AMo/eb94KIYvQVlKVMs2MA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAFcwzfJgXwthhILWQNnmqIc77mYStLaKV+Wx4HwUFNph7DzDOXFj+C1JDFmus6hQ37BAyQChqD6MND4zj0NEDRS25k75jVMKAwWjIm30oAczXUCKFcHA/AS0X/G3IcGf/yNsRGx+ae5akKBjvPcS7aZ+9IwEveJHypWy+Sx3ca/R08gXz1+C/d89KtQ4D67FBVTkKUAojxC1wT96UhhTzKRfpnMyLLiqM/6GML+lVo23bbSRO5UMLC5Ajzrfr6K0q5eR8HDRiQFQ8LKXh/HI8mhjlCCA1tb5jEatqhsd1R8J5Zr9Dupsn0SKFA3RVxinSjbccKeaUC07wgjCzDmIDxM=</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIID7jCCAtagAwIBAgIJAOaxj9I1F483MA0GCSqGSIb3DQEBCwUAMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejAeFw0xODAxMDkxNjAxNDJaFw0zODAxMDQxNjAxNDJaMIGLMQswCQYDVQQGEwJDWjEOMAwGA1UECAwFUHJhaGExDjAMBgNVBAcMBVByYWhhMREwDwYDVQQKDAhCb29rcG9ydDERMA8GA1UECwwIQm9va3BvcnQxFDASBgNVBAMMC2Jvb2twb3J0LmN6MSAwHgYJKoZIhvcNAQkBFhFtLnN2aXRha0BncmFkYS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALBdA92fPEK9/S4eWJFqXLlhkmQaLzrd0LCl27FF1AqoD139rPQSHyyfOXg3V/xfUyFin/WTXJswSZ80J2RYhlEvMG2RzHGheGLHI5e8GqPb/4vdHHBbc31DDqQl53hD0buma2/Vi4+aiQlUhwzyni2xffev2ZijXCj6u8n3fKyZyW0dX8UTFQYGK5yZmrXToHfZDyIrl4RlF8ME8ckB/RtWecqIgb5Zcbntgl0fenVyucRnb69weUL6Qvqd5sf5ZWwbG5BuC1Do4CLYlP9a62FOWAPIpH47ZOMM9JSMhmWKMWVgc5xpxIK7U624emd11FufHeVdV1PXviPuePS+h+8CAwEAAaNTMFEwHQYDVR0OBBYEFJSzRnb3AMo/eb94KIYvQVlKVMs2MB8GA1UdIwQYMBaAFJSzRnb3AMo/eb94KIYvQVlKVMs2MA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAFcwzfJgXwthhILWQNnmqIc77mYStLaKV+Wx4HwUFNph7DzDOXFj+C1JDFmus6hQ37BAyQChqD6MND4zj0NEDRS25k75jVMKAwWjIm30oAczXUCKFcHA/AS0X/G3IcGf/yNsRGx+ae5akKBjvPcS7aZ+9IwEveJHypWy+Sx3ca/R08gXz1+C/d89KtQ4D67FBVTkKUAojxC1wT96UhhTzKRfpnMyLLiqM/6GML+lVo23bbSRO5UMLC5Ajzrfr6K0q5eR8HDRiQFQ8LKXh/HI8mhjlCCA1tb5jEatqhsd1R8J5Zr9Dupsn0SKFA3RVxinSjbccKeaUC07wgjCzDmIDxM=</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gradabookporttest.azurewebsites.net/saml2/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gradabookporttest.azurewebsites.net/saml2/Logout"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gradabookporttest.azurewebsites.net/saml2/Acs" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gradabookporttest.azurewebsites.net/saml2/Acs" index="1" isDefault="false"/>
      <AttributeConsumingService index="0" isDefault="true">
        <ServiceName xml:lang="en">SP</ServiceName>
        <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="pairwiseID" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="subjectID" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Grada Publishing, a.s.</OrganizationName>
      <OrganizationName xml:lang="cs">Grada Publishing, a.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">BOOKPORT</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">BOOKPORT</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.bookport.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.bookport.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze-test.jcu.cz/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">EPZ-TEST JCU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">EPZ-TEST JCU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Project and Order Management TEST JCU</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence projektů a zakázek TEST JCU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze-test.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze-test.jcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze-test.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze-test.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze-test.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEUzCCArugAwIBAgIUHnPCKE21XLviCUi87m1XXxXlrsUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze-test.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze-test.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze-test.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEUzCCArugAwIBAgIUVSCjz7EoK6EKJuclyfdr8DWltYwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze-test.jcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">EPZ TEST JCU</md:ServiceName>
        <md:ServiceName xml:lang="cs">EPZ TEST JCU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Project and Order Management TEST JCU</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence projektů a zakázek TEST JCU</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Roch</md:SurName>
      <md:EmailAddress>mailto:roch@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eduard</md:GivenName>
      <md:SurName>Krlín</md:SurName>
      <md:EmailAddress>mailto:ekrlin@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze-test.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IGA test server UTB</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IGA test server UTB</mdui:DisplayName>
          <mdui:Description xml:lang="en">GRANTOVE SOUTEZE test server UTB</mdui:Description>
          <mdui:Description xml:lang="cs">GRANTOVE SOUTEZE test server UTB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze-test.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze-test.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUEum1vdx1NL+zXpXUMPJboHkvkGowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUQigpC2rlx0r8uOPOv9Sc8NIN2fMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze-test.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IGA test server UTB</md:ServiceName>
        <md:ServiceName xml:lang="cs">IGA test server UTB</md:ServiceName>
        <md:ServiceDescription xml:lang="en">GRANTOVE SOUTEZE test server UTB</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">GRANTOVE SOUTEZE test server UTB</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze.jcu.cz/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">EPZ JCU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">EPZ JCU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Project and Order Management JCU</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence projektů a zakázek JCU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze.jcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUSDKQLDMuIrXP+iLnllqSrmJN55swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>grantovesouteze.jcu.cz</ds:KeyName>
          <ds:KeyName>https://grantovesouteze.jcu.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=grantovesouteze.jcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUYsRGK2PoLmcIgEPgWoo+HpYcR7IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze.jcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">EPZ JCU</md:ServiceName>
        <md:ServiceName xml:lang="cs">EPZ JCU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Project and Order Management JCU</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence projektů a zakázek JCU</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Roch</md:SurName>
      <md:EmailAddress>mailto:roch@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eduard</md:GivenName>
      <md:SurName>Krlín</md:SurName>
      <md:EmailAddress>mailto:ekrlin@jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://grantovesouteze.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IGA server UTB</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IGA server UTB</mdui:DisplayName>
          <mdui:Description xml:lang="en">GRANTOVE SOUTEZE server UTB</mdui:Description>
          <mdui:Description xml:lang="cs">GRANTOVE SOUTEZE server UTB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://grantovesouteze.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://grantovesouteze.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUMQJKZThsmY6r2de0kxVu0+d10ccwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUaGGw5HaZ0SeuKUXB9Fz4tQntf1AwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grantovesouteze.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IGA server UTB</md:ServiceName>
        <md:ServiceName xml:lang="cs">IGA server UTB</md:ServiceName>
        <md:ServiceDescription xml:lang="en">GRANTOVE SOUTEZE server UTB</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">GRANTOVE SOUTEZE server UTB</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://granty-test.upol.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">granty-test upol</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">granty-test upol</mdui:DisplayName>
          <mdui:Description xml:lang="en">granty-test upol access</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup do granty-test upol</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://granty-test.upol.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://granty-test.upol.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://granty-test.upol.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://granty-test.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://granty-test.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>granty-test.upol.cz</ds:KeyName>
          <ds:KeyName>https://granty-test.upol.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=granty-test.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUGGQ81zno386950rc9moUxU79kC8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty-test.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty-test.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://granty-test.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">granty-test upol</md:ServiceName>
        <md:ServiceName xml:lang="cs">granty-test upol</md:ServiceName>
        <md:ServiceDescription xml:lang="en">granty-test upol access</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup do granty-test upol</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="username" Name="urn:oid:1.2.840.113556.1.4.656" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc testing</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackého v Olomouci testovací</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc testing</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackého v Olomouci testovací</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Pavlik</md:SurName>
      <md:EmailAddress>mailto:martin.pavlik@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://granty.upol.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">granty upol</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">granty upol</mdui:DisplayName>
          <mdui:Description xml:lang="en">granty upol access</mdui:Description>
          <mdui:Description xml:lang="cs">Přístup do granty upol</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://granty.upol.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://granty.upol.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://granty.upol.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://granty.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://granty.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>granty.upol.cz</ds:KeyName>
          <ds:KeyName>https://granty.upol.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=granty.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUQKtf0Hp2QTUEcP3DkgJv7Bl612QwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://granty.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://granty.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://granty.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">granty upol</md:ServiceName>
        <md:ServiceName xml:lang="cs">granty upol</md:ServiceName>
        <md:ServiceDescription xml:lang="en">granty upol access</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Přístup do granty upol</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="username" Name="urn:oid:1.2.840.113556.1.4.656" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackého v Olomouci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackého v Olomouci</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upol.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upol.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Pavlik</md:SurName>
      <md:EmailAddress>mailto:martin.pavlik@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://gull.is.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://gull.is.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gull.is.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Testing CU Digital Repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací digitální repozitář UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing Charles University Digital Repository</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací digitální repozitář Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://gull.is.cuni.cz/?locale-attribute=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://gull.is.cuni.cz/?locale-attribute=cs</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://gull.is.cuni.cz/?locale-attribute=en</mdui:PrivacyStatementURL>
          <mdui:Logo height="425" width="1696">https://gull.is.cuni.cz/themes/Mirage2//images/DRepozitarUK_Helvetica.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>gull.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=gull.is.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDWzCCAkOgAwIBAgIJAJhWSLYQ/2luMA0GCSqGSIb3DQEBCwUAMEQxCzAJBgNV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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gull.is.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gull.is.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gull.is.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hlasovani-test.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso test</mdui:Description>
          <mdui:Description xml:lang="cs">Verso test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility-test.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility-test.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAK8AUVuFqsJ8MA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hlasovani-test.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hlasovani.cesnet.cz/Shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">hlasovani.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">hlasovani.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Hlasovani CESNET</mdui:Description>
          <mdui:Description xml:lang="cs">Hlasovani CESNET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://hlasovani.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://hlasovani.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="65" width="175">https://hlasovani.cesnet.cz/Images/cesnet-logo-inv.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-prod-ext.up.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-prod-ext.up.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDDCCAnSgAwIBAgIJAJcEold1DJ9qMA0GCSqGSIb3DQEBCwUAMCIxIDAeBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://hlasovani.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Dalibor</md:GivenName>
      <md:SurName>Schotli</md:SurName>
      <md:EmailAddress>mailto:dalibor.schotli@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hlasovani.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso</mdui:Description>
          <mdui:Description xml:lang="cs">Verso</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.vscht.cz/about-us/official-board/personal-data-processing-and-protection</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.vscht.cz/uredni-deska/zpracovani-a-ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hlasovani.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hlasovani.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAKJNZSd5rxgqMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hlasovani.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://homeproj.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Projects support</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Podpora projektů</mdui:DisplayName>
          <mdui:Description xml:lang="en">A service for projects support (redmine, sympa, git, apt, rpm, tar).</mdui:Description>
          <mdui:Description xml:lang="cs">Služba slouží pro podporu projektů (redmine, sympa, git, apt, rpm, tar).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://homeproj.cesnet..cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://homeproj.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://homeproj.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://homeproj.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>homeproj.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=homeproj.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIC/TCCAeWgAwIBAgIJAPT79xFR8l8gMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://homeproj.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://homeproj.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Projects support</md:ServiceName>
        <md:ServiceName xml:lang="cs">Podpora projektů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service for projects support (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba slouží pro podporu projektů (redmine, sympa, git, apt, rpm, tar).</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Mach</md:SurName>
      <md:EmailAddress>mailto:mach@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hugo-mon.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Hugo monitoring</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Přehled Hugo</mdui:DisplayName>
          <mdui:Description xml:lang="en">Hugo honeynet monitporing and administration.</mdui:Description>
          <mdui:Description xml:lang="cs">Monitoring a správa sítě honeypotů Hugo.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://hugo.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://hugo.cesnet.cz/en</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://hugo.cesnet.cz/_media/site_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>hugo-mon.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=hugo-mon.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIFGzCCAwOgAwIBAgIUTdg0LZHawSDDxOTUSk/C2u4DExEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hugo-mon.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Hugo monitoring</md:ServiceName>
        <md:ServiceName xml:lang="cs">Přehled Hugo</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Hugo honeynet monitoring and administration.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitoring a správa sítě honeypotů Hugo.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Studený</md:SurName>
      <md:EmailAddress>mailto:sec-op@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hup.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">HoneyPot GUI</mdui:Description>
          <mdui:Description xml:lang="cs">HoneyPot GUI</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://hup.upce.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://hup.upce.cz</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://hup.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hup.upce.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://hup.upce.cz/shibboleth</ds:KeyName>
          <ds:KeyName>hup.upce.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=hup.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUSXTKGNHl7C2hk1dC8GK190aLiMwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hup.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hup.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hup.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hup.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hup.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hup.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">HoneyPot</md:ServiceName>
        <md:ServiceName xml:lang="cs">HoneyPot</md:ServiceName>
        <md:ServiceDescription xml:lang="en">HoneyPot GUI</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">HoneyPot GUI</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idm.ics.muni.cz/shibboleth">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Perun - Masaryk University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Perun - Masarykova univerzita</mdui:DisplayName>
          <mdui:Description xml:lang="en">Perun - Identity and access management system for Masaryk University</mdui:Description>
          <mdui:Description xml:lang="cs">Perun - Systém pro správu uživatelů a přístupů na Masarykově univerzitě</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://idm.ics.muni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://idm.ics.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="85">https://idp2.ics.muni.cz/muni_logo_85x40.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://idm.ics.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://idm.ics.muni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://idm.ics.muni.cz/Shibboleth.sso/edugain"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://idm.ics.muni.cz/Shibboleth.sso/edugain" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://idm.ics.muni.cz/Shibboleth.sso/social"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://idm.ics.muni.cz/Shibboleth.sso/social" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2019</ds:KeyName>
          <ds:KeyName>https://idm.ics.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>idm.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idm.ics.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGDCCAoCgAwIBAgIJAKnkXq+o+epVMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idm.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idm.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idm.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Perun - Masaryk University</md:ServiceName>
        <md:ServiceName xml:lang="cs">Perun - Masarykova univerzita</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Perun - Identity and access management system for Masaryk University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Perun - Systém pro správu uživatelů a přístupů na Masarykově univerzitě</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Kuba</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Prochazka</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idm.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Usermanagement</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Usermanagement</mdui:DisplayName>
          <mdui:Description xml:lang="en">Management user account</mdui:Description>
          <mdui:Description xml:lang="cs">Správa uživatelských kont</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://idm.zcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://idm.zcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://helios.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://idm.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>idm.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idm.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUcwrUXgIkZrjVZHpFG6nQQhr8d98wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://idm.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>idm.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idm.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUUfkDa6HQU9XUjooz7vqR93JVdc8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.idm.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://profile.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.profile.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="4"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.registrace.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="5"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="6"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="7"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.idm.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://profile.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.profile.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.idm.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://profile.zcu.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://profile.zcu.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://profile.zcu.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.profile.zcu.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML2/ECP" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML/POST" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registrace.zcu.cz/Shibboleth.sso/SAML/Artifact" index="24"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/POST" index="25"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="26"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="27"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML2/ECP" index="28"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML/POST" index="29"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.registrace.zcu.cz/Shibboleth.sso/SAML/Artifact" index="30"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST" index="31"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="32"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="33"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/ECP" index="34"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/POST" index="35"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/Artifact" index="36"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST" index="37"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="38"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="39"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://helios.zcu.cz/Shibboleth.sso/SAML2/ECP" index="40"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/POST" index="41"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://helios.zcu.cz/Shibboleth.sso/SAML/Artifact" index="42"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Usermanagement</md:ServiceName>
        <md:ServiceName xml:lang="cs">Usermanagement</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Management user account</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Správa uživatelských kont</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:aaa@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iga-test.uhk.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VERSO3-TEST server UHK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VERSO3-TEST server UHK</mdui:DisplayName>
          <mdui:Description xml:lang="en">VERSO3-TEST server UHK</mdui:Description>
          <mdui:Description xml:lang="cs">VERSO3-TEST server UHK</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://verso3-test.uhk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://verso3-test.uhk.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iga-test.uhk.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>verso3-test.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3-test.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUfnm+ROjvmtlJ/3gsyOtAn6SJ/TQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>verso3-test.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3-test.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUEY73fomQ4MRzJEcwTWm+lqD/+D4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga-test.uhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga-test.uhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iga-test.uhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">VERSO3-TEST server UHK</md:ServiceName>
        <md:ServiceName xml:lang="cs">VERSO3-TEST server UHK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">VERSO3-TEST server UHK</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">VERSO3-TEST server UHK</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Hradec Kralove</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Hradec Kralove</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.uhk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.uhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:zemek@uhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iga.uhk.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VERSO3 server UHK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VERSO3 server UHK</mdui:DisplayName>
          <mdui:Description xml:lang="en">VERSO3 server UHK</mdui:Description>
          <mdui:Description xml:lang="cs">VERSO3 server UHK</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://iga.uhk.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://iga.uhk.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iga.uhk.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>verso3.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+TCCAmGgAwIBAgIUZQMsleL5MJt1b2Iq+1EbFzB3NIIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>verso3.uhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=verso3.uhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+TCCAmGgAwIBAgIUTdV1eyYjw+G9OJ65EnpjaTfUExcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga.uhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga.uhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iga.uhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">VERSO3 server UHK</md:ServiceName>
        <md:ServiceName xml:lang="cs">VERSO3 server UHK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">VERSO3 server UHK</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">VERSO3 server UHK</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Hradec Kralove</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Hradec Kralove</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.uhk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.uhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:zemek@uhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://index.bbmri.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">BBMRI-CZ</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">BBMRI-CZ</mdui:DisplayName>
          <mdui:Description xml:lang="en">Biobanking and biomolecular resources research infrastructure</mdui:Description>
          <mdui:Description xml:lang="cs">Biobanka klinickych vzorku</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://bbmri.cz/index_en.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://www.bbmri.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">http://bbmri.cz/BBMRI_CZ_files/BBMRI_Logo_square.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://index.bbmri.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://index.bbmri.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>index.bbmri.cz</ds:KeyName>
          <ds:KeyName>www.bbmri.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.bbmri.cz,O=Masaryk\C5\AFv onkologick\C3\BD \C3\BAstav,L=Brno-st\C5\99ed,C=CZ,serialNumber=Government Entity,1.3.6.1.4.1.311.60.2.1.3=#1302435A,businessCategory=Government Entity</ds:X509SubjectName>
            <ds:X509Certificate>MIIHLzCCBhegAwIBAgIQAoNR2cwyY9Xb3xqa6gvNmDANBgkqhkiG9w0BAQsFADBz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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>2016</ds:KeyName>
          <ds:KeyName>https://index.bbmri.cz/shibboleth</ds:KeyName>
          <ds:KeyName>index.bbmri.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=index.bbmri.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIJAMkFWtRBiAWnMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://index.bbmri.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://index.bbmri.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://index.bbmri.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://index.bbmri.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://index.bbmri.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://index.bbmri.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CERIT-SC</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CERIT-SC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CERIT-SC</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CERIT-SC</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cerit-sc.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cerit-sc.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Holub</md:SurName>
      <md:EmailAddress>mailto:holub@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Vojtisek</md:SurName>
      <md:EmailAddress>mailto:vojtisek@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://intosh.app/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Intosh</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Intosh</mdui:DisplayName>
          <mdui:Description xml:lang="en">Intosh - Interlibrary sharing</mdui:Description>
          <mdui:Description xml:lang="cs">Intosh - Meziknihovní sdílení</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://intosh.app/about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://intosh.app/o-nas</mdui:InformationURL>
          <mdui:Logo height="70" width="128">https://intosh.app/intosh-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://intosh.app/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://intosh.app/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://intosh.app/shibboleth</ds:KeyName>
          <ds:KeyName>intosh.app</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=intosh.app</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUe7EN7fzhB7GyYVtqwuINU2mocuUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://intosh.app/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://intosh.app/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://intosh.app/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://intosh.app/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://intosh.app/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://intosh.app/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://intosh.app/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://intosh.app/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://intosh.app/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://intosh.app/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://intosh.app/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Intosh</md:ServiceName>
        <md:ServiceName xml:lang="cs">Intosh</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.bigdigdata.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.bigdigdata.com/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Bedřich</md:GivenName>
      <md:SurName>Košata</md:SurName>
      <md:EmailAddress>mailto:beda@bigdigdata.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ipos.ders.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IPOS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IPOS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Internal demand and order system.</mdui:Description>
          <mdui:Description xml:lang="cs">Interní poptávkový a objednávkový systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ipos.ders.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ipos.ders.cz/info</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://ipos.ders.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ipos.ders.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ipos.ders.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>ipos.ders.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ipos.ders.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID6zCCAlOgAwIBAgIJAP2Ojx5KDNuyMA0GCSqGSIb3DQEBCwUAMBcxFTATBgNV
BAMTDGlwb3MuZGVycy5jejAeFw0xNzEyMDYxNDAyMjBaFw0yNzEyMDQxNDAyMjBa
MBcxFTATBgNVBAMTDGlwb3MuZGVycy5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGP
ADCCAYoCggGBAK3dPAAYmgBzK4gB5OxcdNiuktQGH1xull28p+AgEVuXVziunz39
ZlbM8+fFdb7g+J9z1UDZWeQhB5q8VL6D4e4cIWyzDNMOWBjwaURNwIGlkLXURWAJ
5ohOgDus+Pqv58i2bERBuGEUnn4FmVn0OSdc16ZcphwRM/xwp8YLxP6/YuNPpZz9
iRC8TgJS42aFkFK2u3ZLw2rjcJf7LK/9ODKn/jFiF9xZ+GSAJDrTiMuYKRZbNktZ
g0d1P0ZMCkS+bJC2F3c2iaepiK8g0lBLUj2sZNcB5ULiNvBdfBK4ruxhi2WcbJCI
qY8PDiZAm/PbaDsNs7DlkKnL/gyq+OdYyaTfQq+pGlsDR8hTm9VhQ6oRm408DZSp
wFcmjWKJOPXDYpEgs8OZPiI39KYMGuFS1LZmMe1ukEuXyCKKiztoRHFr2CBjutnE
Ul+QsscTOD2PmTazSCpg76kE8cap69Xxf4b1C9oMbWuf9hUCVQYd4yq1nolbcPJu
zUWJetlqpxmzGwIDAQABozowODAXBgNVHREEEDAOggxpcG9zLmRlcnMuY3owHQYD
VR0OBBYEFKVabr7Vc82rNGrHVvEJFM1cdyzwMA0GCSqGSIb3DQEBCwUAA4IBgQB1
O+34pnl+J2HsLE6Y2Guva6EEaBKyFVheYpcieQ1p0sLE2uOHP13GZOX1ZKGC6dBw
oLcxsefURsmuCFY8jJpbcJvTwy3Y0ZU2Sgjm75m+imIaB3g1ToJ5kPe2SrNRBn7n
kDA/sBEfWYvcfoQ70l/MQG28APzatqQA4omIfR4LhoHwScP77NTOrFbRsKtgokDY
2hi9QsDW0UNxxg2PhvbbmbIL87GeyLXbZLo2RfD3dSbUUHxjhcVprGSziy0+0QzC
E9/U7rrwAbMSdboCT8TPXz2gev1KrxS5Z1BIEboLGId8KzObRyzZ1/ZvHTN4PvEF
EqmhzVbEAz7PJAM+1NuW2JPnG26oC6P4QB4yRFP4YaDHcGNer9Sgh+P1vPH/QaCf
X1ENEyVwYO283GyuOjNyeKChDK6iilWp+3a8VvU+vqcqMJwzYhO+oMflvE4HT5w6
lD6SF3Kju6V0nbTSY2HT4WpCemXat2r3C0hMiRDGYXC3Y4TYlkXj4g5TgD9zGm8=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ipos.ders.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ipos.ders.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ipos.ders.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ipos.ders.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ipos.ders.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">IPOS</md:ServiceName>
        <md:ServiceName xml:lang="cs">IPOS</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:mace:dir:attribute-def:displayName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">DERS, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">DERS, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">DERS</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">DERS</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ders.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ders.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Adam</md:GivenName>
      <md:SurName>Kratky</md:SurName>
      <md:EmailAddress>mailto:kratky@ders.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ista.tacr.cz/ISTA">
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TAČR - Technologická agentura ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">TAČR - Technologická agentura ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tacr.cz/index.php/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLTCCAhUCBFhKqrowDQYJKoZIhvcNAQELBQAwWzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDLTCCAhUCBFhKqrowDQYJKoZIhvcNAQELBQAwWzELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirect" ResponseLocation="https://ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirectResponse"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ista.tacr.cz/ISTA/PUBLIC/saml/SAMLAssertionConsumer" index="0" isDefault="true"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">ISTA Attribute Service</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ISTA required attributes</md:ServiceDescription>
        <md:RequestedAttribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Technology Agency of the Czech Republic</OrganizationName>
      <OrganizationName xml:lang="cs">Technologická agentura ČR</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Technology Agency of the Czech Republic</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Technologická agentura ČR</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.tacr.cz/index.php/en/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.tacr.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Radovan</GivenName>
      <SurName>Lupták</SurName>
      <EmailAddress>mailto:luptak@tacr.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Vladimír</GivenName>
      <SurName>Kubíček</SurName>
      <EmailAddress>mailto:kubicek@tacr.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iszcu-test.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IS-test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IS-test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Data pump of university.</mdui:Description>
          <mdui:Description xml:lang="cs">Informacni system univerzity.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://iszcu-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>iszcu-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iszcu-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUelo2Q4ZkFigdPC31P7/q7oCzdKswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iszcu-test.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IS-test</md:ServiceName>
        <md:ServiceName xml:lang="cs">IS-test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Data pump of university.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Informacni system univerzity.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://iszcu.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Data nformation of university.</mdui:Description>
          <mdui:Description xml:lang="cs">Informacni system univerzity.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://iszcu.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://iszcu.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>iszcu.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iszcu.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUEQB9eVw6ZoIGr1sbv6oZzK5k6UIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iszcu.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IS-test</md:ServiceName>
        <md:ServiceName xml:lang="cs">IS-test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Data pump of university.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Informacni system univerzity.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://itmulti.cz/simplesaml/module.php/saml/sp/metadata.php/portal4">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal4" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal4" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal4" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal4/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://itmulti.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal4" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://jara.vm.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Auror - DEV</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Auror - DEV</mdui:DisplayName>
          <mdui:Description xml:lang="en">Development and test server for Auror system.</mdui:Description>
          <mdui:Description xml:lang="cs">Vývojový a testovací server pro systém Auror.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://jara.vm.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://jara.vm.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://jara.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>jara.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=jara.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUNdC8rWTHM1F3fCvYimYSVZfcv8cwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jara.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Auror - DEV</md:ServiceName>
        <md:ServiceName xml:lang="cs">Auror - DEV</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Development and test server for Auror system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Vývojový a testovací server pro systém Auror.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, interest association of legal entities</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, zájmové sdružení právnických osob</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jaroslav</md:GivenName>
      <md:SurName>Svoboda</md:SurName>
      <md:EmailAddress>mailto:jaroslav.svoboda@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://journals.bmj.com/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>shibboleth.highwire.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibboleth.highwire.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIDOjCCAiKgAwIBAgIBADANBgkqhkiG9w0BAQQFADAiMSAwHgYDVQQDExdzaGli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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>shibboleth.highwire.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibboleth.highwire.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIDOjCCAiKgAwIBAgIBADANBgkqhkiG9w0BAQQFADAiMSAwHgYDVQQDExdzaGli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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.highwire.org/applications/bmjjournals/Shibboleth.sso/SAML2/POST" index="1"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">British Medical Journal</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">British Medical Journal</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.bmj.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Olga</md:GivenName>
      <md:SurName>Biasotti</md:SurName>
      <md:EmailAddress>shibboleth-admin@highwire.stanford.edu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor entityID="https://keycloak.atlasgroup.cz/auth/realms/external-idp">
    <SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol http://schemas.xmlsoap.org/ws/2003/07/secext">
      <md:Extensions xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CODEXIS ACADEMIA</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CODEXIS ACADEMIA</mdui:DisplayName>
          <mdui:Description xml:lang="en">National and European legal information system CODEXIS®</mdui:Description>
          <mdui:Description xml:lang="cs">Národní a evropský právní informační systém CODEXIS®</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://codexisacademia.cz/o-produktu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://codexisacademia.cz/o-produktu/</mdui:InformationURL>
          <mdui:Logo height="187" width="1241">https://codexisacademia.cz/wp-content/uploads/2019/09/academia-logo.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <KeyDescriptor use="signing">
        <dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
          <dsig:KeyName>5uqxkYGhxkqlisTU_Bm6Z5dhVNkpbgWb0W1jGY2GYXM</dsig:KeyName>
          <dsig:X509Data>
            <dsig:X509Certificate>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</dsig:X509Certificate>
          </dsig:X509Data>
        </dsig:KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
          <dsig:KeyName>5uqxkYGhxkqlisTU_Bm6Z5dhVNkpbgWb0W1jGY2GYXM</dsig:KeyName>
          <dsig:X509Data>
            <dsig:X509Certificate>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</dsig:X509Certificate>
          </dsig:X509Data>
        </dsig:KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/muni/endpoint"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/upol/endpoint"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/cuni/endpoint"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/zcu/endpoint"/>
      <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/muni/endpoint" index="1"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/upol/endpoint" index="2"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/cuni/endpoint" index="3"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keycloak.atlasgroup.cz/auth/realms/external-idp/broker/zcu/endpoint" index="4"/>
      <md:AttributeConsumingService xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" index="0">
        <md:ServiceName xml:lang="en">CODEXIS ACADEMIA</md:ServiceName>
        <md:ServiceName xml:lang="cs">CODEXIS ACADEMIA</md:ServiceName>
        <md:ServiceDescription xml:lang="en">National and European legal information system CODEXIS®</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Národní a evropský právní informační systém CODEXIS®</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="cs">ATLAS Group</OrganizationName>
      <OrganizationName xml:lang="en">ATLAS Group</OrganizationName>
      <OrganizationDisplayName xml:lang="cs">ATLAS Group</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="en">ATLAS Group</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.atlasgroup.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.atlasgroup.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>David</GivenName>
      <SurName>Siba</SurName>
      <EmailAddress>mailto:siba@atlasgroup.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://keycloak.k8s.prf.jcu.cz:8443/realms/jcu">
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Aplikace PRF JU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Aplikace PRF JU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Aplikace PRF JU</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace PRF JU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://edu-apps.k8s.prf.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://edu-apps.k8s.prf.jcu.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>v7RwaQD6BplnW7MgElBOaIjuNs0nLF0u7WqMn1hA9z0</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>uxYnXYXQG3s77otIYBgclCsM2jcOU4rfOl3gYsFCzLE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://keycloak.k8s.prf.jcu.cz:8443/realms/jcu/broker/edu/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://keycloak.k8s.prf.jcu.cz:8443/realms/jcu/broker/edu/endpoint" index="1" isDefault="true"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Sojka</md:SurName>
      <md:EmailAddress>mailto:sojkaj00@prf.jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knav.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Catalogue of the Library of the Academy of Sciences at Knihovny.cz</DisplayName>
          <Description xml:lang="en">Online catalogue of the Library of the Czech Academy of Sciences operated within the portal Knihovny.cz</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">Katalog Knihovny Akademie věd na portále Knihovny.cz</DisplayName>
          <Description xml:lang="cs">Online katalog Knihovny Akademie věd ČR provozovaný v rámci portálu Knihovny.cz</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knav.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knav.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
BAMTEGNway1mcm9udC5temsuY3owHhcNMTgwODI0MDUxOTQ2WhcNMjgwODIxMDUx
OTQ2WjAbMRkwFwYDVQQDExBjcGstZnJvbnQubXprLmN6MIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAxmBJpBendcnsTUwvvCrjZQ4pL68CrreUiSI5yo5B
WFPZSPWivL8yzpoRy58ORBUDzotkt9eLPYhTmwnpPaK0YojXYKxVWPGZeUyJAFnL
mIzD37pBhu+kEMtJPBfW+FlFUmhTOlEfzyjw4jbWoXShisGRT3jZ9fo1jovtA0fo
hhEkLgfmBWnVNXZ56S87AFwnmRp8/bPwrymD7v0DPEKot4tpVy8BwysAKLtYpHC/
34ok4sRGc17CiQBujTMfU9bJlEteGWXTKXWfUNW47V14LX4sHDstOAnWd/vsUlWp
SNXI+N5067hHSFJCmEcWbs4ucdk8yOowd+aJdIBotsvRAwIDAQABo1kwVzA2BgNV
HREELzAtghBjcGstZnJvbnQubXprLmN6hhlodHRwczovL2Nway1mcm9udC5temsu
Y3ovMB0GA1UdDgQWBBQ6m3JSrGhB4VDWxlwMadT+OGm3zzANBgkqhkiG9w0BAQUF
AAOCAQEAspo2G1ipPcs+VVAow7m2g3r5CbKN83zKNW5rkUGSMj2/e4490m55p/Ae
/dH4KaxDaC2AM3wcn/N+o/ftmmRMF2qAXIEPhyTSoq5gCOFLGfu8oaRfVuzBFrDc
u9rmOJ6QbLhWwIUzsz7UjtKPf+4vhpDao5WNGH4L8HayRa7N46EZDC8n+SPvV+k1
64lVo+N9cQYlPfb3/MDK9z5sBtqljA3O/sRlfIbAqJqmOvknATzKbX2pwvJK3vHs
gRMTjU8nnrXP+FKAweVA1lhy65SILr7bkbAHqekcYDyZ6NjVcVkCEAIW70yh1NJX
EydrxWL0Xs1btUqrx8bojR4+II+CIA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knav.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knav.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knav.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://knav.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Catalogue of the Library of the Academy of Sciences at Knihovny.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Katalog Knihovny Akademie věd na portále Knihovny.cz</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knihovna.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knihovna.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knihovna.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knihovna.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knihovna.cuni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Standby</ds:KeyName>
          <ds:KeyName>knihovna.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=knihovna.cuni.cz,O=Charles University,L=Prague,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDsTCCApmgAwIBAgIJAJaFVaj0QDd8MA0GCSqGSIb3DQEBCwUAMG8xCzAJBgNV
BAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzEPMA0GA1UEBwwGUHJhZ3Vl
MRswGQYDVQQKDBJDaGFybGVzIFVuaXZlcnNpdHkxGTAXBgNVBAMMEGtuaWhvdm5h
LmN1bmkuY3owHhcNMTgwNDE5MDY1MDU4WhcNMjgwNDE2MDY1MDU4WjBvMQswCQYD
VQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDzANBgNVBAcMBlByYWd1
ZTEbMBkGA1UECgwSQ2hhcmxlcyBVbml2ZXJzaXR5MRkwFwYDVQQDDBBrbmlob3Zu
YS5jdW5pLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz1olbWFm
7w6mGIp2xFn+8oX390zcTMhtbIz3J59yaOb4FrskP/QgvOXU255q2EiypYoVjvm6
hHkoahH7yhqKVQRRtWbuw7cEw5kJgki+EYTc3iFuzwPdUHnSeZAW6fZu5KsjHFEM
QUTDHIpvj9om1ohH/wtJhCyD9cuBbsplZVc3lo9TM9/0PaAXsFrAgDvhrpc12xis
iCNnpvm5BuiXKbqu8L7TOrHuG7bZmmzd2ABvk7Mybn67LBW1EgM+wGriGs2IB2Up
sbSR9UURVSei1hj8F7GIo15HQx4hoxFunrKLTLavgAw5X4DJASC40QeUxQtnpOBo
1/Td4+pRhylxFQIDAQABo1AwTjAdBgNVHQ4EFgQUn3jE7xYul00c5I/GZXHNoyCg
A8UwHwYDVR0jBBgwFoAUn3jE7xYul00c5I/GZXHNoyCgA8UwDAYDVR0TBAUwAwEB
/zANBgkqhkiG9w0BAQsFAAOCAQEAnIrCMIp3RWEDMSEHp3NXF0dX9RESO8Yy3Zp5
ivA1WNIP33ee9smdENDx3cCY4DG8vTLEZicD3sIFCoGdRyMUbUSHiusZUeEq4uAS
hclprId7cWscG8eg6X2CPR0LgC2UCDr3/kdhNOD11yxrSM9X/CjwX4JToNXYzPgp
r0TCemjwPuigHIIakTO35p7pqFteFbN5M9+bk8lzOOLRLpW4p/Izs7XVhMgtMpgk
GISSHcVYVk2CcI2XmmsM+GVyhgvh4CVaQtDr1Nr3F4ks56TV+m0OlLb08srow5OP
+jaAHhweNMIqhNSUg17sy8YgIhoGjXu4sKSaC81bEpD8wFjcIA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://knihovna.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Central Library of Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústřední knihovna Univerzity Karlovy v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Central Library of Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://knihovna.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://knihovna.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://knihovna.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Knihovna Futurebooks</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Knihovna Futurebooks</mdui:DisplayName>
          <mdui:Description xml:lang="en">Elektronická knihovna, umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="cs">Electronic library, allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://knihovna.futurebooks.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://knihovna.futurebooks.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://knihovna.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="184" width="440">https://knihovna.futurebooks.cz/storage/app/media/logo-DwKk4x5a.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://knihovna.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>knihovna.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=knihovna.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUb8tOWi65I+h6rbLdiY+WTdP0FH0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://knihovna.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna, umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library, allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kram7.knihovnauk.cz:8443/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius 7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Kramerius 7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>0W21-3nfnAty3d_37P8kj_QqMIXCz_U1bv7T2snYmKk</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kram7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kram7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Ústí Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Ústí Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnauk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnauk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Luboš</md:GivenName>
      <md:SurName>Malý</md:SurName>
      <md:EmailAddress>mailto:lubos.maly@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zbyněk</md:GivenName>
      <md:SurName>Šachl</md:SurName>
      <md:EmailAddress>mailto:zbynek.sachl@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius-dnnt.nkp.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library - Kramerius WOC</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna - Kramerius DNNT</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius-dnnt.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius-dnnt.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALRcjcUc8+IRMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV
BAMTFWtyYW1lcml1cy1kbm50Lm5rcC5jejAeFw0yMDA1MTQxNDA5MjhaFw0zMDA1
MTIxNDA5MjhaMCAxHjAcBgNVBAMTFWtyYW1lcml1cy1kbm50Lm5rcC5jejCCAaIw
DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAJ59JF5mD5QnXb6qQotRm+DAQuBj
m6UNX1vt7kx3qMsudZPuCqVNO7PgBr/0Z5amrvGEQfbxzg4WClBHy8YgGpchi5E5
qyuWBtGw29cH/+D8MLax+NFtftguEbqGAv2mi4hffn+wVnx62cbdgZeRUzxEaA2H
lbxDrxO1t/h31UN1YGsbFdttjxl9nEsZtdxjaw+xFG2W7Mg8VrqymLkRQVCEzTmv
JACYoJXiZbW4ZzcQtAUBNN9zwAzW3Hms1lJRYcbdtKJfYaU8MAjSC98IlAj8UtBt
zto2elZwycanUGILa2QnAmj+wJniJgzXyEAtZIwH3AMvRFkGkUkh50GhaDBbkKLo
KZMODvNfHkoJvNzF2BUW6jcMZeTMsyacofcnTZDlSDr+T2klYRm08YeHRgGPoEeT
EGxrP2mO0q1G1iucPilPhmfNmHe2H+1SaEBm5sO8GxQY6JGJzsYtrEXA20RHL6h3
hJ5EAjUJCG4RPpX5xH8u7iCQq+GtLkYzZhYFHQIDAQABo20wazBKBgNVHREEQzBB
ghVrcmFtZXJpdXMtZG5udC5ua3AuY3qGKGh0dHBzOi8va3JhbWVyaXVzLWRubnQu
bmtwLmN6L3NoaWJib2xldGgwHQYDVR0OBBYEFFw7u8IDNFugKGVRfS3JqcXqBh7Z
MA0GCSqGSIb3DQEBCwUAA4IBgQA+uA4QiZ2Gm0B1QwGhZPkCoY4jMCy/CyVyvdBi
vIlOGpmxi2ekc4uRf5g/+PqKgczv5yg5t7bhdCK4yEt4REHcP0B9pHwBKPkXNe1l
TWob2Mnj8YLa0zYtKeMhe6ZNDe4q28bOx1lJ5oc44psMFFamw/RqERHdGIQ+MKk3
2jIEr7Y6z4+WVXCzHCmAHT+i8kagLeXPpkKlXd7lmZkYS3THRHktKCoxBbqgmThi
/Cq61b0E1OWFW4joRL01YAAbQlLwJpGFJOp5d9beDyT2PQhvcWnVqVWFZvZVqWR3
yaxWMwHZpqDVfFQ2jojoSWrUV02HmkjS9yl/bRAFKhIjUiBa1ooGHlU6l0Iu1TnB
KaTegl2+ha1lfptliwUqyho3WbLK6N2VevnyIw3MX6gGdu/Z7DNUV5L9nSD+0HD6
OPXCrWV2J7BrjPN1CIdoYIZXR07wHQB0j4pyNDT2sVVzEleRrgGJ7R2SGdjw27rK
j5uqC1z816kZnXQClKqTuv9xl2Y=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJAKVopkgCz7YuMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius-dnnt.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">National Digital Library</md:ServiceName>
        <md:ServiceName xml:lang="cs">Národní digitální knihovna</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Národní Digital Library</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Národní digitální knihovna</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="entitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdenko</md:GivenName>
      <md:SurName>Vozár</md:SurName>
      <md:EmailAddress>mailto:dnnt-it@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-eduid.cuni.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Charles University</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Charles University digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.cuni.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Univerzita Karlova</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.cuni.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.cuni.cz/assets/shared/terms/gdpr.cs.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.cuni.cz/assets/shared/terms/gdpr.en.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>p_DZ0N5bn8M2jbTlEARVgEn3UMym9P5W9d4GUmcfVnY</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-eduid.cuni.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-eduid.cuni.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://cuni.cz/UK-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Řihák</md:SurName>
      <md:EmailAddress>mailto:jakub.rihak@ruk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-login.lib.cas.cz/realms/Kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital Library of the Czech Academy of Sciences</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library of the Czech Academy of Sciences / system Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.lib.cas.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.lib.cas.cz/gdpr</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna AV ČR</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna AV ČR / systém Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.lib.cas.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.lib.cas.cz/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>q2-9fULOCrr0omr7OHacxwQvLVVoH9-rNNKlU_-W2aU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-login.lib.cas.cz/realms/Kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-login.lib.cas.cz/realms/Kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Kramerius KNAV</md:ServiceName>
        <md:ServiceName xml:lang="en">Kramerius KNAV</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="edupersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Library of Czech Academy of Sciences</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Akademie věd ČR</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Library of Czech Academy of Sciences</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Akademie věd ČR</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lib.cas.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lib.cas.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Duda</md:SurName>
      <md:EmailAddress>mailto:duda@lib.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-login.svkhk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital Library of the Hradec Králové Region</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library of the Hradec Králové Region / system Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.svkhk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.svkhk.cz/gdpr</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Královéhradeckého kraje</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna Královéhradeckého kraje / systém Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.svkhk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.svkhk.cz/gdpr</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>pH9LJdDeV5o9o51nZyKJ2ON3MqTPrq4fuVnvK4azwhU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-login.svkhk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-login.svkhk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="en">The Digital Library of The Research Library in Hradec Králové</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Kramerius / The Digital Library of The Research Library in Hradec Králové</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Kramerius / Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" Name="eduPersonTargetedID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">SVKHK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">SVKHK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.svkhk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.svkhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivan</md:GivenName>
      <md:SurName>Červený</md:SurName>
      <md:EmailAddress>mailto:ivan.cerveny@svkhk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Sklenář</md:SurName>
      <md:EmailAddress>mailto:petr.sklenar@svkhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius-sp.umprum.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Academy of Arts, Architecture, and Design in Prague</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service for providing access to the Kramerius UMPRUM digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.umprum.cz/about</mdui:InformationURL>
          <mdui:DisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro poskytování přístupu do digitální knihovny Kramerius UMPRUM</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.umprum.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.umprum.cz</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.umprum.cz</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>lK0l1LQcWpaZeLCrbqCje7KaMf35SGkbVP9oTxFBnjU</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-sp.umprum.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-sp.umprum.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of Arts, Architecture, and Design in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Academy of Arts, Architecture, and Design in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.umprum.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.umprum.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivan</md:GivenName>
      <md:SurName>Čapek</md:SurName>
      <md:EmailAddress>mailto:ivan.capek@vsup.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukáš</md:GivenName>
      <md:SurName>Mázl</md:SurName>
      <md:EmailAddress>mailto:mazl@vsup.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius-vs.nkp.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="https://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="https://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Digital library Kramerius</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Kramerius</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital library Kramerius</mdui:Description>
          <mdui:Description xml:lang="cs">Digitální knihovna Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius-vs.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius-vs.nkp.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kramerius-vs.nkp.cz/assets/img/nk-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>shibbkram1.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibbkram1.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAKYDjYK9DPSSMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>shibbkram1.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibbkram1.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAPcv2ws+k9TNMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="https://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius-vs.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Digital library Kramerius</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Kramerius</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Digital library Kramerius</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Digitální knihovna Kramerius</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUnscopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdenko</md:GivenName>
      <md:SurName>Vozár</md:SurName>
      <md:EmailAddress>mailto:Zdenko.Vozar@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius.cbvk.cz/auth/realms/Kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Digital Library of the Research Library of South Bohemia in České Budějovice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library of the Research Library of South Bohemia in České Budějovice / system Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.cbvk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://kramerius.cbvk.cz/about</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna JVK</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Digitální knihovna JVK / systém Kramerius</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.cbvk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://kramerius.cbvk.cz/about</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>27zAmPuXWvXWtAMvRw9m4QE8jZHvXpBu_uCDimN8X8c</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.cbvk.cz/auth/realms/Kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.cbvk.cz/auth/realms/Kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">System Kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="edupersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Research Library of South Bohemia in České Budějovice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Jihočeská vědecká knihovna v Českých Budějovicích</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Research Library of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská vědecká knihovna v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cbvk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cbvk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Nechvátal</md:SurName>
      <md:EmailAddress>mailto:admin@cbvk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius.svkhk.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">The Digital Library of The Research Library in Hradec Králové</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius / The Digital Library of The Research Library in Hradec Králové</mdui:Description>
          <mdui:Description xml:lang="cs">Kramerius / Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.svkhk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.svkhk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kramerius.svkhk.cz/podminky-zpristupneni/img/kramerius-dnnt-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius.svkhk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius.svkhk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.svkhk.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.svkhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.svkhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUY59tTA77PAStpQDEtvlko1FzwVgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.svkhk.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.svkhk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.svkhk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUY59tTA77PAStpQDEtvlko1FzwVgwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAxMSa3JhbWVyaXVzLnN2a2hrLmN6MB4XDTIyMDEyNDE0NDcw
N1oXDTQyMDExOTE0NDcwN1owHTEbMBkGA1UEAxMSa3JhbWVyaXVzLnN2a2hrLmN6
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAsyT9jSPuPxoOL4axbOPj
YINNDXu+QJZFqg5REm/b+JT4/dcXidMAfWhaAlPZBwzmjkNaQ2gVM1Ib6c8BYF+H
0lF70O3YtpcJyfZfw1fFjtOKayKlwcEVXO/4fN+WrnGH7UlAHdBrLkrYgHIe0Ao4
z8Bkq1vJjD82sCgS9vM2H+x1f7WUU+mHSsOHjqzRJPB4DU32bygIqHhv8AXUqXY6
zCAl2VoSUoF1KeoIzpL3fazC+rf0gtQt6beAAc0KEDJtveHj8OVvUub1ii4p4bM2
D0i6tAKaKnMvpRsl/j9JM4t7yNTzS8SfKKQ5ayeTzd5Bw3PsaVkGZ/vtYf6wV3XU
mFs877KBwEmaRIGj1BDpWkytSTYs7fpmn3vBG+9/mLl2t4A6penE1SwigQ7s62za
pLJXtDvFLoA+/UbvXFLhEh/U6Yihts40dC2jYYDZux126Wdf8h4k7ccWbHLJ9Nty
+Qcwr1z209f5xQt5ATsLZNA6OOsdB6nalpQWmzJwJH9vAgMBAAGjZzBlMEQGA1Ud
EQQ9MDuCEmtyYW1lcml1cy5zdmtoay5jeoYlaHR0cHM6Ly9rcmFtZXJpdXMuc3Zr
aGsuY3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUMn91ZN0EV9umB3Byfnq9R6H/CeUw
DQYJKoZIhvcNAQELBQADggGBABaIZ8RINmf4IluM7NAuQ7OYYcbEgf7fO+YzPWyo
U11PrNZSBvld3xJeNZRJX/RvjWYsyqQHv/yf4bNeJe6rzqlFzTceNO1p7Eu2s3Fs
f29GHJHYOeEctUoTpJre/aSaeApCkdTcTY0PwXeDeLgdcjN7s5G8xlsVidIpC7IA
pp2CAXOG7p0VQ8W01diWFkzGZuUcnxtz76+D2tjlLYgRs7olltkjxx/7qPDVQAHH
HPpoaBoi/PzWw8st7lhXbm25yq9zS6IS1it0hSBAPdIxkwAxPAeYZj8cNMKCiEEi
2NqxVNXhJxKCOoo5J+Cw3unKY0WUzosBSFCraRiQp6YDCuXPvnW0YQgHnFtWP6OR
UQ4zUg8t6siCzZqdF69H4Er/WihNtrUwt/TSsU5ZrGuAeqFRb6pN/rSEYplInPez
qUQ+T37GQWwrmA3VQjluxLYoB31WUvhyW8k5ALqrNNSUJ8+wt/GuHGdmFkMePhoy
ooNCyc21KjWibuZMTOMqcuovhA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.svkhk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.svkhk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">The Digital Library of The Research Library in Hradec Králové</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Kramerius / The Digital Library of The Research Library in Hradec Králové</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Kramerius / Digitální knihovna Studijní a vědecké knihovny v Hradci Králové</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Research Library in Hradec Králové</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Studijní a vědecká knihovna v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">SVKHK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">SVKHK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.svkhk.cz/Uvodni-stranka.aspx?lang=en-US</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.svkhk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Sklenář</md:SurName>
      <md:EmailAddress>mailto:petr.sklenar@svkhk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://kramerius.techlib.cz/auth/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius 7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.techlib.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.techlib.cz/en/82764-protection-of-personal-data</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Kramerius 7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://kramerius.techlib.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.techlib.cz/cs/82763-ochrana-osobnich-udaju</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>jYcju1PoaFNO_CQS8fso7bhR8JxmlF7xnY4lV1rCgEM</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.techlib.cz/auth/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/auth/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Kramerius NTK</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technická knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://techlib.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://techlib.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kurš</md:SurName>
      <md:EmailAddress>mailto:jan.kurs@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Lysoněk</md:SurName>
      <md:EmailAddress>mailto:tomas.lysonek@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius.techlib.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Kramerius repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Kramerius repozitář</mdui:DisplayName>
          <mdui:Description xml:lang="en">Repozitář pro digitalizovaná díle NTK.</mdui:Description>
          <mdui:Description xml:lang="cs">Repository for digitalized documents.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kramerius.techlib.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kramerius.techlib.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius.techlib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius.techlib.cz/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.techlib.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.techlib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.techlib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAOKiAYgIzAThMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.techlib.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.techlib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.techlib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAOKiAYgIzAThMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.techlib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.techlib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kramerius-vs.techlib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://kramerius.techlib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Kramerius repository</md:ServiceName>
        <md:ServiceName xml:lang="cs">Kramerius repozitář</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická kaihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">National Library of Technology</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Národní technická knihovna</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kramerius.uzei.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Digital Library - Library of Antonín Švehla</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Digitální knihovna Knihovny Antonína Švehly</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital Library - thousands of titles from our library collection online.</mdui:Description>
          <mdui:Description xml:lang="cs">Digitální knihovna - tisíce titulů z našeho fondu online.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dk.uzei.cz/uzei/about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kas.uzei.cz/themes/ouroboros/images/svg_icons/kas.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kramerius.uzei.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius.uzei.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius.uzei.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius.uzei.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUEl8stPuVB1/Obdaf7dy7eL0sKwIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.uzei.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.uzei.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kramerius.uzei.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Digital Library - Library of Antonín Švehla</md:ServiceName>
        <md:ServiceName xml:lang="cs">Digitální knihovna Knihovny Antonína švehly</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Digital Library - thousands of titles from our library collection online.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Digitální knihovna - tisíce titulů z našeho fondu online.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IAEI, Library of Antonín Švehla</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">UZEI, Knihovna Antonína Švehly</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IAEI, Library of Antonín Švehla</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">UZEI, Knihovna Antonína Švehly</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.iaei.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://uzei.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eliáš</md:GivenName>
      <md:SurName>Škrdlant</md:SurName>
      <md:EmailAddress>mailto:skrdlant.elias@uzei.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ks.techlib.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Goodatit</DisplayName>
          <Description xml:lang="en">Goodatit</Description>
          <InformationURL xml:lang="en">https://ks.techlib.cz/help</InformationURL>
          <DisplayName xml:lang="cs">Služby NTK</DisplayName>
          <Description xml:lang="cs">Služby NTK</Description>
          <InformationURL xml:lang="cs">https://ks.techlib.cz/help</InformationURL>
        </UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUdTuWBuaH73/bQa8u6Az7Vwy6apswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ks.techlib.cz/shibboleth" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Katalog service</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Goodatit</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Goodatit</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">goodatit.com</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://ks.techlib.cz/help/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://ks.techlib.cz/help/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ales</md:GivenName>
      <md:SurName>Hrtus</md:SurName>
      <md:EmailAddress>mailto:ales.hrtus@goodatit.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kurzy.lf1.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">E-learning 1.LF UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">E-learning 1.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">LMS Moodle</mdui:Description>
          <mdui:Description xml:lang="cs">LMS Moodle</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://kurzy.lf1.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://kurzy.lf1.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://kurzy.lf1.cuni.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://kurzy.lf1.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kurzy.lf1.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kurzy.lf1.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUCAi7CUZz2J+uVk2vwwYCsJzuO7YwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kurzy.lf1.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">E-learning 1.LF UK</md:ServiceName>
        <md:ServiceName xml:lang="cs">E-learning 1.LF UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">LMS Moodle</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">LMS Moodle</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University in Prague, 1st faculty of medicine</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze, 1. lékařská fakulta</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, 1st faculty of medicine</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, 1. lékařská fakulta</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://en.lf1.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lf1.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Feber</md:SurName>
      <md:EmailAddress>mailto:martin.feber@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://kw.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">2.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Servisni aplikace.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.lf2.cuni.cz</mdui:InformationURL>
          <mdui:DisplayName xml:lang="en">2.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Servisni aplikace.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.lf2.cuni.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cam142</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cam142</ds:X509SubjectName>
            <ds:X509Certificate>MIID2TCCAkGgAwIBAgIJAIImQ2X3/uKRMA0GCSqGSIb3DQEBCwUAMBExDzANBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://kw.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://kolweb.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Webmaster</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lef.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">lef.lf2.cuni.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">lef.lf2.cuni.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">lef.lf2.cuni.cz</mdui:Description>
          <mdui:Description xml:lang="cs">lef.lf2.cuni.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lef.lf2.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lef.lf2.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>bo142</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=bo142</ds:X509SubjectName>
            <ds:X509Certificate>MIID1jCCAj6gAwIBAgIJAKUXXtmehf/AMA0GCSqGSIb3DQEBCwUAMBAxDjAMBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>bo142</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=bo142</ds:X509SubjectName>
            <ds:X509Certificate>MIID1jCCAj6gAwIBAgIJAPGip2xQP6oTMA0GCSqGSIb3DQEBCwUAMBAxDjAMBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lef.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lef150.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">2nd Faculty of Medicine</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">2.LF UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">2nd Faculty of Medicine</mdui:Description>
          <mdui:Description xml:lang="cs">2.LF UK</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lef150.lf2.cuni.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lef150.lf2.cuni.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.lf2.cuni.cz/themes/custom/pelican/logo-znak.svg</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>lef150.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lef150.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUFYjQZavsDYztpCWyMMJT28BrsWIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>lef150.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lef150.lf2.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUHzJ1TD9rJ1TG7L1xJts/8Ti0UpswDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAxMSbGVmMTUwLmxmMi5jdW5pLmN6MB4XDTIzMDEyMDA4NDcw
OVoXDTMzMDExNzA4NDcwOVowHTEbMBkGA1UEAxMSbGVmMTUwLmxmMi5jdW5pLmN6
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAsDAK99yqLk2wwW2lMiwR
WEWdj/ajB8ZzCVGt1g/lFrtgZmkVc7PwJlRUmDy4XhH0fuB0kwdKmaQ2P+++DCcr
CbPsH6vwLiZZ3RJxoKpodHoVcAkfQ4SsM5U5ho5XSLNH2R7A8hELgrEH9q+XdQob
rT7vv60BzCr/G1XHc4Thbpchek2buRByApEBKUzekBb7q/zBMEKGY2UCpH2pVVh1
TSIVCtg8FkcFZ/JHTtuAbKAtHlrwKHa4R4VhjxnNscQrGnhmIZmZw7947OpMP8so
ZHxOZGslcEoENH7bXnq5Cr8w08JAcnwl35IZBW+BcHlXjUjQmxTm9ZOtP1rQC3ZZ
CW99bev66m/YAMx5dWI3V413cWlhmEyLwsvjxar0mGbpoUZiRpZYq+HQgc/Cqtjk
E1GVypESWX/vWhaKVaIrUzZdv0XvqtXDCRS0LB8vRF7y7B/JLEO05veCQSES4Q3i
mSRuKLx0cFi6E5y51s3vhAgrkM70l4Bkz3woGMKYU5SpAgMBAAGjQDA+MB0GA1Ud
EQQWMBSCEmxlZjE1MC5sZjIuY3VuaS5jejAdBgNVHQ4EFgQU7xMEaOGvGS9+Ief9
bjgkvgskoY0wDQYJKoZIhvcNAQELBQADggGBAAmFoCPWpIECBSkMPN2ebcjk0VL1
z1cMTaDbjCoR3H7oXkLURAH8L9ZowPUOY52GUbJaP7TzXyZjU86c9i+VfTzSUDiA
6pT8yg5jxRzNF3MWvYacgYHockZNw6PiSfVI1dYAf7hrxr1urLSdxMcUSoswM4gA
fXtutd/lDkgownE+f9hHNz06/Tt+7Wo6D3I3J8HeNBVdcH3k5eGCK/yggLOhUdRh
F82CmClZK1MSQBIOJ7g6UJCDTEIaJEbmyHZv7jWXtyiuPQfZ1YUSInsaoLKHtH+U
Le9I05hSDlS3RpezUA04bmLmbEhlbDhqZBUquY6QEyb43Am4Sqm9YPTgDT8FXGy3
Ov19nlyNEq1mwTjgLlQbogrxb4yqW7Dl5sdGVt/XTu3AKAKrnC1W0GEKx1BHs6EK
g9kVxlmURvHTwHWJ6nlM9jl+OcnXCS4F0E1QLjw6uiXnUcnXRxAGP9ATEMGH53lO
7oZ6g/a8po0kofSgm+gPpeJKsKiU45CH586bLg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lef150.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lef150.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lef150.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:postmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://leg.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Election</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby</mdui:DisplayName>
          <mdui:Description xml:lang="en">Election system.</mdui:Description>
          <mdui:Description xml:lang="cs">Volební systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://leg.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://leg.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://volby.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>volby.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=volby.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd8FOgOUKbVMzxY6KbKfRD44Vim8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://leg.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://leg.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://leg.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Election</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Election system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volební systém.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lf1.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">lf1.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">lf1.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna 1. lékařské fakulty Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library of First Faculty of Medicine, Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://lf1.futurebooks.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lf1.futurebooks.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://lf1.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lf1.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lf1.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lf1.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://lf1.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>lf1.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lf1.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUK+S5MDp/m0L29fMJjs9QfkBH9Y8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lf1.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lf1.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna 1. lékařské fakulty Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library of First Faculty of Medicine, Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web pages</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Webové stránky</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web pages</mdui:Description>
          <mdui:Description xml:lang="cs">Webové stránky</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEEzCCAnugAwIBAgIUdM2NW+y4FVIDluSZKD8XpoJgzvUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lpf.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://library.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Central Library of Charles University</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Central Library of Charles University</mdui:Description>
          <mdui:Description xml:lang="cs">Ústřední knihovna Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://library.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://knihovna.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="102" width="543">https://knihovna.cuni.cz/wp-content/uploads/logo-ukuk.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://library.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://library.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://library.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://library.cuni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>library.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=library.cuni.cz,O=Charles University,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDfTCCAmWgAwIBAgIJAOx5Pp3ipecZMA0GCSqGSIb3DQEBCwUAMFUxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://library.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://library.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://library.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://library.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://library.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://library.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://library.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://library.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://library.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://library.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://library.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://library.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Central Library of Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Central Library of Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://library.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://lms3-test.vsb.cz/auth/saml2/sp/metadata.php">
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava - lms3-test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">VSB – Technical University of Ostrava - lms3-test</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Poskytovatel služby pro VŠB-TUO - lms3-test</mdui:Description>
          <mdui:Description xml:lang="en">VSB-TUO Service Provider - lms3-test</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://lms3-test.vsb.cz/?lang=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://lms3-test.vsb.cz/?lang=en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lms3-test.vsb.cz/auth/saml2/sp/saml2-logout.php/lms3-test.vsb.cz"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lms3-test.vsb.cz/auth/saml2/sp/saml2-acs.php/lms3-test.vsb.cz" index="0"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">VŠB – Technická univerzita Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="en">VSB – Technical University of Ostrava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">VŠB – Technická univerzita Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">VSB – Technical University of Ostrava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vsb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vsb.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Adrian</md:GivenName>
      <md:SurName>Kapias</md:SurName>
      <md:EmailAddress>mailto:adrian.kapias@vsb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login-eduid.cis.vscht.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Login portal, CIS UCT Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:DisplayName>
          <mdui:Description xml:lang="en">Login portal, CIS UCT Prague</mdui:Description>
          <mdui:Description xml:lang="cs">Login portál, CIS VŠCHT Praha</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://login.cis.vscht.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://login.cis.vscht.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://tvp.vscht.cz/images/0!0/uzel/18546/logoVSCHT_zakl.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://login-eduid.cis.vscht.cz/shibboleth</ds:KeyName>
          <ds:KeyName>login-eduid.cis.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=login-eduid.cis.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIERzCCAq+gAwIBAgIUfwbwMxPScVwy3x0zk2YDx2ULLXMwDQYJKoZIhvcNAQEL
BQAwIzEhMB8GA1UEAxMYbG9naW4tZWR1aWQuY2lzLnZzY2h0LmN6MB4XDTIyMDYw
NzEwNDY0N1oXDTMyMDYwNDEwNDY0N1owIzEhMB8GA1UEAxMYbG9naW4tZWR1aWQu
Y2lzLnZzY2h0LmN6MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAtoN4
BNQg+CqzRHLTHPUhQ+Ak5rfutQ/PhRKGd14KEyTQw1KOIlMVdkZI6uxTq6ZXZe0I
kDKhJhxHlZZ05jg98Y4sVQ40biDDNig8werZkRdAVsxUNM+MuhWtMPDzT5rbENfv
bWZkmGnVQqg+3FVv9/gO4uqL3zZ3K7AS0KursjHDuzGLFWluoPoA/DFHg/f96+JX
00heuelwkmw1wapSHGPpB8cqfFPWDcQ9nvJraS91wRRi5n9qKgtRZKgb5/DCanSh
xj29sbO5/zjDrbWVUawXXC8vAEz/4kcht9Dns5r2cQABDNubsnDuKfLIGEWnj+mX
q9OlGLzxreAI6dE+p92DJg5aZDppJXcIsav4FMDB3MGH3Ee81ETSivl0/42VxQuM
DtgzqtJEu46YufvFTsENZjdLrHR972vvO24WIRQHiW+4nXpq9DuV8u/FAAw291Mz
YtyulUyA/8wwc/2JJiFvc6hqr8gQKmq5om0EnL61kVgjDgxbS5xC6ELatR2fAgMB
AAGjczBxMFAGA1UdEQRJMEeCGGxvZ2luLWVkdWlkLmNpcy52c2NodC5jeoYraHR0
cHM6Ly9sb2dpbi1lZHVpZC5jaXMudnNjaHQuY3ovc2hpYmJvbGV0aDAdBgNVHQ4E
FgQUla0G084kxcmo5xWQ2zooUgwhorMwDQYJKoZIhvcNAQELBQADggGBAGDpVN7Q
W0IRNS8QCIFo4FTGWyueVlHa98iP5QC4tyYyIRnArqWh7J2vMVHWjGIZNAXEBvEo
yLHOGgCKTyYRUB+3+AD7qsoXkPVi+b/fNcOF+/v5fpzJC5mzNZQ0Bg2vAfyq9yTD
tQdWRzRsmLnNzBCcduq+nSm0Isuy5yoFnNYlSG64TbA0A2SuMaHixnQHJk40RQE7
pg5g90tOLCmUhuXCsokBUBg8OG1PsT7BoSAGTscIJFqNZ0uQXlihOJ7Q7nA95qaC
Z6S1vtpSJXGuZVzmbXADZmUuyuiUraoKX2mPo98e7yfGpqTiP2mjNzkwZymaSsJ3
aq5//n32iEYKUhXDQC/oes/x/Bb52eR01lKLe/sN2hxYJaCUbVDtygkW8MeXIUdf
UQJphwkeneF4ePtmnXW9UY7C6uvJpkfhhzyu3Q6dlPDBMe4MahRl/ecam6DEH37u
VxV5VVmAfyU5qXwpdbnmIF5gHB+9R5qitOmGmfEDLWW7WWOfDmigCFgA3g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://login-eduid.cis.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Login portal, CIS UCT Prague</md:ServiceName>
        <md:ServiceName xml:lang="cs">Login portál, CIS VŠCHT Praha</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Login portal, CIS UCT Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Login portál, CIS VŠCHT Praha</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Horníček</md:SurName>
      <md:EmailAddress>mailto:jan.hornicek@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.aai.elter-ri.eu/proxy">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">eLTER AAI Login</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">eLTER AAI Login</mdui:DisplayName>
          <mdui:Description xml:lang="en">eLTER AAI Login is the authentication gateway to the European research infrastructure eLTER RI</mdui:Description>
          <mdui:Description xml:lang="cs">eLTER AAI Login je autentizační brána evropské výzkumné infrastruktury eLTER RI</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://elter-ri.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://elter-ri.eu</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">elter</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">elter</mdui:Keywords>
          <mdui:Logo height="120" width="50">https://login.aai.elter-ri.eu/proxy/module.php/perun/res/img/elter_logo_120.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.aai.elter-ri.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.elter-ri.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.elter-ri.eu/cas/login?client_name=fed" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">eLTER AAI Login</md:ServiceName>
        <md:ServiceName xml:lang="cs">eLTER AAI Login</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Research Infrastructure eLTER RI</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropská výzkumná infrastruktura eLTER RI</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Research Infrastructure eLTER RI</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropská výzkumná infrastruktura eLTER RI</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://elter-ri.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://elter-ri.eu</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.ceitec.cz/proxy/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CEITEC, Central European Institute of Technology</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CEITEC, Středoevropský technologický institut</mdui:DisplayName>
          <mdui:Description xml:lang="en">This service is the common gateway to the services of CEITEC, scientific centre in the fields of life sciences, advanced materials and technologies.</mdui:Description>
          <mdui:Description xml:lang="cs">Tato služba je přístupovým bodem ke službám technologického institutu CEITEC</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ceitec.eu/about-ceitec/t1107</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ceitec.cz/about-ceitec/t1107</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://login.ceitec.cz/CEITECPrivacypolicy.pdf</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://login.ceitec.cz/CEITECPrivacypolicy.pdf</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">ceitec proxy science technology</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">ceitec proxy science technology</mdui:Keywords>
          <mdui:Logo height="43" width="64">https://login.ceitec.cz/proxy/module.php/ceitec/res/img/logo_64.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login.ceitec.cz/proxy/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CEITEC, Central European Institute of Technology</md:ServiceName>
        <md:ServiceName xml:lang="cs">CEITEC, Středoevropský technologický institut</md:ServiceName>
        <md:ServiceDescription xml:lang="en">This service is the common gateway to the services of CEITEC, scientific centre in the fields of life sciences, advanced materials and technologies.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Tato služba je přístupovým bodem ke službám technologického institutu CEITEC</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CEITEC</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CEITEC</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CEITEC, Central European Institute of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CEITEC, Středoevropský technologický institut</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ceitec.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ceitec.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>CEITEC</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>CEITEC</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Institute of Computer Science</md:GivenName>
      <md:SurName>Masaryk University</md:SurName>
      <md:EmailAddress>mailto:idm@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.ceskadigitalniknihovna.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Czech Digital Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service provider for Czech Digital Library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ceskadigitalniknihovna.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://ceskadigitalniknihovna.cz/assets/shared/terms/cdk/gdpr.en.html</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Česká digitální knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Service provider pro Českou digitální knihovnu</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://ceskadigitalniknihovna.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://ceskadigitalniknihovna.cz/assets/shared/terms/cdk/gdpr.cs.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>L4DI5kBr5jzRO8KgbFx3FsN7xrOmT2mOiFF9ZbEsRiE</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ceskadigitalniknihovna.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ceskadigitalniknihovna.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Česká digitální knihovna</md:ServiceName>
        <md:ServiceName xml:lang="en">Czech Digital Library</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:petr.zabicka@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:remd="http://refeds.org/metadata" entityID="https://login.einfra.cesnet.cz/proxy/">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET e-Infrastructure</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">e-Infrastruktura CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</mdui:Description>
          <mdui:Description xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/e-infrastruktura-3/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/e-infrastruktura-3/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">CESNET cesnet infrastructure aai</mdui:Keywords>
          <mdui:Logo height="146" width="257">https://login.cesnet.cz/proxy/module.php/cesnet/res/img/cesnet_rgb_small.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.einfra.cesnet.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.einfra.cesnet.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.einfra.cesnet.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET e-Infrastructure</md:ServiceName>
        <md:ServiceName xml:lang="cs">e-Infrastruktura CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduroamUID" Name="http://eduroam.cz/attributes/eduroamUID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>CESNET-CERTS</md:GivenName>
      <md:EmailAddress>mailto:certs@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.envri.perun-aai.org/proxy">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">ENVRI Science Login</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ENVRI Science Login</mdui:DisplayName>
          <mdui:Description xml:lang="en">ENVRI Science Login is an intended gateway to the European Environmental Sciences research infrastructures</mdui:Description>
          <mdui:Description xml:lang="cs">ENVRI Science Login je připravovaná přístupová autentizační brána k evropským výzkumným infrastrukturám v oblasti environmentálního výzkumu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://envri.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://envri.eu</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.muni.cz/en/about-us/official-notice-board/personal-data-protection</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">envri elter</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">envri elter</mdui:Keywords>
          <mdui:Logo height="120" width="72">https://login.envri.perun-aai.org/proxy/module.php/perun/res/img/envri_logo_120.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.envri.perun-aai.org/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.envri.perun-aai.org/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ENVRI Science Login</md:ServiceName>
        <md:ServiceName xml:lang="cs">ENVRI Science Login</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Environmental Science Research Infrastructures</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropské výzkumné infrastruktury v oblasti environmentálního výzkumu</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Environmental Science Research Infrastructures</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropské výzkumné infrastruktury v oblasti environmentálního výzkumu</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://envri.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://envri.eu</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:elter@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.europdx.eu/proxy/">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">EuroPDX research infrastructure AAI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Výzkumná infrastruktura EuroPDX - AAI</mdui:DisplayName>
          <mdui:Description xml:lang="en">This service is the common gateway to the services of the EuroPDX research infrastructure.</mdui:Description>
          <mdui:Description xml:lang="cs">Tato služba je přístupovým bodem ke službám výzkumné infrastruktury EuroPDX.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://dataportal.europdx.eu/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://dataportal.europdx.eu/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.europdx.eu/privacy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.europdx.eu/privacy</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">EuroPDX proxy biology life sciences</mdui:Keywords>
          <mdui:Logo height="96" width="96">https://dataportal.europdx.eu/media/3142257/europdx-ri_logo_colours.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.europdx.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.europdx.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">EuroPDX research infrastructure AAI</md:ServiceName>
        <md:ServiceName xml:lang="cs">Výzkumná infrastruktura EuroPDX - AAI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">This service is the common gateway to the services of the EuroPDX research infrastructure.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Tato služba je přístupovým bodem ke službám výzkumné infrastruktury EuroPDX.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">EuroPDX</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">EuroPDX</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">EuroPDX</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">EuroPDX</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.europdx.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.europdx.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>EuroPDX</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:it@europdx.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>EuroPDX</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:contact@europdx.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>EuroPDX</md:GivenName>
      <md:SurName>AAI</md:SurName>
      <md:EmailAddress>mailto:it@europdx.eu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.ezproxy.is.cuni.cz/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.ezproxy.is.cuni.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>login.ezproxy.is.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=login.ezproxy.is.cuni.cz,O=Charles University in Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIFKDCCBBCgAwIBAgIQC+AYvkU/WW7KgLD3QQxJyjANBgkqhkiG9w0BAQsFADBk
MQswCQYDVQQGEwJOTDEWMBQGA1UECBMNTm9vcmQtSG9sbGFuZDESMBAGA1UEBxMJ
QW1zdGVyZGFtMQ8wDQYDVQQKEwZURVJFTkExGDAWBgNVBAMTD1RFUkVOQSBTU0wg
Q0EgMzAeFw0xNTExMjMwMDAwMDBaFw0xODExMjcxMjAwMDBaMGcxCzAJBgNVBAYT
AkNaMRAwDgYDVQQHEwdQcmFoYSAxMSMwIQYDVQQKExpVbml2ZXJ6aXRhIEthcmxv
dmEgdiBQcmF6ZTEhMB8GA1UEAxMYbG9naW4uZXpwcm94eS5pcy5jdW5pLmN6MIIB
IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsyhT7wBm2tAZytTLfsb5A7TX
F8sJ3FjkGh9OntjqAy+FBVCNlM0lFqqgL9KvIFIVdi7n3jbeVk+7S+JeceueHDDA
vKOWaJgkK5RR1K6VWnx7cB4UthRCv7u5HLt+cNCAE4VWUk/sL+TFgAfd8ndfHx2Y
1yUTe5MX0aVmbjlSWutn+GBD9AslqOX0nGUK4ScZxZ29yGMGJeSsRixlIlmd10pF
wRC0wSDzna4ZBJ9YGqGdSYkiXIm3mdP8CedHoM4ZflaX+woh8pD8yad4gRyFahnF
azmL71L0z2lwlTd+z3nqzHvxedpxiaSpfc8sU8Hp9uZViBhBvCQ1o0dzvGVWswID
AQABo4IB0TCCAc0wHwYDVR0jBBgwFoAUZ/2IIBQnmMcJ0iUZu+lREWN1UGIwHQYD
VR0OBBYEFGU6CZDLLCXfsYPL+vjaScgXM6boMCMGA1UdEQQcMBqCGGxvZ2luLmV6
cHJveHkuaXMuY3VuaS5jejAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYB
BQUHAwEGCCsGAQUFBwMCMGsGA1UdHwRkMGIwL6AtoCuGKWh0dHA6Ly9jcmwzLmRp
Z2ljZXJ0LmNvbS9URVJFTkFTU0xDQTMuY3JsMC+gLaArhilodHRwOi8vY3JsNC5k
aWdpY2VydC5jb20vVEVSRU5BU1NMQ0EzLmNybDBMBgNVHSAERTBDMDcGCWCGSAGG
/WwBATAqMCgGCCsGAQUFBwIBFhxodHRwczovL3d3dy5kaWdpY2VydC5jb20vQ1BT
MAgGBmeBDAECAjBuBggrBgEFBQcBAQRiMGAwJAYIKwYBBQUHMAGGGGh0dHA6Ly9v
Y3NwLmRpZ2ljZXJ0LmNvbTA4BggrBgEFBQcwAoYsaHR0cDovL2NhY2VydHMuZGln
aWNlcnQuY29tL1RFUkVOQVNTTENBMy5jcnQwDAYDVR0TAQH/BAIwADANBgkqhkiG
9w0BAQsFAAOCAQEARgkd8oddMehvc2DMuxDDzYPQJQb5oZ0m0isdttO7+jj5h3W/
svbhHDpqetK/WmKbOBPskjxQMbg6+5v+6ycXWcYSAjWsgS+x6RfhJAyV108yjIKW
n6zC7lY23bb/4YAkQ6/zL8JEXbGN2NTKIT9GpQF91iYGXeZwSElPCQ5q4hkV1B6r
6hzOdw6kIWU3pg4/trxAu14Ld7n1DYorVywN/uIa3GjGZoMouVGxq5KoY9NKZ3cl
yHPV0CtKUoeLS4N8stGHTb2Ac9VCz8ycG52y8djt9z5w/5D+lob7UauaNijwdsju
KMPg1gQ+nBzmd3DNJDJFwJSfqQeUhfaifsXsRA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ezproxy.is.cuni.cz/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ezproxy.is.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Novak</md:SurName>
      <md:EmailAddress>petr.novak@ruk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.ezproxy.uochb.cas.cz:2443/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol ">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR - EZproxy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Ústav organické chemie a biochemie AV ČR - EZproxy</mdui:DisplayName>
          <mdui:Description xml:lang="en">EZproxy server</mdui:Description>
          <mdui:Description xml:lang="cs">Proxy server zajišťující vzdáledný přístup k el. zdrojům předplácených pro zaměstnance ÚOCHB a pro zaměstnance integrované knihovny NTK-VŠCHT-ÚOCHB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ezproxy.uochb.cas.cz:2443/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ezproxy.uochb.cas.cz:2443/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://idp.uochb.cas.cz/logo/logo1.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIHmzCCBYOgAwIBAgIBCTANBgkqhkiG9w0BAQsFADCB6DEjMCEGA1UEAxMabG9n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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login.ezproxy.uochb.cas.cz:2443/Shibboleth.sso/SAML/Artifact" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav organické chemie a biochemie AV ČR</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Organic Chemistry and Biochemistry AS CR, v.v.i.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav organické chemie a biochemie AV ČR, v.v.i.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.uochb.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.uochb.cz/cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimír</md:GivenName>
      <md:SurName>Kulhavý</md:SurName>
      <md:EmailAddress>mailto:kulhavy@uochb.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.ezproxy.vscht.cz/sp/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol ">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIFRDCCAywCCQCLWqKkEc0WCTANBgkqhkiG9w0BAQsFADBkMQswCQYDVQQGEwJD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML2/POST" index="1" isDefault="true"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login.ezproxy.vscht.cz/Shibboleth.sso/SAML/Artifact" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology, Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology, Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.vscht.cz/english</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.vscht.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Horníček</md:SurName>
      <md:EmailAddress>jan.hornicek@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://login.kramerius.mzk.cz/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Kramerius 7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.digitalniknihovna.cz/mzk/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.mzk.cz/en/personaldatainfo</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Kramerius 7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Kramerius 7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.digitalniknihovna.cz/mzk/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.mzk.cz/osobniudajeinfo</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>HDf7qIVbl_6b35qiT8q7CI5i2DYLKPQ6Q35PVVOyOHw</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.kramerius.mzk.cz/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.kramerius.mzk.cz/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">Kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Thanh Quang</md:GivenName>
      <md:SurName>Tran</md:SurName>
      <md:EmailAddress>mailto:quangthanh.tran@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabicka@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://login.techlib.cz/cas/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha512"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
        <ns0:UIInfo xmlns:ns0="urn:oasis:names:tc:SAML:metadata:ui">
          <ns0:DisplayName xml:lang="cs">Jednotné přihlášení NTK</ns0:DisplayName>
          <ns0:DisplayName xml:lang="en">NTK Single Sign-On</ns0:DisplayName>
          <ns0:Description xml:lang="cs">Služba jednotného přihlášení Národní technické knihovny pro přístup k online službám NTK.</ns0:Description>
          <ns0:Description xml:lang="en">Single Sign-On service of the National Library of Technology for access to NTK online services.</ns0:Description>
          <ns0:InformationURL xml:lang="cs">https://www.techlib.cz/cs/</ns0:InformationURL>
          <ns0:InformationURL xml:lang="en">https://www.techlib.cz/en/</ns0:InformationURL>
          <ns0:PrivacyStatementURL xml:lang="cs">https://www.techlib.cz/cs/82763-ochrana-osobnich-udaju</ns0:PrivacyStatementURL>
          <ns0:PrivacyStatementURL xml:lang="en">https://www.techlib.cz/en/82764-protection-of-personal-data</ns0:PrivacyStatementURL>
          <ns0:Logo height="40" width="67">https://www.techlib.cz/public/images/logo-eduid.png</ns0:Logo>
        </ns0:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICpzCCAY+gAwIBAgIBATANBgkqhkiG9w0BAQUFADAXMRUwEwYDVQQDDAxjYXMubnRrY3ouY3ow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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIICpzCCAY+gAwIBAgIBATANBgkqhkiG9w0BAQUFADAXMRUwEwYDVQQDDAxjYXMubnRrY3ouY3ow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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.techlib.cz/cas/login?client_name=eduidcz"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.techlib.cz/cas/login?client_name=eduidcz" index="0"/>
      <md:AttributeConsumingService index="0" isDefault="true">
        <md:ServiceName xml:lang="cs">Jednotné přihlášení NTK</md:ServiceName>
        <md:ServiceName xml:lang="en">NTK Single Sign-On</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Autentizační služba Národní technické knihovny pro přístup k aplikacím a licencovaným zdrojům NTK.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Authentication service of the National Library of Technology.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">NTK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">NTK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.techlib.cz/cs/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.techlib.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Support</md:GivenName>
      <md:SurName>NTK</md:SurName>
      <md:EmailAddress>mailto:helpdeskict@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://loschmidt.chemi.muni.cz/fireprot/">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Fireprot portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fireprot portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">FireProt is a web server for an automated design of thermostable proteins.</mdui:Description>
          <mdui:Description xml:lang="cs">FireProt je webový server pro automatický design termostabilních bílkovin.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://loschmidt.chemi.muni.cz/fireprot/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://loschmidt.chemi.muni.cz/fireprot/</mdui:InformationURL>
          <mdui:Logo height="106" width="350">https://loschmidt.chemi.muni.cz/fireprot_logo_350x106.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://loschmidt.chemi.muni.cz/fireprot/</ds:KeyName>
          <ds:KeyName>loschmidt.chemi.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=loschmidt.chemi.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIJAKYCjDot4AtZMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://loschmidt.chemi.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">Fireprot</md:ServiceName>
        <md:ServiceName xml:lang="cs">Fireprot</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FireProt is a web server for an automated design of thermostable proteins.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FireProt je webový server pro automatický design termostabilních bílkovin.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Loschmidt Laboratories</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Loschmidt Laboratories</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Loschmidt Laboratories</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Loschmidt Laboratories</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://loschmidt.chemi.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://loschmidt.chemi.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Štourač</md:SurName>
      <md:EmailAddress>mailto:stourac@mail.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://lrrr.iba.muni.cz/simplesamlphp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Example Service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Example Service</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Lorem ipsum dolor sit amet.</mdui:Description>
          <mdui:Description xml:lang="en">Suspendisse imperdiet nulla in nisi efficitur.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://lrrr.iba.muni.cz/cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://lrrr.iba.muni.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lrrr.iba.muni.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">IBA LF MU</md:OrganizationName>
      <md:OrganizationName xml:lang="en">IBA LF MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">IBA</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">IBA</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.iba.muni.cz/cs</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.iba.muni.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>mailto:saml@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ma.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">Matomo</mdui:Description>
          <mdui:Description xml:lang="cs">Matomo</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ma.upce.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ma.upce.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ma1.upce.cz/Shibboleth.sso/Login" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ma2.upce.cz/Shibboleth.sso/Login" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ma.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ma.upce.cz/Shibboleth.sso/Login" index="4"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://ma.upce.cz/shibboleth</ds:KeyName>
          <ds:KeyName>ma.upce.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ma.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUY12Eyrk2gdZn3YF1JWC6c0p9urswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ma.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ma.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ma.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ma1.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ma1.upce.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ma1.upce.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ma2.upce.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ma2.upce.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ma2.upce.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ma.upce.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Matomo</md:ServiceName>
        <md:ServiceName xml:lang="cs">Matomo</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Project Matomo, multisite authorization.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Projekt Matomo, multisite ověření.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://maia-be.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Data repository of the University of West Bohemia.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Data repository of the University of West Bohemia.</mdui:Description>
          <mdui:Description xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna.zcu.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://maia-be.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://maia-be.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>maia-be.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=maia-be.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEITCCAomgAwIBAgIUcam3aB5Y6yoXEu29OmxqfTQuWMwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://maia-be.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://maia-be.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Data repository of the University of West Bohemia.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Data repository of the University of West Bohemia.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Datový repozitář Západočeské univerzity v Plzni.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:mace:dir:attribute-def:eduPersonEntitlement" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://makovec.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Makovec</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Makovec</mdui:DisplayName>
          <mdui:Description xml:lang="en">An application to manage devices not using 802.1X to connect to network in Telehouse.</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace pro správu zařízení nevyužívajících 802.1X pro zapojení do pevné sítě v Telehouse.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://makovec.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://makovec.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://makovec.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://makovec.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>makovec.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=makovec.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUe5/3b9Hte167iHDyFITFYEoz9L8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://makovec.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://makovec.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://makovec.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Makovec</md:ServiceName>
        <md:ServiceName xml:lang="cs">Makovec</md:ServiceName>
        <md:ServiceDescription xml:lang="en">An application to manage devices not using 802.1X to connect to network in Telehouse.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Aplikace pro správu zařízení nevyužívajících 802.1X pro zapojení do pevné sítě v Telehouse.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Bělina</md:SurName>
      <md:EmailAddress>mailto:jan.belina@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Čáslavský</md:SurName>
      <md:EmailAddress>mailto:jan.caslavsky@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet-motol.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MEFANET-Motol</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MEFANET-Motol</mdui:DisplayName>
          <mdui:Description xml:lang="en">Multimedia support in the education of clinical and health care disciplines</mdui:Description>
          <mdui:Description xml:lang="cs">Multimediální podpora výuky klinických a zdravotnických oborů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet-motol.cuni.cz/index-en.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet-motol.cuni.cz/index.php</mdui:InformationURL>
          <mdui:Logo height="53" width="78">https://mefanet-motol.cuni.cz/images/tpl-motol/logo-mefanet-black.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mefanet-motol.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=CZ,O=Charles University,CN=mefanet-motol.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDZzCCAk+gAwIBAgIJAK6mPyZUqhjjMA0GCSqGSIb3DQEBCwUAMEoxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet-motol.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University - 2nd Faculty of Medicine</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova - 2. lékařská fakulta</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University - 2nd Faculty of Medicine</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova - 2. lékařská fakulta</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://mefanet-motol.cuni.cz/index-en.php</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://mefanet-motol.cuni.cz/index.php</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.fzs.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.fzs.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.fzs.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.fzs.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIJAIvDulrU0U08MA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV
BAMTEm1lZmFuZXQuZnpzLnpjdS5jejAeFw0xNTA4MTIxMzQ2MjhaFw0zNTA4MDcx
MzQ2MjhaMB0xGzAZBgNVBAMTEm1lZmFuZXQuZnpzLnpjdS5jejCCASIwDQYJKoZI
hvcNAQEBBQADggEPADCCAQoCggEBAM2hAHgIpijU+KgkZYBCvXZ6xO8i7ZYMHgri
+iq3jFM6SkpgSDA6VT9H/nJFqMiy9DbPckjY7mE4uHZaX9ZLH78GGQgvqGRmICBC
XZL0jLVJy8louIkzOElKl7PJpX/CHNvV1TsMH/V7rxqFdqPZZ1GieA5L8Jq32gd/
ZBqcYpCSdqTW8ZsgNGCRyAcG6bpr9XapB+rM/JRNKnUyCrOd7uOwl5VwauEIx+4N
W98+JTIisjolTw7LMrljhdfsghUKUI9lQRc+eJGtmgy/vGpem43G83CzEg8aIVL9
SeY25WfNhAk9JuFWnoUhzdOf+4pHmV3n9edjL1cXPAt/LUNbcrsCAwEAAaNnMGUw
RAYDVR0RBD0wO4ISbWVmYW5ldC5menMuemN1LmN6hiVodHRwczovL21lZmFuZXQu
ZnpzLnpjdS5jei9zaGliYm9sZXRoMB0GA1UdDgQWBBRsgHO31XBwbEX/ytNUMhUe
SVBLuTANBgkqhkiG9w0BAQsFAAOCAQEAvWo8IQ4DpdqHSkFT/WILReo4vJ/Y3fOg
JwiyoKEfP4eO8NTokJxUOmOvpJqjePjQZR1e0nY9EoUQYgb94rjX3AhtLpOI37gL
9cOuOmNp8mkE7PxE0Bgsm6DJc7Wl7J71E4ewanB5us107USZxnBr2APcWD5HLRd2
rrA53j0tNKZWogzKWH9deIJ91C3DY9G+P9g/IOLLH2p7zBh8qZW5WUjJc4xrZjsH
2i/Qs/vM/eJeg7EyJU1fnaRxm8YgozNNg5wyAE7pGyDCNgGb9B7lBelH+NVs4VMF
4m8zmDLEEs+O3XCDwUeqWngI4Xc4RMvOd6tkk2azwKFU9dOOf9m9Ig==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet.fzs.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">University of West Bohemia</OrganizationName>
      <OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</OrganizationName>
      <OrganizationDisplayName xml:lang="en">University of West Bohemia</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.zcu.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.zcu.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Jindra</SurName>
      <EmailAddress>paja@civ.zcu.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.lfhk.cuni.cz/shibboleth/eduid/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mefanet - Charles univesity, Medical faculty in Hradec Kralove</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mefanet - Univerzita Karlova, Lékařská fakulta v Hradci Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">Multimedial support in the education of clinical and health care disciplines</mdui:Description>
          <mdui:Description xml:lang="cs">Multimediální podpora výuky klinických a zdravotnických oborů</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.lfhk.cuni.cz/index-en.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.lfhk.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="75" width="1306">https://moodle.lfhk.cuni.cz/moodleadds/loga/hlavicka_2017.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>marek.lfhk.cuni.cz</ds:KeyName>
          <ds:KeyName>mefanet.lfhk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.lfhk.cuni.cz,O=Univerzita Karlova,L=Star\C3\A9 M\C4\9Bsto,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGtDCCBZygAwIBAgIQChn2S8eRBEHzKPzmQ4dmWTANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet.lfhk.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfhk.cuni.cz/default.aspx/?lang=en-GB</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfhk.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Kváš</md:SurName>
      <md:EmailAddress>mailto:kvaso@lfhk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.lfp.cuni.cz/shibboleth/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Educational Portal of Medical Faculty in Pilsen</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Výukový portál Lékařské fakulty v Plzni</mdui:DisplayName>
          <mdui:Description xml:lang="en">Multimedia support in the education of clinical and health care disciplines.</mdui:Description>
          <mdui:Description xml:lang="cs">Multimadiální podpora výuky klinických a zdravotnických oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.lfp.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.lfp.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://mefanet.lfp.cuni.cz/img/logo-mefanet-large.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENTCCAp2gAwIBAgIUbDZizwms5GBM6e0mt3RenmUNt+AwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENTCCAp2gAwIBAgIUGF0JiW482NihGMElu4bat1yE3jYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Educational Portal of Medical Faculty in Pilsen</md:ServiceName>
        <md:ServiceName xml:lang="cs">Výukový portál Lékařské fakulty v Plzni</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Multimedia support in the education of clinical and health care disciplines.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Multimadiální podpora výuky klinických a zdravotnických oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lpf.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Míka</md:SurName>
      <md:EmailAddress>mailto:mika@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.upce.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">University of Pardubice</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Univerzita Pardubice</mdui:DisplayName>
          <mdui:Description xml:lang="en">MEFANET</mdui:Description>
          <mdui:Description xml:lang="cs">MEFANET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.upce.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.upce.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="37">https://idp.upce.cz/images/logo-40.png</mdui:Logo>
          <mdui:Logo height="487" width="745" xml:lang="en">https://idp.upce.cz/images/logo-487-en.png</mdui:Logo>
          <mdui:Logo height="487" width="792" xml:lang="cs">https://idp.upce.cz/images/logo-487-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.upce.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.upce.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mefanetu.upce.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.upce.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.upce.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGTCCAoGgAwIBAgIJAOlprQRL5PiEMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
BAMTD21lZmFuZXQudXBjZS5jejAeFw0xOTAyMDUwOTUwMzVaFw0yNDAyMDQwOTUw
MzVaMBoxGDAWBgNVBAMTD21lZmFuZXQudXBjZS5jejCCAaIwDQYJKoZIhvcNAQEB
BQADggGPADCCAYoCggGBANqbPrOUVBR3QiPMNus1PSxEHXVOmHmUaJbZ6yWEdgYd
8ALZzUYI111U02yhmvb2w8lweTxmdgkIIb99nlkGuxz9v3PoYqKBtKwJl5ALHJ9n
v5+OLOiFPV72snOxVd34ZqgVPEqVou9AvrUd7l5tpxSKPobi7qIEpIvMRoq5SeVm
IwrxFqp2uTdmk+s4htEolrMTZ+FYK4P4lE3MN6QiH37AffX+l8ptWzQ4UrkupGom
Jkd/OV0d3wmIMtwbSo7/CJDD/LKiwA7rZkbHBPWrEGGPd1wIYD5eltQ265e4hD0a
cduppBDHmEXyEi+UtirsbI8kuLwDHFqAtocd5ke7VHUr1sRlC1jA9scrDQ85h66b
hweKCwQ/QvC1xMs+xLndOOXJTulgvjUMzQVW7Li1EnIfvsrv18TY+1XL0AjTqhWS
H+9wgezOqFWqfcQ+0V1d2hHhMAPH81Pkqt3fMOnxDlaLedJV2r/vIqnjEjkRF8kf
xSRvFsMVErm25A2GiRiTgwIDAQABo2IwYDA/BgNVHREEODA2gg9tZWZhbmV0LnVw
Y2UuY3qGI2h0dHBzOi8vbWVmYW5ldHUudXBjZS5jei9zaGliYm9sZXRoMB0GA1Ud
DgQWBBQwoqdt4XcQoIGH4/8vKSmIqum4TTANBgkqhkiG9w0BAQsFAAOCAYEAF4PE
kzfFBP80F/wXvb6g1/7O3HPRjFGqJ9Ok/q5IZFNvhjhLs+nG+AIrEBfSzGdNjMW8
ZVL/THi5ImZrrvM5ZJ3DSNiV8E6YVCATSOWCHqYFvLGG0UVg1BnzwA9dSV9PHBDS
Gwb0VNgI7t4nRFQUOKcgaiE91TUEzTtmTywTlXLcD9qraA+2hAwvbi6oCMBRXNS7
MoPo3mgxRU44uiF94Ekb3vt0s9/BoTPE/qlxTgsplgLLCWttRM0KLUHOmEQjbg/l
TwJWsO5Wg1WQXVp6tpmMEuiqj/aVOoBKb5caSTVr9XyS5LKLFhpaC23qJftbja1q
IueoOQ1jgqVy0VM5eSNQwt+iwj1WpsWBiQUlpip4jMo1AQ91SJPtezmzfhp77SWq
hAZp+oof9/1cnEdgJ5tnFTpSEZj9C1qGldhJzfQbu6UBhs/PD7m3K97Y7uX8y42K
q+jx1fnVz/tWC5L1OxVg1QUnJrZOum4LNIDuPU7j5ksKOU89C86h1VfDAyfl</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upce.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upce.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mefanet.upce.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Pardubice</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Pardubice</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Pardubice</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Pardubice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.upce.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.upce.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vondráček</md:SurName>
      <md:EmailAddress>mailto:jan.vondracek@upce.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mefanet.upol.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">mefanet.upol.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">mefanet.upol.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Educational portal of Faculty of Medicine and Dentristry, Palacký University in Olomouc</mdui:Description>
          <mdui:Description xml:lang="cs">Výukový portál Lékařské fakulty Univerzity Palackého v Olomouci</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mefanet.upol.cz/index-en.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mefanet.upol.cz/index.php</mdui:InformationURL>
          <mdui:Logo height="60" width="60">https://mefanet.upol.cz/images/tpl-olomouc/logo_mefanet.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mefanet.upol.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mefanet.upol.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mefanet.upol.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mefanet.upol.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mefanet.upol.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUCL2LcAtg6Z/EfCqSTvDlAg+jpIswDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAxMPbWVmYW5ldC51cG9sLmN6MB4XDTIxMDIyMzEzMTMwN1oX
DTMxMDIyMTEzMTMwN1owGjEYMBYGA1UEAxMPbWVmYW5ldC51cG9sLmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAsZb8NEcJbEMVi0JqDaoiiB96I262
VbQklYPzPboqaTYTcsEQAjCCFgLQuke5iCOaEptVL9SK6mXpQX0NCWKL0RX55ekw
ylRQN7ljd1xr9Y6xgMRY/uerSRtFSFg4QJSKkC/lWh0ycRE7z79FvMm86uTNAZdz
W7u0XOW7OwtDKsVGOPJgB598g87vpqHdYxUYbxyxjQgvJu7VpRMJuwa68hmHu1NZ
zjsxKyZVPplD/eWiw14T0D/cVh+3bS1TDZHVBjQSwjJ+J2WQZl/SlVnI1x1mNa4a
P0APyCAJ037le4uQgIqFNUc4e5GLCD5EqIceKcc+TcTk8ZdEM3E5Pnr4C2b7zqGy
V3XzTfDU9fQBEZjsVJPCUqz/Xuc7/Ysp0TOa/hK60LHlcOVBrTSgQvqJT4GAsaLx
FByzLZ3VzVtcQ/UEZ9Uf5mwyLo+t8SsppNYBKI5pgJkipveytIVPcMOuyem8IADg
4ps8+2FgC387nAKf4Nj88ltS4LskXBGeal2PAgMBAAGjYTBfMD4GA1UdEQQ3MDWC
D21lZmFuZXQudXBvbC5jeoYiaHR0cHM6Ly9tZWZhbmV0LnVwb2wuY3ovc2hpYmJv
bGV0aDAdBgNVHQ4EFgQUb005Es1KLxy1FBTFV7cG3hQl1kkwDQYJKoZIhvcNAQEL
BQADggGBAKLUS0JcMc6S8aNCvg88yIxAXS06My08cSEma7I5yB/PQ0qMitthftRI
yB+RXel7nrTQnH7cbqSuU/ugtEBjnVXhg/F/Bt6rFYU0HkAs0Hn99Fc+tf1gRShF
BppBOA/A0D8wHmo79T8Z/Sp5JbFskBNUFJgKMzEkxsIK4gdNzouNtX2KmY/5RfAr
luzeJPl6hRdVih3oqB4keY6T6era7vMuHvkkIeb9ap1BPA/oG+dxa/oef/umB2Fj
fFR9LuJCGkpDqx0rtlF9BGDYecSmiE3DVB1GmpydiWLa90Hy9p10Ps1Vtvw6MZ65
n3qZRUCaQLY9XQghdKMFcaaVQQIFOXUPdHWUDip2RRpf9M/5EoEM7Rz3BbD05fvV
9zTHF9sKo480mLBAX03JNa4kEdid7PnMN7tOnbySeOpO2oTmJ0GnwF0vAFVfVqHI
hl6hJ5UGcW9aTnVw5TusKf2kq2Z5JDZGLkRGPdMpc8CbIKie9iBVzjTMqqkaClMi
Xw7ts5un8g==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upol.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upol.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mefanet.upol.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Palacky University Olomouc - Faculty of Medicine and Dentistry</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Palackého v Olomouci - Lékařská fakulta</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Palacky University Olomouc - Faculty of Medicine and Dentistry</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Palackého v Olomouci - Lékařská fakulta</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lf.upol.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lf.upol.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Kopečný</md:SurName>
      <md:EmailAddress>mailto:tomas.kopecny@upol.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mensik.vm.cesnet.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Registration</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Registrace</mdui:DisplayName>
          <mdui:Description xml:lang="en">Registration for a conference</mdui:Description>
          <mdui:Description xml:lang="cs">Registrace na konferenci</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mensik.vm.cesnet.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mensik.vm.cesnet.cz/cs/info</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mensik.vm.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mensik.vm.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mensik.vm.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUav15eeN8M9q9e8vTJIaxP0SxF60wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mensik.vm.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Registration</md:ServiceName>
        <md:ServiceName xml:lang="cs">Registrace</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Form for registration to a conference</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Forlmulář pro registraci na konferenci</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Cesnet</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Cesnet</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Cesnet</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Cesnet</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Menšík</md:SurName>
      <md:EmailAddress>mailto:Jiri.Mensik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mentat-alt.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Mentat - ALT</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Mentat - ALT</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Alternativní server pro systém Mentat.</mdui:Description>
          <mdui:Description xml:lang="en">Alternative server for Mentat system.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://mentat-alt.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://mentat-alt.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mentat-hub.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mentat-hub.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDAzCCAeugAwIBAgIJAKMZzQGlwd7tMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.ten.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mentat-alt.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, Síť národního výzkumu pro ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET, NREN for Czech republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Mach</md:SurName>
      <md:EmailAddress>mailto:jan.mach@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kacha</md:SurName>
      <md:EmailAddress>mailto:pavel.kacha@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mentat-dev.cesnet.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mentat - DEV</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mentat - DEV</mdui:DisplayName>
          <mdui:Description xml:lang="en">Dev server for Mentat system</mdui:Description>
          <mdui:Description xml:lang="cs">Vývojový server pro systém Mentat</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mentat.cesnet.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mentat.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mentat-dev.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mentat-dev.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUHdAbsihSLMOI4dZvT8mLXMKhIYkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-dev.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Mentat - DEV</md:ServiceName>
        <md:ServiceName xml:lang="cs">Mentat - DEV</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Dev server for Mentat system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Vývojový server pro systém Mentat</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:mentat-info@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mentat-hub.cesnet.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mentat - HUB</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Mentat - HUB</mdui:DisplayName>
          <mdui:Description xml:lang="en">Main server for Mentat system</mdui:Description>
          <mdui:Description xml:lang="cs">Hlavní server pro systém Mentat</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mentat.cesnet.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mentat.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mentat-hub.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mentat-hub.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDAzCCAeugAwIBAgIJAKMZzQGlwd7tMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV
BAMTFG1lbnRhdC1odWIuY2VzbmV0LmN6MB4XDTE2MDYwOTA5MjQzN1oXDTI2MDYw
NzA5MjQzN1owHzEdMBsGA1UEAxMUbWVudGF0LWh1Yi5jZXNuZXQuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDI/rThLwiP9w7ALX1mN8i2cRlRNZji
/gRFZFVYUekyD0UbOLZcfKwE9MQiTo4O9YgMq24+FU/oujmyZvGrZbY3l6wMoE7D
3UPjovW6oOFnce/PQaVbaHxSWOAwPWFwHSDVZr4KkH+JkBfwmTOIdf8pfcoxlYzE
JV1AX4XbOBbqEhsnwxAwnGyRhpdzn9xGB02/W/8AfPsKQx47cdhYj1vgpFeTvc90
b7WkT4IssDdUBwFnqWQsy4E5c9OSp4nkNwMlIZZKSZFGbrc+6aXnBmEU4hrEGBjN
mDcEY46to0FP04kN271zoLhqVdfdrvl1rlx6DgnMX/0jtbq7r7GHqWddAgMBAAGj
QjBAMB8GA1UdEQQYMBaCFG1lbnRhdC1odWIuY2VzbmV0LmN6MB0GA1UdDgQWBBTV
KKv8d/LE4SCzjJ1ouy8fpgK85jANBgkqhkiG9w0BAQUFAAOCAQEAR3FnJUogboEU
rt22udwe85ILKY+4Ij3ZLuteQ1s0M9gsAy0nF9NQe3yW5o8u475MgZI0Lp/lJQjv
YhCI/YB7MGqFF5Of3i/8XyinD7kPg5kFAATGKuYnVvPDdMCM4vcx8tSesMHYCcML
/AO1CssbRTrPBxq2lhk7gTgv5sYeWgR2rkpNfQDyWmFyoK+DTkO03vvq/C83b1Wt
uDN6UTD+ZMSWXqHxYPAmU/aQqbnn48AwvQyv9Ig7JeXRoexyZy5WhUD0D5NOr3Hc
5TzBqyrw3yc8hWsm+goKqXZNoYj9LZgeV9IYpz4ZP2KBW/JYH5fnjtPnVzPNXaYU
AlKL0RfaDw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-hub.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mentat-new.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">Mentat - HUB</md:ServiceName>
        <md:ServiceName xml:lang="en">Mentat - HUB</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Hlavní server pro systém Mentat</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Main server for Mentat system</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Contact</md:SurName>
      <md:EmailAddress>mailto:mentat-info@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:remd="http://refeds.org/metadata" xmlns:xrd="http://docs.oasis-open.org/ns/xri/xrd-1.0" entityID="https://meta.cesnet.cz/sp/shibboleth">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/sp-group/mojeid-edu</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">CESNET e-Infrastructure</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">e-Infrastruktura CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</mdui:Description>
          <mdui:Description xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/e-infrastruktura-3/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/e-infrastruktura-3/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.cesnet.cz/personal-data-processing/?lang=en</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.cesnet.cz/zpracovani-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">CESNET cesnet infrastructure grid data+storage</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">CESNET cesnet infrastructure grid data+storage</mdui:Keywords>
          <mdui:Logo height="146" width="257">https://login.cesnet.cz/proxy/module.php/cesnet/res/img/cesnet_rgb_small.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.cesnet.cz/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.cesnet.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.e-infra.cz/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET e-Infrastructure</md:ServiceName>
        <md:ServiceName xml:lang="cs">e-Infrastruktura CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET e-Infrastructure is a complex national IT infrastructure intended to cover the needs of Czech science, development and education.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-infrastruktura CESNET je komplexní sada informatických nástrojů použitelných pro řešení problémů z celé řady oborů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:login@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>CESNET-CERTS</md:GivenName>
      <md:EmailAddress>mailto:certs@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://metaman-dev.eduid.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MetaMan-DEV</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MetaMan-DEV</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing version of the application to manage federations metadata.</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací verze aplikace pro správu metadat federací.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://metaman-dev.eduid.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://metaman-dev.eduid.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://metaman-dev.eduid.cz/shibboleth</ds:KeyName>
          <ds:KeyName>metaman-dev.eduid.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=metaman-dev.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIULfb9w7cn0VfAOcCt8quef+6uyxUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://metaman-dev.eduid.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">MetaMan-DEV</md:ServiceName>
        <md:ServiceName xml:lang="cs">MetaMan-DEV</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Testing version of the application to manage federations metadata.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Testovací verze aplikace pro správu metadat federací.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://metaman.eduid.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MetaMan</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MetaMan</mdui:DisplayName>
          <mdui:Description xml:lang="en">Application to manage federations metadata.</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace pro správu metadat federací.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://metaman.eduid.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://metaman.eduid.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://metaman.eduid.cz/coco-en.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://metaman.eduid.cz/coco-cs.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://metaman.eduid.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://metaman.eduid.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://metaman.eduid.cz/shibboleth</ds:KeyName>
          <ds:KeyName>metaman.eduid.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=metaman.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAJr86z/8vy0FMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://metaman.eduid.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">MetaMan</md:ServiceName>
        <md:ServiceName xml:lang="cs">MetaMan</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Application to manage federations metadata.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Aplikace pro správu metadat federací.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mfa.eduid.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">REFEDS MFA testing service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací služba REFEDS MFA</mdui:DisplayName>
          <mdui:Description xml:lang="en">A service to test REFEDS MFA support at Identity Providers within eduID.cz.</mdui:Description>
          <mdui:Description xml:lang="cs">Služba pro testování podpory REFEDS MFA na Poskytovatelích Identit v eduID.cz.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://mfa.eduid.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://mfa.eduid.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mfa.eduid.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mfa.eduid.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://mfa.eduid.cz/shibboleth</ds:KeyName>
          <ds:KeyName>mfa.eduid.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mfa.eduid.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUSC/uaVW7WFlybp3dX2L/gB7O7aQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mfa.eduid.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mfa.eduid.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mfa.eduid.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Oppolzer</md:SurName>
      <md:EmailAddress>mailto:jan.oppolzer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://mooc.cuni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">MOOC</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">MOOC</mdui:DisplayName>
          <mdui:Description xml:lang="en">Massive Open Online Courses</mdui:Description>
          <mdui:Description xml:lang="cs">Hromadné online kurzy</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://mooc.cuni.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://mooc.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://mooc.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mooc.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>102029</ds:KeyName>
          <ds:KeyName>mooc.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>C=CZ,O=Charles University,CN=mooc.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDYzCCAkugAwIBAgIUDIQRFfg3QnyyfXjP6R2JZXdbmhowDQYJKoZIhvcNAQEL
BQAwQTEVMBMGA1UEAwwMbW9vYy5jdW5pLmN6MRswGQYDVQQKDBJDaGFybGVzIFVu
aXZlcnNpdHkxCzAJBgNVBAYTAkNaMB4XDTE5MTAxNDE1MjgzM1oXDTI5MTAxMTE1
MjgzM1owQTEVMBMGA1UEAwwMbW9vYy5jdW5pLmN6MRswGQYDVQQKDBJDaGFybGVz
IFVuaXZlcnNpdHkxCzAJBgNVBAYTAkNaMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
MIIBCgKCAQEAvK6yoCyu/+5FH+OUQ3LFLcnCV4c6DTUiBntd9gHNosMn2WBre8pT
DOp+Mt+M92rcE7CLQs7AU2TA/mWcW6ffqZ4OFFMqdStQ6gFCVRgs2R8iNsOU2HAz
IFHW7slZYFTHbeoYY7uuZoBSTCKMpn09E03CGOIAxxidwKL4VtGZoToUdVg+5mh6
MOFViRClqpMrSvApw1/Q8iQVIGh4gX4Sn9yHOm3TGKvRcTo+ESZpvE0EQpMeA2j2
4XqG9E+xGfDsQ/W14XOwlOkQ2TB/mqdEUdDF3sqOMzCau2SlYsTOoI9RfOYsppCJ
cxizdQ0Y0YkQ3xnOYYFOwYFzkcFauPiv1QIDAQABo1MwUTAdBgNVHQ4EFgQUSeHH
Mk1U7pRcvdP167MWHCsKpCIwHwYDVR0jBBgwFoAUSeHHMk1U7pRcvdP167MWHCsK
pCIwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAtr7SH/KWrqB4
hWewn42RWIREvbV9zrZN8eKJBlaZRQhLkZMoSvleBOZMJtEsVuVATYtf6DUrMG7K
7T9gBq00ITgFbhAGtEjzI0yCqkbsQ67cu9lGH05ON5ADrKRhSiHNIGGDE32wP1+e
qpXhHeveg23+/fXjmyKbJqNM5pOP1Yj0TCD1WN+DHIjPi9ItruonQWC6v7+rIV23
8b3ZzmAGgufbY4g28ZSiZnxGkalVj/alutuf1t3fr1fvjKO7GDItQk2jDufHd5Vw
xjxTaKyC499MYxkGljWUL0sn9DPn4bSgdTlzjBVSXwC+J/QEiBatPsG20LHm28PN
4V8wRfL1eQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mooc.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mooc.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mooc.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://moodle.ics.muni.cz/simplesamlphp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Moodle ÚVT MUNI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Moodle ICS MUNI</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Moodle pro Ústav Výpočetní Techniky Masarykovy University</mdui:Description>
          <mdui:Description xml:lang="en">Moodle for Institute of Computer Sciences of Masaryk University</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://moodle.ics.muni.cz/?lang=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://moodle.ics.muni.cz/?lang=en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.ics.muni.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle ICS MUNI</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle ICS MUNI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle ICS MUNI</md:ServiceDescription>
        <md:ServiceDescription xml:lang="es">Moodle ICS MUNI</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">ÚVT MUNI</md:OrganizationName>
      <md:OrganizationName xml:lang="en">ICS MUNI</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Ústav Výpočetní Techniky - Masarykova Universita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Computer Sciences - Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://ics.muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://ics.muni.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Matúš</md:GivenName>
      <md:SurName>Raček</md:SurName>
      <md:EmailAddress>mailto:racek@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://moodle.lfhk.cuni.cz/shibboleth/eduid/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle - Charles univesity, Medical faculty in Hradec Kralove</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle - Univerzita Karlova, Lékařská fakulta v Hradci Králové</mdui:DisplayName>
          <mdui:Description xml:lang="en">E-learning</mdui:Description>
          <mdui:Description xml:lang="cs">E-learning</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://moodle.lfhk.cuni.cz/moodle2/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://moodle.lfhk.cuni.cz/moodle2/</mdui:InformationURL>
          <mdui:Logo height="75" width="1306">https://moodle.lfhk.cuni.cz/moodleadds/loga/hlavicka_2017.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>matous.lfhk.cuni.cz</ds:KeyName>
          <ds:KeyName>moodle.lfhk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=moodle.lfhk.cuni.cz,O=Univerzita Karlova,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGrTCCBZWgAwIBAgIQAqnBh0d1mbAlgJVcgnTG2zANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle.lfhk.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, Faculty of Medicine in Hradec Králové</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Hradci Králové</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfhk.cuni.cz/default.aspx/?lang=en-GB</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfhk.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Kváš</md:SurName>
      <md:EmailAddress>mailto:kvaso@lfhk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://moodle.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Moodle system</mdui:Description>
          <mdui:Description xml:lang="cs">Moodle systém</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://moodle.lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://moodle.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://moodle.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>moodle.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=moodle.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIUfLllYB5QfW0TeS8dgasMG5WMZoQwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAxMSbW9vZGxlLmxmcC5jdW5pLmN6MCAXDTI1MDYxNzIwMjcx
OVoYDzIwNTAwNjExMjAyNzE5WjAdMRswGQYDVQQDExJtb29kbGUubGZwLmN1bmku
Y3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCaecDJgaP7DLITtqYq
mZB0T9q+2gadK8ZTYHn2HKvrTp33lF4MS43jYLxTfWBs8puSW/o2kQi029+Amwbw
Mi+9lDuUFm1Hc6wJolhQP0A/ObAq2CfvwP/5DMDgrLboo9Brjm24L/6aFRHBrGKA
XhWFnFOdP6497JeVCdcLv8BLi9oK4S2fCpBkYOdi2N/pgjHlDdUoJ/hcu/aBX4Bj
VN2zfU4bu6UeeQEFAqzFONeupUQvEAEqhwQ7tf1qMwRI3YIp+Fc4wSN/i39fXDbZ
IH6Cv7EOnkvm1HRgwJznU2yLt6NcGiEBfkEH6lu3UImK1JM5ICaGkuY73V5gzKUN
K9nFFZX5DvIijM3M4Xtp1/Eilp3QbSC3kQZ6tJLjND8OTgV++Kfv0v8/7getzdRB
hn1Yp8kMrMPctKKl4XOHaDR1mzhqJF6FY54lvXyNdBYi61kzGvb1Dw76sQQHiZ6i
t/djC5QdgrZzB2NGmVcTuvVpJo8kW1LGoV5UOJpdOKMouK8CAwEAAaNnMGUwRAYD
VR0RBD0wO4ISbW9vZGxlLmxmcC5jdW5pLmN6hiVodHRwczovL21vb2RsZS5sZnAu
Y3VuaS5jei9zaGliYm9sZXRoMB0GA1UdDgQWBBTYsVzKZ2DcHu62HSJOdKwCDfRi
rzANBgkqhkiG9w0BAQsFAAOCAYEATR6Q3y+qWK/SQ2ymLAWDt6ejraUitn0BjfXG
WYE3SYP5yv/K9LWd7zlNOBEuBSSQCBf+buhI5H1WyXPjn3KdDQs+7cgRbqItq42O
PdafKYiOagObA1g9Ye4ScNG7DWfLou6losg6q15ldR8oObHolmVQWTG6h0Xr820p
P/CsOgoc9aY26cyZCINLDw9vUSiJAtmjyzaY7+lXUvTFL5Wd4f6VyrL53Rc5mvtQ
FiqmPJP6ab3rHKHswRc4VGkLvPlsMiYy/nbyLRsNTxAFXASH3NmGUaWIhBGl5cUV
tYl19kZCnVik/igv4AViT4CC4lHkCGZ/+SP9u9mxMFC3qyR2iyCJ+u2k169PXvno
LYY9iC7RoWNeJ12hggbTLrQe21M5kqdhEG4hxnJzs72jWjNh28OWvlnpfhMsPmvQ
anE6m6IUGxyEzg0AKAi+Ss3c5wTHXgnFIuXcPWeOI9qC3o72UoXYEpLAmoLCoXlE
INj0uNbbWU+eJBXYBqbGHVVH+/Kr</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Moodle systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lfp.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://moodle.mefanet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle-MEFANET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle-MEFANET</mdui:DisplayName>
          <mdui:Description xml:lang="en">E-learning courses Moodle-MEFANET</mdui:Description>
          <mdui:Description xml:lang="cs">E-learningové kurzy Moodle-MEFANET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://moodle.mefanet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://moodle.mefanet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://moodle.mefanet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://moodle.mefanet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>moodle.mefanet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=moodle.mefanet.cz,O=Masarykova univerzita,L=Brno,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDtTCCAp2gAwIBAgIJAMAvFYbTe4E9MA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
BAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJubzEe
MBwGA1UECgwVTWFzYXJ5a292YSB1bml2ZXJ6aXRhMRowGAYDVQQDDBFtb29kbGUu
bWVmYW5ldC5jejAeFw0xODA1MjQwNjMzNDZaFw0yODA1MjEwNjMzNDZaMHExCzAJ
BgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzENMAsGA1UEBwwEQnJu
bzEeMBwGA1UECgwVTWFzYXJ5a292YSB1bml2ZXJ6aXRhMRowGAYDVQQDDBFtb29k
bGUubWVmYW5ldC5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMN3
VcNHcBCfLJRZu2Hiz6EZtX4IYzqdVBX7QZ34d99ho32Wep86d0rkMr5ZX8eN6p/o
hIBAtEp4eguoR/BfkvlXIhdv0nWNiyTD62CneNqw/5WChCLLMgXJBsis5Nzh2j/A
ATgvyoxkSEtWgzBPYT1Rm+TECys+6E7uEDOL7e1XD1sVDi0gI8pm0qUhWS5U3xk/
GZfeO/v7NtJ5wQxmOPfg8eh/acelS6/LkcOKCUKhlepwFW+H3Lf44BVew43HK84L
ttr1BJTvFrhi9ukf5E8bYOuKiLV36Clw4hRZgoOt1iXSRUnhhwd+f5OflB6f3Eu4
5pwUr7r6Izk1DpDMXKUCAwEAAaNQME4wHQYDVR0OBBYEFOReHM6yOg3XgctAZjEn
fgF6/j2FMB8GA1UdIwQYMBaAFOReHM6yOg3XgctAZjEnfgF6/j2FMAwGA1UdEwQF
MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAGwQD+wc+Y/gFf/3LjBso+7EpYl2EoQQ
lEKrtOoLNi5SbEcnNPlLiRSaRXDXTFkj4SdK4nP+pdSWEyB0nn3Yh+nB1y6+JTaJ
+BTARm+gABWf3xGkJ3/JHV6ubTw8cK7L/BmaW/JKq8LO7MOUIDXH6gzKOe4OY+Eu
YFaBsgOrSmwZ6edHTunusjot4kIAYTRErQcF4r8de5qH3yUjNrgcCA9ttFJkhCy0
jWhytre/jdtAEvUEhCWZYF22kbariNvBwHLhwvaK1vmCx0juKQYW2jeAZ5exK20n
D09rFfYUOHxd8c2OP8Ki89Lyz471XeXU0BNrt8ssqPtzAx6DaHg1bkQ=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.mefanet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.mefanet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle.mefanet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Central Library of Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Central Library of Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ústřední knihovna Univerzity Karlovy</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://library.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://knihovna.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Víšek</md:SurName>
      <md:EmailAddress>mailto:john@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://munin2.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Semikuv munin</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Šemíkův munin</mdui:DisplayName>
          <mdui:Description xml:lang="en">Semikuv munin</mdui:Description>
          <mdui:Description xml:lang="cs">Šemíkův munin</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://munin2.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://munin2.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://munin2.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://munin2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://munin2.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://munin2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>munin2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=munin2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAIuuWWhq/MYzMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
BAMTEG11bmluMi5jZXNuZXQuY3owHhcNMTUxMDAyMTExNzM1WhcNMjUwOTI5MTEx
NzM1WjAbMRkwFwYDVQQDExBtdW5pbjIuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAvbJHxB8pSTLdZ/LZboeqeACOYdrE+INXWEX73KsU
TAyHKuF9v8DoCY4rb7Wxp0E37d6cpPRyvs2zef1o9ys8P3B/KFMH0TA66U//NjNo
YOuUCFNwcgnCZvxUGtFNJztk7d8Ps2XJi1tKgabMFMiCDbeG/hz6nXP4fZUXaAZq
EeZIAUGrz3/Z1G3Lp83l9r1KxMDjaWxqOc+fljGh05s/e0i6kcVo9zsdM1PpIzEe
vocWKwLG34KrH+eIztRWTXjMqJTea8qyEbT03WO7/lW2SwBQliTaC6c09NhhLP3c
1grQdn/DMf3ti27GxsvxBFkbN/Q0KfkQUtbogeivrKoEQwIDAQABo2MwYTBABgNV
HREEOTA3ghBtdW5pbjIuY2VzbmV0LmN6hiNodHRwczovL211bmluMi5jZXNuZXQu
Y3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUGuBXfJ6awZfbbthpgame94qnYS4wDQYJ
KoZIhvcNAQEFBQADggEBAFv9/tC9YAJzdzgUpPjftMwJQCBd8UzomSDSqB8pCHWa
4wghkAsd50cjrbEV613/+v8o3XRnpm80pCHHSdvsY0qyeuweFYPwUIElA14tBshy
RglvnRUE0W3dVTeTqae6WgXwNGhM2xJVOL4HaV4tRGzfYcumOiYIuT/cGtERhNUi
BCImCgaZxxmDxaPQfAxc2mbOqGxsnBsJ5+Yu4J2LiQXRWLl1Eu9F1NHVLOb3mx+0
4d6WfQWdtX5fo4kq/bkbkMllQXsV0tK81fG32uFzu+kfi6CV9MGgVmpEL+QQzLQ0
bICipBckpmFyMr1AXZud+WYAOt/N+Y9hH2RW4sFzVQM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://munin2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>munin2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=munin2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAIuuWWhq/MYzMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://munin2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://munin2.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://munin2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Semikuv munin</md:ServiceName>
        <md:ServiceName xml:lang="cs">Šemíkův munin</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Semikuv munin</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Šemíkův munin</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Bělina</md:SurName>
      <md:EmailAddress>mailto:jan.belina@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Čáslavský</md:SurName>
      <md:EmailAddress>mailto:jan.caslavsky@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nagios.cesnet.cz/shibboleth/sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nagios.cesnet.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>nagios-sp</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagios-sp</ds:X509SubjectName>
            <ds:X509Certificate>MIICpDCCAYwCCQDh7Lr0fB1NuDANBgkqhkiG9w0BAQUFADAUMRIwEAYDVQQDEwlu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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>nagios-sp</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagios-sp</ds:X509SubjectName>
            <ds:X509Certificate>MIICpDCCAYwCCQDh7Lr0fB1NuDANBgkqhkiG9w0BAQUFADAUMRIwEAYDVQQDEwlu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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nagios.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <OrganizationName xml:lang="en">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ces.net/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <GivenName>Vladimir</GivenName>
      <SurName>Trestik</SurName>
      <EmailAddress>Vladimir.Trestik@cesnet.cz</EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nagios.du3.cesnet.cz/shibboleth/sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>nagios.du3.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagios.du3.cesnet.cz,O=Cesnet,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIC9jCCAd4CCQCTfDuPk0QChjANBgkqhkiG9w0BAQsFADA9MQswCQYDVQQGEwJD
WjEPMA0GA1UEChMGQ2VzbmV0MR0wGwYDVQQDExRuYWdpb3MuZHUzLmNlc25ldC5j
ejAeFw0xNjA2MjAxNzUyNTFaFw00NjA4MDIxNzUyNTFaMD0xCzAJBgNVBAYTAkNa
MQ8wDQYDVQQKEwZDZXNuZXQxHTAbBgNVBAMTFG5hZ2lvcy5kdTMuY2VzbmV0LmN6
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy6dADduLSYCh4ORhQBNF
ZMuXK5uYdlGDwnyf5KjdSemBqEn6WVGsJjtJ9ffArtfg2/8emB0VCCiwuxNC8ho6
V7joe1jB58xfKVdbmN+7U3biq/KfxdLVduFONRqDxiHwJngdwrndArVMxg32tWuc
mBSRgH6JZWg3S7beyAwd6Z6HdpZzkIs5uGYgHPgBiLQ6zHv9xjttIHmBObpxPgRB
KRODsaHcOXOez78tEXd29lcq1xzUL4yYQNcEs8q6RzvABdGxqiKkDiAjqTfeG/Wp
SOBe0CfOXJbrlARWkcoyB6lGLuAzgrLifQZ6Dy9bdsnXdwFl5pBUO6lhHhGjsyew
VwIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBh4/h6X/tweDfvf9vv2kE2vXF2kFYs
lEjwOqwwGb4/Fruahtt8RqgUUar1x5Z3YubVuGH0y9OrftcM2wqhtP4mMp0UXlnG
wr7cSvxCbMGk3QJ6GvxFHOX0Etvepck0AUNVpv4IwXcWStedrCA2yWd0ij1DKXMX
LNb9capL7SL42kwMVbqPIDD3sxdxqR3hPb8kmHimuqJ8gnU86RqBiwMaFfn1LBsw
/qgQZRjN//STR4MxtcgYUpO5Xd/NSSX1NpY/c6Dbslb5sy/Gq62cAMW0sTSYBOlT
kwUj9nWfz+S05FnGv1LcJyeJ9578A2tQ05HPseKB0RnffWGxx1Y7NrJ2</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nagios.du3.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubos</md:GivenName>
      <md:SurName>Kopecky - administrator</md:SurName>
      <md:EmailAddress>du-support@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nagiosx.cesnet.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Nagios service</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Nagios služba</mdui:DisplayName>
          <mdui:Description xml:lang="en">Monitoring system services</mdui:Description>
          <mdui:Description xml:lang="cs">Monitorovací systém služeb</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nagiosx.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nagiosx.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://nagiosx.cesnet.cz/shibboleth/sp</ds:KeyName>
          <ds:KeyName>nagiosx.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nagiosx.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELjCCApagAwIBAgIUUHWW3t696pztkD0RFO16KUv9DX8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nagiosx.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Monitoring system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Monitorovací systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Monitoring system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Monitorovací systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Miloš</md:GivenName>
      <md:SurName>Wimmer</md:SurName>
      <md:EmailAddress>mailto:wimmer@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://naos-be.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Publication repository of the University of West Bohemia.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Publication repository of the University of West Bohemia.</mdui:Description>
          <mdui:Description xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.knihovna.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.knihovna.zcu.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://naos-be.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://naos-be.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>naos-be.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=naos-be.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEITCCAomgAwIBAgIUW9AyNFd1Mz32nBOhGbIE1TLDzjIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://naos-be.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://naos-be.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Publication repository of the University of West Bohemia.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Publication repository of the University of West Bohemia.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Publikační repozitář Západočeské univerzity v Plzni.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:mace:dir:attribute-def:eduPersonEntitlement" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://natur.chemgen.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ScreenX</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ScreenX</mdui:DisplayName>
          <mdui:Description xml:lang="en">Software for HTS data managment.</mdui:Description>
          <mdui:Description xml:lang="cs">Software pro správu dat z HTS.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.openscreen.cz/en/node/97</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.openscreen.cz/cs/node/98</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://openscreen.cz/sites/default/files/openscreen-logo-cs.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://natur.chemgen.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://natur.chemgen.cz/shibboleth</ds:KeyName>
          <ds:KeyName>natur.chemgen.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=natur.chemgen.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAJjYvt0CPvI8MA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://natur.chemgen.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://natur.chemgen.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://natur.chemgen.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Ústav molekulární genetiky AV ČR, v. v. i., CZ-OPENSCREEN: Národní infrastruktura chemické biologie</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Institute of Molecular Genetics of the Czech Academy of Sciences, CZ-OPENSCREEN: National Infrastructure for Chemical Biology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.openscreen.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.openscreen.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Zacek</md:SurName>
      <md:EmailAddress>mailto:michal.zacekm@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Ruzicka</md:SurName>
      <md:EmailAddress>mailto:jiri.ruzicka@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ndk.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">National digital library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Národní digitální knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="en">National Digital Library</mdui:Description>
          <mdui:Description xml:lang="cs">Národní digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ndk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ndk.cz/podminky-zpristupneni</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://prx01.nkp.cz/images/nkcr_logo_ndk.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ndk.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ndk.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALRcjcUc8+IRMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://kramerius-dnnt.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>kramerius-dnnt.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=kramerius-dnnt.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJAKVopkgCz7YuMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ndk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ndk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ndk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ndk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ndk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ndk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ndk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ndk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ndk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">National Digital Library</md:ServiceName>
        <md:ServiceName xml:lang="cs">Národní digitální knihovna</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Národní Digital Library</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Národní digitální knihovna</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUnscopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Holomek</md:SurName>
      <md:EmailAddress>mailto:jan.holomek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor entityID="https://negistry.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://negistry.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://negistry.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>negistry.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=negistry.cesnet.cz,O=Internet Widgits Pty Ltd,ST=Some-State,C=AU</ds:X509SubjectName>
            <ds:X509Certificate>MIIDlzCCAn+gAwIBAgIJAIuKkUM/hefbMA0GCSqGSIb3DQEBCwUAMGIxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://negistry.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://negistry.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://negistry.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Kácha</SurName>
      <EmailAddress>mailto:ph@cesnet.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://neon.cesnet.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web neon.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web neon.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web neon.cesnet.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web neon.cesnet.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://neon.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://neon.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://neon.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://neon.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://neon.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>neon.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=neon.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUCLH+7LdzLfoEG6MZTG0aei6kcAYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://neon.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://neon.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://neon.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web neon.cesnet.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web neon.cesnet.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web neon.cesnet.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web neon.cesnet.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nerd-cti.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NERD for CTI project</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NERD pro projekt CTI</mdui:DisplayName>
          <mdui:Description xml:lang="en">Network Entity Reputation Database (NERD). A database of known malicious IP addresses and other entities (instance of the CTI project)</mdui:Description>
          <mdui:Description xml:lang="cs">Network Entity Reputation Database (NERD). Databáze známých škodlivých IP adres a jiných entit (instance pro projekt CTI)</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nerd-cti.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nerd-cti.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://nerd-cti.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>nerd-cti.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nerd-cti.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUKG4YUiZqJdTA2rTtausnWis24Q8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nerd-cti.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">NERD for CTI project</md:ServiceName>
        <md:ServiceName xml:lang="cs">NERD pro projekt CTI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Network Entity Reputation Database (NERD). A database of known malicious IP addresses and other entities (instance of the CTI project)</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Network Entity Reputation Database (NERD). Databáze známých škodlivých IP adres a jiných entit (instance pro projekt CTI)</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Bartoš</md:SurName>
      <md:EmailAddress>mailto:bartos@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nerd.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nerd.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nerd.cesnet.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NERD - Network Entity Reputation Database</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NERD - Network Entity Reputation Database</mdui:DisplayName>
          <mdui:Description xml:lang="en">Database of known malicious IP addresses and other entities, based on data from Warden and many other sources.</mdui:Description>
          <mdui:Description xml:lang="cs">Databáze známých škodlivých IP adres a jiných entit, založená na datech ze systému Warden a mnoha dalších zdrojů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nerd.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nerd.cesnet.cz/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://nerd.cesnet.cz/privacy-policy.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://nerd.cesnet.cz/privacy-policy.html</mdui:PrivacyStatementURL>
          <mdui:Logo height="40" width="99">https://whoami.cesnet.cz/idp/images/cesnet-logo-40.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>nerd.liberouter.org</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nerd.liberouter.org</ds:X509SubjectName>
            <ds:X509Certificate>MIIEADCCAmigAwIBAgIJAKxtaqHB8b6zMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nerd.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">NERD - Network Entity Reputation Database</md:ServiceName>
        <md:ServiceName xml:lang="cs">NERD - Network Entity Reputation Database</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Database of known malicious IP addresses and other entities, based on data from Warden and many other sources.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Databáze známých škodlivých IP adres a jiných entit, založená na datech ze systému Warden a mnoha dalších zdrojů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cesnet.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Václav</GivenName>
      <SurName>Bartoš</SurName>
      <EmailAddress>mailto:bartos@cesnet.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://netreport.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web netreport.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web netreport.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web netreport.cesnet.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web netreport.cesnet.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://netreport.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://netreport.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://netreport.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://netreport.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://netreport2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>netreport2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=netreport2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUZ2u0zJh9ISBGHoTHvb87x1kUk14wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://netreport.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web netreport.cesnet.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web netreport.cesnet.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web netreport.cesnet.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web netreport.cesnet.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://netreport2.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web netreport2.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web netreport2.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web netreport2.cesnet.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web netreport2.cesnet.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://netreport2.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://netreport2.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://netreport2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://netreport2.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://netreport2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>netreport2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=netreport2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUZ2u0zJh9ISBGHoTHvb87x1kUk14wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://netreport2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web netreport2.cesnet.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web netreport2.cesnet.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web netreport2.cesnet.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web netreport2.cesnet.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://nevel.cesnet.cz/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2016-05-27T10:03:24Z"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Nevel</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Nevel</mdui:DisplayName>
          <mdui:Description xml:lang="en">Pharook's Nevel</mdui:Description>
          <mdui:Description xml:lang="cs">Pharookův Nevel</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ces.net</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nevel.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nevel.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>nevel.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>MIIDkTCCAnmgAwIBAgIJAKobUmlXgU4wMA0GCSqGSIb3DQEBCwUAMF8xCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nevel.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nevel.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nevel.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Kácha</md:SurName>
      <md:EmailAddress>mailto:ph@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nfsmon.ics.muni.cz/">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>nfsmon</ds:KeyName>
          <ds:KeyName>nfsmon.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nfsmon</ds:X509SubjectName>
            <ds:X509Certificate>MIIC7TCCAdWgAwIBAgIJAJxVliReAhGNMA0GCSqGSIb3DQEBBQUAMBExDzANBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>nfsmon</ds:KeyName>
          <ds:KeyName>nfsmon.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nfsmon</ds:X509SubjectName>
            <ds:X509Certificate>MIIC7TCCAdWgAwIBAgIJAJxVliReAhGNMA0GCSqGSIb3DQEBBQUAMBExDzANBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nfsmon.ics.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University - Institute of Computer Science</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University - Institute of Computer Science</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Luznicky</md:SurName>
      <md:EmailAddress>luznijir@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nkp-dev.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
BAMTEGNway1mcm9udC5temsuY3owHhcNMTgwODI0MDUxOTQ2WhcNMjgwODIxMDUx
OTQ2WjAbMRkwFwYDVQQDExBjcGstZnJvbnQubXprLmN6MIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAxmBJpBendcnsTUwvvCrjZQ4pL68CrreUiSI5yo5B
WFPZSPWivL8yzpoRy58ORBUDzotkt9eLPYhTmwnpPaK0YojXYKxVWPGZeUyJAFnL
mIzD37pBhu+kEMtJPBfW+FlFUmhTOlEfzyjw4jbWoXShisGRT3jZ9fo1jovtA0fo
hhEkLgfmBWnVNXZ56S87AFwnmRp8/bPwrymD7v0DPEKot4tpVy8BwysAKLtYpHC/
34ok4sRGc17CiQBujTMfU9bJlEteGWXTKXWfUNW47V14LX4sHDstOAnWd/vsUlWp
SNXI+N5067hHSFJCmEcWbs4ucdk8yOowd+aJdIBotsvRAwIDAQABo1kwVzA2BgNV
HREELzAtghBjcGstZnJvbnQubXprLmN6hhlodHRwczovL2Nway1mcm9udC5temsu
Y3ovMB0GA1UdDgQWBBQ6m3JSrGhB4VDWxlwMadT+OGm3zzANBgkqhkiG9w0BAQUF
AAOCAQEAspo2G1ipPcs+VVAow7m2g3r5CbKN83zKNW5rkUGSMj2/e4490m55p/Ae
/dH4KaxDaC2AM3wcn/N+o/ftmmRMF2qAXIEPhyTSoq5gCOFLGfu8oaRfVuzBFrDc
u9rmOJ6QbLhWwIUzsz7UjtKPf+4vhpDao5WNGH4L8HayRa7N46EZDC8n+SPvV+k1
64lVo+N9cQYlPfb3/MDK9z5sBtqljA3O/sRlfIbAqJqmOvknATzKbX2pwvJK3vHs
gRMTjU8nnrXP+FKAweVA1lhy65SILr7bkbAHqekcYDyZ6NjVcVkCEAIW70yh1NJX
EydrxWL0Xs1btUqrx8bojR4+II+CIA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nkp-dev.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nkp.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Catalogue of the National Library on the portal Knihovny.cz</DisplayName>
          <Description xml:lang="en">Online catalogue of the National Library of the Czech Republic operated within the portal Knihovny.cz</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">Katalog Národní knihovny na portále Knihovny.cz</DisplayName>
          <Description xml:lang="cs">Online katalog Národní knihovny ČR provozovaný v rámci portálu Knihovny.cz</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Content/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Content/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nkp.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nkp.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>cpk-front.mzk.cz</ds:KeyName>
          <ds:KeyName>https://cpk-front.mzk.cz/</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cpk-front.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEjCCAfqgAwIBAgIJAItjSuO26c9IMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nkp.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Catalogue of the National Library on the portal Knihovny.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Katalog Národní knihovny na portále Knihovny.cz</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nnm.fm.tul.cz/shibboleth">
    <md:Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">NNM portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">NNM portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">Neisse Network Mechatronics portal of projects.</mdui:Description>
          <mdui:Description xml:lang="cs">Neisse Network Mechatronics portál projektů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://nnm.fm.tul.cz/pages/about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://nnm.fm.tul.cz/pages/about</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://liane.tul.cz/img/znak-tul.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nnm.fm.tul.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nnm.fm.tul.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://nnm.fm.tul.cz/shibboleth</ds:KeyName>
          <ds:KeyName>nnm.fm.tul.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=nnm.fm.tul.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUbpuphXJdyNZTY5G6Udwn0eSH5s8wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nnm.fm.tul.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nnm.fm.tul.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">NNM portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">NNM portál</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Neisse Network Mechatronics portal of projects.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Neisse Network Mechatronics portál projektů.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Technical University of Liberec</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Technická univerzita v Liberci</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">TUL</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">TUL</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.tul.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.tul.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jana</md:GivenName>
      <md:SurName>Vitvarová</md:SurName>
      <md:EmailAddress>mailto:jana.vitvarova@tul.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://odevzdej.cz/shibboleth/">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://odevzdej.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Odevzdej.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Odevzdej.cz - Seminární a školní práce</mdui:DisplayName>
          <mdui:Description xml:lang="en">Odevzdej.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Odevzdej.cz - Seminární a školní práce.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://odevzdej.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://odevzdej.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://odevzdej.cz/pics/design/od/m/logotyp2.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://odevzdej.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>odevzdej.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=odevzdej.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDCTCCAfGgAwIBAgIJAIGuB86w2JKGMA0GCSqGSIb3DQEBBQUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://odevzdej.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>odevzdej.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=odevzdej.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDCTCCAfGgAwIBAgIJAIGuB86w2JKGMA0GCSqGSIb3DQEBBQUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://odevzdej.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://odevzdej.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://odevzdej.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odevzdej.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odevzdej.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://odevzdej.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://odevzdej.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odevzdej.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odevzdej.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://odevzdej.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://odevzdej.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://odevzdej.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Prohlížeč atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy vydané vaším poskytovatelem identit.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Odevzdej.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Odevzdej.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Odevzdej.cz - Seminární a školní práce</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Odevzdej.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://odevzdej.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://odevzdej.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Stančík</md:SurName>
      <md:EmailAddress>mailto:odevzdej@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://op51.futurebooks.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Softresource, spol. s r.o.</mdui:Description>
          <mdui:Description xml:lang="cs">Softresource, spol. s r.o.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://op51.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://op51.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://op51.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>op51.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=op51.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUTiPBrDRzbWfnU544yk22w0kjN4QwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://op51.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://op51.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://op51.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://openmoodle.phil.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">E-learning server</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">E-learningovy server</mdui:DisplayName>
          <mdui:Description xml:lang="en">Faculty of Arts Masaryk University e-learning server.</mdui:Description>
          <mdui:Description xml:lang="cs">E-learningový server Filozofické fakulty Masarykovy univerzity</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://openmoodle.phil.muni.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://openmoodle.phil.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="85">https://idp2.ics.muni.cz/muni_logo_85x40.png</mdui:Logo>
          <mdui:Logo height="685" width="1452">https://idp2.ics.muni.cz/muni_logo_1452x685.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://openmoodle.phil.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>openmoodle.phil.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=openmoodle.phil.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUB0TA9wZI9/YkZK0VZu9dzcB+GE0wDQYJKoZIhvcNAQEL
BQAwIjEgMB4GA1UEAxMXb3Blbm1vb2RsZS5waGlsLm11bmkuY3owHhcNMTkwODE0
MDY0MTExWhcNMjkwODExMDY0MTExWjAiMSAwHgYDVQQDExdvcGVubW9vZGxlLnBo
aWwubXVuaS5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKihh2up
CgbuV5GamXwoNJ9RDJhuov3ZVFrQM/ZV5/1qH7CHVQdbYgcFwwS6xb+ySbYv6UUn
8IeHJyuzmsELVQ74F52fd1T3xfI3uVoyNfFvuRVXe+VUCV9WbKcNhCCpGYcmhoE3
6qFG5zddyPmdpBC8/jsltYnNAwq8uFp+n2fhzDzZ49op+vXYDrfaVMyVC2wCDvau
0hu/0nHWRHCADLmen2PwnATlTvAut4sLctXPO68IRlh0TrNBTzeOamghMuU7Wjed
ohPsE0V1dOAw1r4lejE33VlRDKx9KSnK9fbd8D6ThpYvt1F2hI87A/erHJvnfuGD
GeNufxN00EeWUgbFSVQy5LPzJPswuP/erQYOls/gwBFELUzHGygM0GCJbOudRWi6
gxN/57PPiNpKLaFHl6OXTo7Rgdx630f0LqDkSJQ2uOoQLmK3IkE6eRDfo9GHH5cV
DHwMKmeq8sfqf1eO/Wqh5qGzlQm3bMavD79O/6dydpgZ9rafEUm0+I4plQIDAQAB
o3EwbzBOBgNVHREERzBFghdvcGVubW9vZGxlLnBoaWwubXVuaS5jeoYqaHR0cHM6
Ly9vcGVubW9vZGxlLnBoaWwubXVuaS5jei9zaGliYm9sZXRoMB0GA1UdDgQWBBT1
vmCZnkL47Phi2FAY0C813XTNnjANBgkqhkiG9w0BAQsFAAOCAYEAYptxeAsGkRf5
duDO8XuIUdcfFtZDnTKuDoP3pbA+ICR1n0kTQjrbNc7Js1evCekEQ4b3A4MSnUQF
OSUixJWaT4yQu7HqkCRjBopaLEBwNkWsha+E1d/MIMz6UP4qPDF0j7Tvh0mYPfLW
vCIbkbMWbM3Vka/SFTjxpTYoPS6lTUr39XzuwpqZsnY8AkUMp7nirDWZeBbSeDq/
X5qgq6UWH6naLalqbVEqrPRH9MpAh47sxJjv7mhBfUA5zZrTw3OCNfdg7ErHSRhP
QDtfAMFh/Pm7oyr1xvSeMQidnjU50c8tYrTgwgLwAeKzW1QnWvHjgh7+CCimjEZt
Mg2g+Do4QtLTgh5f+IiAg5GgvZwShR7EL6x3+o+XsY4Zw8ROnkYaOUzfTWMveOL/
rZ/tEHaVaQ+3adTr99A0OjDRROsBj0KmOVPQS7bo9tdmiCdTKMsS3Z5DX+J/uO0J
+0gNqAQfm4pU3ZDW44bFS7vf6KQIxTNwgoof9DZCKow63lQrhLzP</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://openmoodle.phil.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">E-learning server</md:ServiceName>
        <md:ServiceName xml:lang="cs">E-learningovy server</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Faculty of Arts Masaryk University e-learning server.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">E-learningový server Filozofické fakulty Masarykovy univerzity</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>CIT FF MU</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:cit-sys@phil.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>E-learning</md:GivenName>
      <md:SurName>Office</md:SurName>
      <md:EmailAddress>mailto:elf@phil.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://opti.med.muni.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://opti.med.muni.cz/Shibboleth.sso/optimed"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://opti.med.muni.cz/Shibboleth.sso/optimed" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://opti.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://opti.med.muni.cz/Shibboleth.sso/Login" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://opti.med.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://opti.med.muni.cz/Shibboleth.sso/safeid" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>opti.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=opti.med.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHzCCAgegAwIBAgIJAM1o7oUKiJ/tMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://opti.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://opti.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://opti.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://opti.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Masaryk University</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Masaryk University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Masarykova univerzita</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.muni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Roman</GivenName>
      <SurName>Smid</SurName>
      <EmailAddress>smid@iba.muni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://orca.ruk.cuni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>orca.ruk.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=orca.ruk.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDnTCCAoWgAwIBAgIJAOOzfO7BeV5fMA0GCSqGSIb3DQEBCwUAMGUxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://orca.ruk.cuni.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://otik.uk.zcu.cz/dspace">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://otik.uk.zcu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://otik.uk.zcu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://otik.uk.zcu.cz/dspace</ds:KeyName>
          <ds:KeyName>otik.uk.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=otik.uk.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEDCCAfigAwIBAgIJAPQHbeVkagWbMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
BAMTDm90aWsudWsuemN1LmN6MB4XDTE1MDgxMjEzMzUzM1oXDTMwMDgwODEzMzUz
M1owGTEXMBUGA1UEAxMOb3Rpay51ay56Y3UuY3owggEiMA0GCSqGSIb3DQEBAQUA
A4IBDwAwggEKAoIBAQDA4JnM84iBH1BjwHOwuA0LvT89SWGExzMfDSqnOk1wFwpY
jCcv8EG6nOnMn41fTg2zb8OEH8pvXG+Lp+Dm4osOT/Kjt5PQi1Ci8LGge3xKDxDe
y8By9p0xh0gsRwULs+s42J0zlpXhQW8FG5au6/po3GLJ2p991qws064o6bZPD2Bx
a2WySQdSJOKFpqePJ+LqQu98yYAh4wRa/eJbfcUsP90RYcvp2uIw1WMpeTpPZymK
pbRjTGVaIhXWzX8m2cZVpTx6cNqIqZpeJTk1ZUHVtIJVeyNHI/+XKKCFaH6TfLoB
Jh21TTA4eYPEpCNcIOIAPzK+9vs4EAHs88SXG4r3AgMBAAGjWzBZMDgGA1UdEQQx
MC+CDm90aWsudWsuemN1LmN6hh1odHRwczovL290aWsudWsuemN1LmN6L2RzcGFj
ZTAdBgNVHQ4EFgQUdNYX9V7/imcjIeA+swa+5K9NT7YwDQYJKoZIhvcNAQELBQAD
ggEBALHsiN6Ymt9sIUx2s9DKaH5/wT77nBH7w1USzf5VKu756w9dgbsITpwVga3d
yFL0gTksdAoRL60twjq2jjljCHdYx9coe69PHsYCF/PfIN3xBMGFhqvvjk/qM/gd
FgS/clpWAmJs2C7Uky7SfaAHJjB28GB+Af7jqytkMyNzGOYgMexwNggRlejarMTQ
UN1mFuenSEXu4e6g8hwa/o35d7HPfxsCYwVqg9VF7Bmgxhf2LOh99n+QU/SS+PZR
doCyCUFN8PApebOcHAwbPV2r5n4mh0XEjGQ7J1123TyYjOS3MBTQFmYC1SN9Nz2T
tofTLHTEsU8jQb297WEc5uR9wdw=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://otik.uk.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://otik.uk.zcu.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.zcu.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pakiti.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Pakiti</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Pakiti</mdui:DisplayName>
          <mdui:Description xml:lang="en">Patching status system</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro monitoring aktuálnosti software</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://pakiti.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://pakiti.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://pakiti.cesnet.cz/img/pakiti.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pakiti.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pakiti.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://pakiti.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>pakiti.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pakiti.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJANJMlKawUiftMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pakiti.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pakiti.csirt.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pakiti.egi.eu/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pakiti.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Pakiti</md:ServiceName>
        <md:ServiceName xml:lang="cs">Pakiti</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Patching status system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro monitoring aktuálnosti software</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET z.s.p.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET z.s.p.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET z.s.p.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET z.s.p.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Prochazka</md:SurName>
      <md:EmailAddress>mailto:michal.prochazka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Kouril</md:SurName>
      <md:EmailAddress>mailto:daniel.kouril@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://passivedns.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET PassiveDNS WEB GUI</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET PassiveDNS WEB GUI</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET PassiveDNS WEB GUI</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET PassiveDNS WEB GUI</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://passivedns.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://passivedns.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAKCwQdCgDyyyMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://passivedns.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>passivedns.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=passivedns.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJAKCwQdCgDyyyMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passivedns.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://passivedns.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET PassiveDNS WEB GUI</md:ServiceName>
        <md:ServiceName xml:lang="cs">CESNET PassiveDNS WEB GUI</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET PassiveDNS WEB GUI</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">CESNET PassiveDNS WEB GUI</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radko</md:GivenName>
      <md:SurName>Krkoš</md:SurName>
      <md:EmailAddress>mailto:krkos@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pdns-dev.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET PassiveDNS WEB GUI Test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET PassiveDNS WEB GUI Test</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET PassiveDNS WEB GUI Test</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET PassiveDNS WEB GUI Test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUBlKYY8GlFNxoLRWAYbL4gcLcnCYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://pdns-dev.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>pdns-dev.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pdns-dev.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELzCCApegAwIBAgIUBlKYY8GlFNxoLRWAYbL4gcLcnCYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pdns-dev.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET PassiveDNS WEB GUI Test</md:ServiceName>
        <md:ServiceName xml:lang="cs">CESNET PassiveDNS WEB GUI Test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET PassiveDNS WEB GUI Test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">CESNET PassiveDNS WEB GUI Test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radko</md:GivenName>
      <md:SurName>Krkoš</md:SurName>
      <md:EmailAddress>mailto:krkos@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pedf.cuni.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">pedf.cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">pedf.cuni.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library  Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://pedf.cuni.futurebooks.cz/en/1-privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://pedf.cuni.futurebooks.cz/1-ochrana-soukromi</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://pedf.cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://pedf.cuni.futurebooks.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://pedf.cuni.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>pedf.cuni.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pedf.cuni.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIERzCCAq+gAwIBAgIULzbp8Crt3IkVlraiDOGNzaGk67YwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pedf.cuni.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna Univerzity Karlovy. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library Charles University. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pentest.cesnet.cz/sp/shibboleth">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VoIP Pentester</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">DoIP Pentester</mdui:DisplayName>
          <mdui:Description xml:lang="en">VoIP Pentester</mdui:Description>
          <mdui:Description xml:lang="cs">VoIP Pentester</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://pentest.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://pentest.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.cesnet.cz/wp-content/uploads/2017/11/cesnet_RGB.png</mdui:Logo>
        </mdui:UIInfo>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pentest.cesnet.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>pentest.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pentest.cesnet.cz,O=CESNET\, z\C3\A1jmov\C3\A9 sdru\C5\BEen\C3\AD pr\C3\A1vnick\C3\BDch osob,L=Praha,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGsDCCBZigAwIBAgIQA29MjWWGN+wzM0064CFoNDANBgkqhkiG9w0BAQsFADBk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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>pentest.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pentest.cesnet.cz,O=CESNET\, z\C3\A1jmov\C3\A9 sdru\C5\BEen\C3\AD pr\C3\A1vnick\C3\BDch osob,L=Praha,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIGsDCCBZigAwIBAgIQA29MjWWGN+wzM0064CFoNDANBgkqhkiG9w0BAQsFADBk
MQswCQYDVQQGEwJOTDEWMBQGA1UECBMNTm9vcmQtSG9sbGFuZDESMBAGA1UEBxMJ
QW1zdGVyZGFtMQ8wDQYDVQQKEwZURVJFTkExGDAWBgNVBAMTD1RFUkVOQSBTU0wg
Q0EgMzAeFw0yMDAzMDgwMDAwMDBaFw0yMjAzMTYxMjAwMDBaMHMxCzAJBgNVBAYT
AkNaMQ4wDAYDVQQHEwVQcmFoYTE4MDYGA1UECgwvQ0VTTkVULCB6w6FqbW92w6kg
c2RydcW+ZW7DrSBwcsOhdm5pY2vDvWNoIG9zb2IxGjAYBgNVBAMTEXBlbnRlc3Qu
Y2VzbmV0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2+duSi5h
P6Fa6rdApRMM4PNb6FeZ/8Ci4YVHpvrUEQGKf/qBXN1zouAfGCHGP6J0m9qp+oMK
Mu2IzoSXRaUFnbefXaAsQi+MBZCLXGQtO+6Ugo72vgCNRR0lCEkRTN/bjibsqQXI
i1koOr67IzMFsEaBmM7QjOUBaPasL9+mdflwJGWHutNf8m1ET1X4nWY3YnttIivP
B8odq6FCJwA+FKWnCuVWcVli3beXGvArj4B3iBges+83Y/hQU19LWytrzYjUAsVj
AiUYo7tImGRBkxXLjCkQaiercq8xLtuvefsedHIKCa8RcDAEaVmTMYpxb4S0Fos+
NIgkndWnCpV+MwIDAQABo4IDTTCCA0kwHwYDVR0jBBgwFoAUZ/2IIBQnmMcJ0iUZ
u+lREWN1UGIwHQYDVR0OBBYEFBjkl3yaUppZUYFmZ2nchpjX36SKMBwGA1UdEQQV
MBOCEXBlbnRlc3QuY2VzbmV0LmN6MA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAU
BggrBgEFBQcDAQYIKwYBBQUHAwIwawYDVR0fBGQwYjAvoC2gK4YpaHR0cDovL2Ny
bDMuZGlnaWNlcnQuY29tL1RFUkVOQVNTTENBMy5jcmwwL6AtoCuGKWh0dHA6Ly9j
cmw0LmRpZ2ljZXJ0LmNvbS9URVJFTkFTU0xDQTMuY3JsMEwGA1UdIARFMEMwNwYJ
YIZIAYb9bAEBMCowKAYIKwYBBQUHAgEWHGh0dHBzOi8vd3d3LmRpZ2ljZXJ0LmNv
bS9DUFMwCAYGZ4EMAQICMG4GCCsGAQUFBwEBBGIwYDAkBggrBgEFBQcwAYYYaHR0
cDovL29jc3AuZGlnaWNlcnQuY29tMDgGCCsGAQUFBzAChixodHRwOi8vY2FjZXJ0
cy5kaWdpY2VydC5jb20vVEVSRU5BU1NMQ0EzLmNydDAMBgNVHRMBAf8EAjAAMIIB
fwYKKwYBBAHWeQIEAgSCAW8EggFrAWkAdgC72d+8H4pxtZOUI5eqkntHOFeVCqtS
6BqQlmQ2jh7RhQAAAXC7mWlkAAAEAwBHMEUCIDES90UYsZj2kFRZIi1rrSa41Gjk
gAyCiPLwM/yNmelyAiEAuW0XLrFg7nqpLUs1jW3KuesTRelLD2x8iXew+vcTG4QA
dgAiRUUHWVUkVpY/oS/x922G4CMmY63AS39dxoNcbuIPAgAAAXC7mWmVAAAEAwBH
MEUCIEsonXTDoKRBcD7Rr12XB2yHPdRIWpOjciuT7ydc3l3BAiEAuFRlJrqL8AjR
uWfQyNm4aLcfo9zqHVf7qBIqsayTFi0AdwBRo7D1/QF5nFZtuDd4jwykeswbJ8v3
nohCmg3+1IsF5QAAAXC7mWm5AAAEAwBIMEYCIQDXb3QTgPXWLGvLRVaKUqowMZb7
WVrBUVnGQ9CPmfS5MAIhAI3o263YE6vTY+mIDLikwSH6+xD+vlPTig+E8e15Utum
MA0GCSqGSIb3DQEBCwUAA4IBAQCqSrbg9Gkliewa7AtRUau+smL1cn/a9AyasKKH
31npqm0bVGrfJCjw0ap1BBQvwmn73btWR5xibzBGbdkRng5ZOgEdMHMaFaAOA8dZ
nV8RbLPAEpDXeVIY2Jv+XJrwZ5nhFY4R0xanf3cgMjUHSwYqEtC45uKaci/vA4oW
+1MnfsxQMACvXzt4gnWJkJjDA2+3RQKi4E+URn37YfF8FOfjvphUTPSVWI9zk4na
k/ubs1KnZ34PyTLjATiqBO8CD9VHxP3DK0KOtLmwvZRttq0/xjs3IyiodkO8j6Ws
hoG/4VVOakMYP+BuxQu2tjxqwLTqu9TnoyR4CVRmFNn53qCV</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pentest.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pentest.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pentest.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://pentest.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET z.s.p.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Filip</md:GivenName>
      <md:SurName>Rezac</md:SurName>
      <md:EmailAddress>mailto:filip@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://permonik-test.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://permonik-test.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://permonik-test.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://permonik-test.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://permonik-test.nkp.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://permonik-test.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>permonik-test.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=permonik-test.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUIOHmokkhRczIX1QV5J00KYYrfpAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://permonik-test.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://permonik-test.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://permonik.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">PerMonik</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">PerMonik</mdui:DisplayName>
          <mdui:Description xml:lang="en">A tool for the registration of periodicals</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu a evidenci periodik</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://app.permonik.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="30" width="30">https://app.permonik.nkp.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/api/login/sso"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/api/login/sso" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>app.permonik.nkp.cz</ds:KeyName>
          <ds:KeyName>https://app.permonik.nkp.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=app.permonik.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIJANdJewWfVhYhMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://app.permonik.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">PerMonik</md:ServiceName>
        <md:ServiceName xml:lang="cs">PerMonik</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A tool for the registration of periodicals</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu a evidenci periodik.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republicy</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiří</md:GivenName>
      <md:SurName>Szromek</md:SurName>
      <md:EmailAddress>mailto:jiri.szromek@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://pez.cuni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://pez.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pez.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>pez.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=pez.cuni.cz,OU=Shibboleth SP,O=Univerzita Karlova v Praze,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDkzCCAnugAwIBAgIJAOifQYOR358WMA0GCSqGSIb3DQEBCwUAMGAxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pez.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/POST" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pez.cuni.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pez.cuni.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://pez.cuni.cz/Shibboleth.sso/SAML/Artifact" index="5"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://phishingator-vyvoj.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">phishingator-vyvoj.zcu.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">phishingator-vyvoj.zcu.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">phishingator-vyvoj.zcu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">phishingator-vyvoj.zcu.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">phishingator-vyvoj.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">phishingator-vyvoj.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://phishingator-vyvoj.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phishingator-vyvoj.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phishingator-vyvoj.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIESzCCArOgAwIBAgIUIh0U/cs7Pnfc4wBISx+ucMmurw4wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://phishingator-vyvoj.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phishingator-vyvoj.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phishingator-vyvoj.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIESzCCArOgAwIBAgIUPctwugxyedELxTwFXaG3RkXvy+4wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phishingator-vyvoj.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">phishingator-vyvoj.zcu.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">phishingator-vyvoj.zcu.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">phishingator-vyvoj.zcu.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">phishingator-vyvoj.zcu.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Sebela</md:SurName>
      <md:EmailAddress>mailto:security@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://phix-test.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Moodle UWB Pilsen</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Moodle ZČU</mdui:DisplayName>
          <mdui:Description xml:lang="en">System Moodle University of Pilsen</mdui:Description>
          <mdui:Description xml:lang="cs">Systém Moodle</mdui:Description>
          <mdui:InformationURL xml:lang="en">phix-test.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">phix-test.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://phix-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phix-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phix-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAMrgv04y1T4KMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://phix-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>phix-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=phix-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHDCCAoSgAwIBAgIJAOaqRlOcrl8QMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/Artifact/SOAP" index="2"/>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/Artifact/SOAP" index="3"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phix-test.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://phix-test.zcu.cz/moodle/auth/edugain/Shibboleth.sso/SAML/Artifact" index="18"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle UWB Pilsen</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle ZČU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">System Moodle University of Pilsen</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém Moodle</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Grolmus</md:SurName>
      <md:EmailAddress>mailto:iss@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://portal.lf3.cuni.cz/shibboleth/sp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/WAYF" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://portal.lf3.cuni.cz/shibboleth/sp</ds:KeyName>
          <ds:KeyName>portal.lf3.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portal.lf3.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIJAOqhxYhBPceLMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portal.lf3.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Third Faculty of Medicine, Charles University</OrganizationName>
      <OrganizationName xml:lang="cs">3. LF, Univerzita Karlova</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Third Faculty of Medicine, Charles University</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">3. LF, Univerzita Karlova</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.lf3.cuni.cz/3LFEN-1.html</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.lf3.cuni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Roman</GivenName>
      <SurName>Smid</SurName>
      <EmailAddress>smid@iba.muni.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://portal.med.muni.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portal.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal.med.muni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portal.med.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal.med.muni.cz/Shibboleth.sso/safeid" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>portal.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portal.med.muni.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIJAPHQUbukhmQVMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portal.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>smid@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://portfolio.med.muni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">SIMUportfolio</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">SIMUportfolio</mdui:DisplayName>
          <mdui:Description xml:lang="en">SIMUportfolio, Lékařská fakulta, Masarykova univerzita (SP 3).</mdui:Description>
          <mdui:Description xml:lang="cs">SIMUportfolio, Medical Faculty, Masaryk University (SP 3).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://portfolio.med.muni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://portfolio.med.muni.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portfolio.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portfolio.med.muni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://portfolio.med.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>portfolio.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portfolio.med.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALd7rzJ+Iix/MA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://portfolio.med.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>portfolio.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=portfolio.med.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMDCCApigAwIBAgIJALd7rzJ+Iix/MA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portfolio.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portfolio.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portfolio-en.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA LF MU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">IBA LF MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA LF MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA LF MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>mailto:ibaadmin@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://postudium.cz/auth/saml2/sp/metadata.php">
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">POSTUDIUM</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">POSTUDIUM</mdui:DisplayName>
          <mdui:Description xml:lang="en">Portal for continuous professional development of health care workers.</mdui:Description>
          <mdui:Description xml:lang="cs">Portál pro kontinuální profesní rozvoj pracovníků ve zdravotnictví.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://postudium.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://postudium.cz</mdui:InformationURL>
          <mdui:Logo height="64" width="64">https://postudium.cz/theme/image.php/postudium/theme/1580386100/favicon</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://postudium.cz/auth/saml2/sp/saml2-logout.php/postudium.cz"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://postudium.cz/auth/saml2/sp/saml2-acs.php/postudium.cz" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://postudium.cz/auth/saml2/sp/saml1-acs.php/postudium.cz" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://postudium.cz/auth/saml2/sp/saml2-acs.php/postudium.cz" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://postudium.cz/auth/saml2/sp/saml1-acs.php/postudium.cz" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University, Medicine faculty in Pilsen</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University, Medicine fakulty in Pilsen</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova, Lékařská fakulta v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfp.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfp.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:martin.navratil@lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://postudium.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Postudium</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Postudium</mdui:DisplayName>
          <mdui:Description xml:lang="en">Postudium -- postgraduate, lifelong and specialized education of doctors and other workers in the healthcare sector</mdui:Description>
          <mdui:Description xml:lang="cs">Postudium -- postgraduální, celoživotní a specializační vzdělávání lékařů a dalších pracovníků ve zdravotnictví</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://postudium.lfp.cuni.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://postudium.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://postudium.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>postudium.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=postudium.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUYv6LetNahT98CDVLOExbQOOUqpkwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://postudium.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>postudium.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=postudium.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUFP1X3JCi0CAi3OPMjMSU8j2vlTgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://postudium.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Moodle system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Moodle systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Moodle system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Moodle systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen - Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni - Karlova Univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen - Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni - Karlova Univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lfp.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lfp.cuni.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navratil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://projekty.ics.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://projekty.ics.muni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>projekty.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=projekty.ics.muni.cz,O=Masaryk University,L=Brno-stred,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDwTCCAqmgAwIBAgIJALoi+L/Jo2eHMA0GCSqGSIb3DQEBCwUAMHcxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.ics.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://projekty.ics.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/?lang=en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radim</md:GivenName>
      <md:SurName>Pesa</md:SurName>
      <md:EmailAddress>pesa@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomas</md:GivenName>
      <md:SurName>Sapak</md:SurName>
      <md:EmailAddress>sapakt@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://projekty.umprum.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">UMPRUM Project Database</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Databáze projektů UMPRUM</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web application for managing tenders, theirs projects and external tender projects.</mdui:Description>
          <mdui:Description xml:lang="cs">Webová aplikace pro správu soutěží, jejich projektů a projektů externích soutěží.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://projekty.umprum.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://projekty.umprum.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://projekty.umprum.cz/static/umprum-logo.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://projekty.umprum.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://projekty.umprum.cz/shibboleth</ds:KeyName>
          <ds:KeyName>projekty.umprum.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=projekty.umprum.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIUaPnmafTVZErOGHbOIWJAl51tmT0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.umprum.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.umprum.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://projekty.umprum.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">UMPRUM Project Database</md:ServiceName>
        <md:ServiceName xml:lang="cs">Databáze projektů UMPRUM</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web application for managing tenders, theirs projects and external tender projects.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Webová aplikace pro správu soutěží, jejich projektů a projektů externích soutěží.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Academy of Arts, Architecture and Design in Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Academy of Arts, Architecture and Design in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola uměleckoprůmyslová v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.umprum.cz/web/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.umprum.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Kolář</md:SurName>
      <md:EmailAddress>mailto:jakubkolar23@gmail.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://proxy.aai.lifescience-ri.eu/metadata/backend.xml">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">https://refeds.org/sirtfi</saml:AttributeValue>
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Life Science Login</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Life Science Login</mdui:DisplayName>
          <mdui:Description xml:lang="en">Life Science Login is a common gateway to the European Life Sciences research Infrastructures</mdui:Description>
          <mdui:Description xml:lang="cs">Life Science Login je vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Logo height="284" width="896">https://lifescience-ri.eu/fileadmin/lifescience-ri/templates/site/elsri_logo--wosub.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC2DCCAcACCQDcqv8G3FeVAjANBgkqhkiG9w0BAQsFADAuMSwwKgYDVQQDDCNsc2FhaSBwcm9kIHByb3h5IHNhbWxfcHJveHlfYmFja2VuZDAeFw0xOTEwMDMwMzA1MDZaFw0yOTA5MzAwMzA1MDZaMC4xLDAqBgNVBAMMI2xzYWFpIHByb2QgcHJveHkgc2FtbF9wcm94eV9iYWNrZW5kMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxDI4Ob3yLNvh2VeHgLDbEWkiiYp0v9LMMS5WKd/EeGzAkK1Bil23J6YghO2bLEs+UxgswLtBQwqqEEdYrkvI/0n0jhMUcSanrk9s9TRTn15lHMHOQCYdDZjVH65sA8pjwnIJnctGoYfbxSQIcWhhoBCOniFg6UGnsST2a5i3hI57W4ziYi697kqQ4Te2BdrPmNR27uL93eI7Eyvc1pWAfF5R3KWhr2jCFqvZiNCl2u3I8QQx6Qe/vxpeSDWm91o/FbJcXPwZBhyrQCbOtHaDmTeY0zpP12gBM4sl3qCuRyRMqRm784ZC7I3wWj19CD51JQ+nzmFQxJhHPypT7LHruQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBFIWy3QdX2NCqir1cYJMZaWY8fTBERbs1XYfgO8YbYvvLK63sFSTftmBQukmHnj4vBm4Y6UUUtKfH8DGNln5cgLevWs/jSXNPfHeA8QLAgNdYMD4tGeLojg6uFP8XFfK1+OxKel4FmG9ZoFRCGtIcY0IUevDA24j46k4jns3Q26N6ClyQuup6JcrYTToAij74t8rhXfz4CK9vuYbSXKijv87+GajZmIvzOi7b933Tn6eI5Aa0NYyA2k8k6vuJcT5S5HRwKxGuSKq8MNYrfhzvEXNE/1v1JeM5KcfvzPiA6Vk9hF2EEDL3gF4w8R9/atFk3KtlvP5Bn5YomyIZ//iwK</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC2DCCAcACCQDcqv8G3FeVAjANBgkqhkiG9w0BAQsFADAuMSwwKgYDVQQDDCNsc2FhaSBwcm9kIHByb3h5IHNhbWxfcHJveHlfYmFja2VuZDAeFw0xOTEwMDMwMzA1MDZaFw0yOTA5MzAwMzA1MDZaMC4xLDAqBgNVBAMMI2xzYWFpIHByb2QgcHJveHkgc2FtbF9wcm94eV9iYWNrZW5kMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxDI4Ob3yLNvh2VeHgLDbEWkiiYp0v9LMMS5WKd/EeGzAkK1Bil23J6YghO2bLEs+UxgswLtBQwqqEEdYrkvI/0n0jhMUcSanrk9s9TRTn15lHMHOQCYdDZjVH65sA8pjwnIJnctGoYfbxSQIcWhhoBCOniFg6UGnsST2a5i3hI57W4ziYi697kqQ4Te2BdrPmNR27uL93eI7Eyvc1pWAfF5R3KWhr2jCFqvZiNCl2u3I8QQx6Qe/vxpeSDWm91o/FbJcXPwZBhyrQCbOtHaDmTeY0zpP12gBM4sl3qCuRyRMqRm784ZC7I3wWj19CD51JQ+nzmFQxJhHPypT7LHruQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBFIWy3QdX2NCqir1cYJMZaWY8fTBERbs1XYfgO8YbYvvLK63sFSTftmBQukmHnj4vBm4Y6UUUtKfH8DGNln5cgLevWs/jSXNPfHeA8QLAgNdYMD4tGeLojg6uFP8XFfK1+OxKel4FmG9ZoFRCGtIcY0IUevDA24j46k4jns3Q26N6ClyQuup6JcrYTToAij74t8rhXfz4CK9vuYbSXKijv87+GajZmIvzOi7b933Tn6eI5Aa0NYyA2k8k6vuJcT5S5HRwKxGuSKq8MNYrfhzvEXNE/1v1JeM5KcfvzPiA6Vk9hF2EEDL3gF4w8R9/atFk3KtlvP5Bn5YomyIZ//iwK</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aai.lifescience-ri.eu/cas/login?client_name=fed" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy.aai.lifescience-ri.eu/saml2sp/acs/post" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.aai.lifescience-ri.eu/proxy/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Life Science Login</md:ServiceName>
        <md:ServiceName xml:lang="cs">Life Science Login</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Life Science Login is a common gateway to the European Life Sciences research Infrastructures</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Life Science Login je vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lifescience-ri.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lifescience-ri.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://proxy.acc.aai.lifescience-ri.eu/metadata/backend.xml">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init">
        <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Life Science Login-Acc</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Life Science Login-Acc</mdui:DisplayName>
          <mdui:Description xml:lang="en">Life Science Login (Acc) is a common gateway to the European Life Sciences research Infrastructures</mdui:Description>
          <mdui:Description xml:lang="cs">Life Science Login (Acc) je vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://lifescience-ri.eu/ls-login/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lifescience-ri.eu/aai/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:Keywords xml:lang="en">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Keywords xml:lang="cs">LS+Login Life+Science+Login LS+AAI Life+Science+AAI EOSC-Life European+Life+Science+Research+Infrastructures</mdui:Keywords>
          <mdui:Logo height="284" width="896">https://lifescience-ri.eu/fileadmin/lifescience-ri/templates/site/elsri_logo--wosub.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh2gAwIBAgIUbLSWaIRh10dV8SFeBnlrn43wd3swDQYJKoZIhvcNAQELBQAwKjEoMCYG A1UEAwwfcHJveHktZGV2LmFhaS5saWZlc2NpZW5jZS1yaS5ldTAeFw0yNTA3MjQwODUwMzFaFw0z NTA3MjIwODUwMzFaMCoxKDAmBgNVBAMMH3Byb3h5LWRldi5hYWkubGlmZXNjaWVuY2UtcmkuZXUw ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCrrKhZCBIgJZuQlVM6SN415FD0nat89gBW sAt9/wbiT4jF5+jZzC80ADo7dwQMrqnuKB6tEyeOLqRPVlf393Hv2pBAk7p1BK2mdJbq/1/U2CAa KuApJrch7Slhru+AZ4wRCduWib8WC4Br8MiRe6FlUJNhcXGI/FhDFy+Zbit/qvNEBE/4nG/LqEkM Rwa6EVUAcGDOWxYFlp9lxrjTWam6yq1HRxQyidsMM8rGPZpvDyCU0dqHn4O8ZFPSQbMpV9/48L36 iKqR3jklyxzO7wNtskGrpE6boJ27xiW/vAESyuvUnsfutkbfN4GQoy8InEpwvrlb+JYVJTjqNYJH Ct0rAgMBAAGjUzBRMB0GA1UdDgQWBBTpC9zm216wiGQcM+2p7n1CBC3iFzAfBgNVHSMEGDAWgBTp C9zm216wiGQcM+2p7n1CBC3iFzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAJ pcdbC+sDTr7Z8rN6e9Voeb52OqU/MCg2bkVD0yqiiaza+ElKILaEPEENcD8wA5qOeve0nT04HVjH OivlbwvdzaiWK6Rnfjb4bNVcRRG99znQ6FbPWQ5tZBFl1sd4q4DSQsuIY+shHdDfXHESv6bzb7dS LCvU2YQF2S/c4jn7OX5cVbjQQNv5xSPMEzszT5V30VQcvVQLSGyqrxDzfIatEMKz2z0LKjIx+PDE cXiC02JDKGFjAlkLwf9GDv2Z5fr5d7VhredswxMHrG8Txi9xbXtLQo22iQHNmtdRXzblB7Km2wRB s4x1ipNEMswVdadR04vyOO4Cgru0zJSws/L4</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNTCCAh2gAwIBAgIUbLSWaIRh10dV8SFeBnlrn43wd3swDQYJKoZIhvcNAQELBQAwKjEoMCYG A1UEAwwfcHJveHktZGV2LmFhaS5saWZlc2NpZW5jZS1yaS5ldTAeFw0yNTA3MjQwODUwMzFaFw0z NTA3MjIwODUwMzFaMCoxKDAmBgNVBAMMH3Byb3h5LWRldi5hYWkubGlmZXNjaWVuY2UtcmkuZXUw ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCrrKhZCBIgJZuQlVM6SN415FD0nat89gBW sAt9/wbiT4jF5+jZzC80ADo7dwQMrqnuKB6tEyeOLqRPVlf393Hv2pBAk7p1BK2mdJbq/1/U2CAa KuApJrch7Slhru+AZ4wRCduWib8WC4Br8MiRe6FlUJNhcXGI/FhDFy+Zbit/qvNEBE/4nG/LqEkM Rwa6EVUAcGDOWxYFlp9lxrjTWam6yq1HRxQyidsMM8rGPZpvDyCU0dqHn4O8ZFPSQbMpV9/48L36 iKqR3jklyxzO7wNtskGrpE6boJ27xiW/vAESyuvUnsfutkbfN4GQoy8InEpwvrlb+JYVJTjqNYJH Ct0rAgMBAAGjUzBRMB0GA1UdDgQWBBTpC9zm216wiGQcM+2p7n1CBC3iFzAfBgNVHSMEGDAWgBTp C9zm216wiGQcM+2p7n1CBC3iFzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAJ pcdbC+sDTr7Z8rN6e9Voeb52OqU/MCg2bkVD0yqiiaza+ElKILaEPEENcD8wA5qOeve0nT04HVjH OivlbwvdzaiWK6Rnfjb4bNVcRRG99znQ6FbPWQ5tZBFl1sd4q4DSQsuIY+shHdDfXHESv6bzb7dS LCvU2YQF2S/c4jn7OX5cVbjQQNv5xSPMEzszT5V30VQcvVQLSGyqrxDzfIatEMKz2z0LKjIx+PDE cXiC02JDKGFjAlkLwf9GDv2Z5fr5d7VhredswxMHrG8Txi9xbXtLQo22iQHNmtdRXzblB7Km2wRB s4x1ipNEMswVdadR04vyOO4Cgru0zJSws/L4</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-dev.aai.lifescience-ri.eu/cas/login?client_name=fed" index="0"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Life Science Login - Acc</md:ServiceName>
        <md:ServiceName xml:lang="cs">Life Science Login - Acc</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Life Science Login (Acc) is a common gateway to the European Life Sciences research Infrastructures</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Life Science Login (Accje vstupní brána ke službám Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">European Life Science Research Infrastructures</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Evropské infrastruktury pro výzkum v oblasti přírodních věd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://lifescience-ri.eu/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://lifescience-ri.eu/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>LS Login</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>AAI</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@aai.lifescience-ri.eu</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publi.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Publi</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Publi</mdui:DisplayName>
          <mdui:Description xml:lang="cs">mKnihy Publi</mdui:Description>
          <mdui:Description xml:lang="en">mBooks Publi</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://publi.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://publi.cz</mdui:InformationURL>
          <mdui:Logo height="86" width="86" xml:lang="cs">https://publi.cz/img/publi_logo.svg</mdui:Logo>
          <mdui:Logo height="86" width="86" xml:lang="en">https://publi.cz/img/publi_logo.svg</mdui:Logo>
          <mdui:Logo height="32" width="32" xml:lang="cs">https://publi.cz/front/img/favicons/favicon-32x32.png</mdui:Logo>
          <mdui:Logo height="32" width="32" xml:lang="en">https://publi.cz/front/img/favicons/favicon-32x32.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publi.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publi.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.publi.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>emailAddress=hostmaster@codecreator.cz,CN=www.publi.cz,O=Code Creator\, s.r.o.,L=Brno,ST=South Moravia,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIID/TCCAuWgAwIBAgIJAKV3FfHNz3bWMA0GCSqGSIb3DQEBCwUAMIGUMQswCQYD
VQQGEwJDWjEWMBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEd
MBsGA1UECgwUQ29kZSBDcmVhdG9yLCBzLnIuby4xFTATBgNVBAMMDHd3dy5wdWJs
aS5jejEoMCYGCSqGSIb3DQEJARYZaG9zdG1hc3RlckBjb2RlY3JlYXRvci5jejAe
Fw0xNTEyMDQwNzEyNDFaFw0yNTEyMDEwNzEyNDFaMIGUMQswCQYDVQQGEwJDWjEW
MBQGA1UECAwNU291dGggTW9yYXZpYTENMAsGA1UEBwwEQnJubzEdMBsGA1UECgwU
Q29kZSBDcmVhdG9yLCBzLnIuby4xFTATBgNVBAMMDHd3dy5wdWJsaS5jejEoMCYG
CSqGSIb3DQEJARYZaG9zdG1hc3RlckBjb2RlY3JlYXRvci5jejCCASIwDQYJKoZI
hvcNAQEBBQADggEPADCCAQoCggEBALSoGLyMJV/nsgaZD0Q3YFIVUH5Y1IXr6Vxi
sWT1p1e2zziZm0WOj+82uuiClnVhf06MyOx4IhnDEmRYwezSUzvV6NFLfdCWP4lQ
AuodgESotmajDay8YGYfDcTHiXWTIrj/KUbcHWMr5s5RorJktmkAv0i4VXOYd+LW
QpG2tPu5onxHg7Ht+9UfH8cymN5XGpTK8WBGWy1xBc29QOhu5DY8mbyuJKWCwn11
l6wtahX5gWkxI9zX0+V14mlaqTY94yeiGvuysf3MaP66Lm6e6NqWg3H5ksn5gguh
Lm58xO+fk7SJHe6dpWUZlnH/3vPAG7Oay/cDpka+q6ASHusxzV0CAwEAAaNQME4w
HQYDVR0OBBYEFO77/WpcVP/qm58BVqPvMGGZcNYDMB8GA1UdIwQYMBaAFO77/Wpc
VP/qm58BVqPvMGGZcNYDMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEB
AGlQEC5P9F8TfaEJ18CHTtSQoYBVXQ+MSEjtqERf03X30+36827KzJW9n439EL4F
AsHb7rvEUj0aOX8MaKwVPEy82cmmQ4ICkI6HmG9ELFI5VnSgOE5OFBN3oIKNXzws
mEBPpmgxx7jL6WPLX28Bb573WKtQR/vCmnHaI8EIb/LylWRJkXAyisIbYQrEFJb0
M+RY8AowwPJytatLKZQPXH2M2C2QJrOIpSd9ULafbC8l4CZC2NLeMtyMhze3ilEa
sLwKxbjhn3SXMRpUwtBgrNPJQMypalByGwq21B4QFLfxWUG1xdT8EX0RyqHm0iUi
jDXW070SHG/AmMq05CpVRjQ=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publi.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publi.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://publi.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publi.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publi.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publi.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ecc.publi.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ecichnova.publi.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ejilova.publi.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://elfhk.publi.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://emuni.publi.cz/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eolomoucka.publi.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eosu.publi.cz/Shibboleth.sso/SAML2/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://epubli.publi.cz/Shibboleth.sso/SAML2/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://epurkyna.publi.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eskola.publi.cz/Shibboleth.sso/SAML2/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://esvitavy.publi.cz/Shibboleth.sso/SAML2/POST" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://etrnkova.publi.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://etznj.publi.cz/Shibboleth.sso/SAML2/POST" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eupol.publi.cz/Shibboleth.sso/SAML2/POST" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ealter.publi.cz/Shibboleth.sso/SAML2/POST" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://etul.publi.cz/Shibboleth.sso/SAML2/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uniza.publi.cz/Shibboleth.sso/SAML2/POST" index="18"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publi.cz/Shibboleth.sso/SAML2/POST" index="19"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publi.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publi.cz/Shibboleth.sso/SAML2/Artifact" index="21"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publi.cz/Shibboleth.sso/SAML2/ECP" index="22"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publi.cz/Shibboleth.sso/SAML/POST" index="23"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publi.cz/Shibboleth.sso/SAML/Artifact" index="24"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="cs">Publi</md:ServiceName>
        <md:ServiceName xml:lang="en">Publi</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">mKnihy Publi</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">mBooks Publi</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Code Creator, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Code Creator, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Code Creator</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Code Creator</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.codecreator.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.codecreator.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Hanousek</md:SurName>
      <md:EmailAddress>mailto:info@codecreator.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publications.cuni.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Repozitář publikační činnosti Univerzity Karlovy</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Charles University Research Publications Repository</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Repozitář poskytuje přístup k výsledků vědy a výzkumu autorů z Univerzity Karlovy, například vědeckým článkům, monografiím a jejich kapitolám, apod.</mdui:Description>
          <mdui:Description xml:lang="en">Institutional repository of research outputs produced by Charles University authors. Repository provides access to variety of research outputs, i.e. journal articles, monographs and their chapters, etc.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://publications.cuni.cz/page/about?locale-attribute=cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://publications.cuni.cz/page/about?locale-attribute=en</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publications.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publications.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>publications.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=publications.cuni.cz,O=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDczCCAlugAwIBAgIUKtNjF31RPhospboHCTv1+S9PpTMwDQYJKoZIhvcNAQEM
BQAwSTELMAkGA1UEBhMCQ1oxGzAZBgNVBAoMElVuaXZlcnppdGEgS2FybG92YTEd
MBsGA1UEAwwUcHVibGljYXRpb25zLmN1bmkuY3owHhcNMjIwOTA5MDkzNjAxWhcN
NDIwOTA0MDkzNjAxWjBJMQswCQYDVQQGEwJDWjEbMBkGA1UECgwSVW5pdmVyeml0
YSBLYXJsb3ZhMR0wGwYDVQQDDBRwdWJsaWNhdGlvbnMuY3VuaS5jejCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAJR2UpQtzefL4Ft4vfnGxa+D+ka0wcb6
CuK6/yBvCD7nXPD4y+5WlEEe/poyrXUNtrktoeAzRWltrf1DU2QhL1A2vbeYvaYt
2OhDiC9MSGFfIBDeuC5TPuZgFjJCbeHwkyZ2tpUC8DZ02lT/pr+ooo7PRjjcWM/w
EAShCcmNxx/OkHQYvPXz3XETgSgKeo6sInhoXRseaW9j1T1sIDjdHFTUmKEMdZ/H
RSNeByD8OramAyybrU3fn6IrHHzkMMJXd1izfteTZ0B3Ay0INEdinFi+5T7FhmrR
bV9whf0rhvm6FkdX6v/ajx9iWfn43lrA0jiJ6Jxr7YuRJOidpLIkM/MCAwEAAaNT
MFEwHQYDVR0OBBYEFA5CKsJqdPdes/FsEgYdwji7TxgGMB8GA1UdIwQYMBaAFA5C
KsJqdPdes/FsEgYdwji7TxgGMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQEM
BQADggEBACGS1koPK8n0bTd8l7VCfhxrbFYuSrCpvmiCGIuaLGmW6o2sA6TFYd8o
Q9wWROQKFuf3KX/Sj9SVzKAXL3hTEFOl66yOBd9Mq7EB+FFv7I2l1rfK4IhFlJ/t
42uttEBrq1j/Z8JSrPuj5kVsYomQ+5kIglZuA4iHlBR/w/PUf9CqGq4Nolgbfx+z
VquqqUpH4UThsRMjMirI1cQQKORAbBqu/CLJZttykjYhnji+vs74awKPuQb2IYLK
X7mJT28lRNXeGoX+uG63IsBa5p5ffQpQW41RRNaNzyI2jaDSUr596px0KhyWrSZW
aZTIr/P2CiVuW5U98YJE1szdBWW7G/0=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publications.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publications.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publications.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publications.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publications.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publikace-test.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Testing publishing server CESNET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Testovací publikační server sdružení CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">Testing publishing server CESNET</mdui:Description>
          <mdui:Description xml:lang="cs">Publikační server sdružení CESNET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://publikace-test.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://publikace-test.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://publikace-test.cesnet.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>publikace-test.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=publikace-test.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIESjCCArKgAwIBAgIUSy87o6dBcKIakGXUv0odkr9VeWwwDQYJKoZIhvcNAQEL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==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publikace-test.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Testing publishing server cesnet</md:ServiceName>
        <md:ServiceName xml:lang="cs">Testovací publikační server sdružení CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Testing publishing server CESNET</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Testovací publikační server sdružení CESNET</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Dusicka</md:SurName>
      <md:EmailAddress>mailto:martin.dusicka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://publikace.cesnet.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Publishing server CESNET</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Publikační server sdružení CESNET</mdui:DisplayName>
          <mdui:Description xml:lang="en">Publishing server CESNET</mdui:Description>
          <mdui:Description xml:lang="cs">Publikační server sdružení CESNET</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://publikace.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://publikace.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://publikace.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://publikace.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://publikace.cesnet.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>publikace.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=publikace.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIJAKRFT/n1qMiBMA0GCSqGSIb3DQEBBQUAMB4xHDAaBgNV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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publikace.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://publikace.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Publishing server cesnet</md:ServiceName>
        <md:ServiceName xml:lang="cs">Publikační server sdružení CESNET</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Publishing server CESNET</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Publikační server sdružení CESNET</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Raz</md:SurName>
      <md:EmailAddress>mailto:raz@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Caletka</md:SurName>
      <md:EmailAddress>mailto:caletka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://referentka.app/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">RefereNTKa</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">RefereNTKa</mdui:DisplayName>
          <mdui:Description xml:lang="en">Application for management of literary research</mdui:Description>
          <mdui:Description xml:lang="cs">Aplikace pro správu a zpracování literárních rešerší</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://referentka.app/static/about_en.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://referentka.app/static/about_cs.html</mdui:InformationURL>
          <mdui:Logo height="71" width="320">https://referentka.app/static/refereNTKa.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://referentka.app/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://referentka.app/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://referentka.app/shibboleth</ds:KeyName>
          <ds:KeyName>referentka.app</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=referentka.app</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUTC7IVvIybJYiczO6KOcqvgdItbMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://referentka.app/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://referentka.app/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://referentka.app/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://referentka.app/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://referentka.app/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://referentka.app/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://referentka.app/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://referentka.app/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://referentka.app/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://referentka.app/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://referentka.app/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Referentka</md:ServiceName>
        <md:ServiceName xml:lang="cs">Referentka</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.bigdigdata.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.bigdigdata.com/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Bedřich</md:GivenName>
      <md:SurName>Košata</md:SurName>
      <md:EmailAddress>mailto:beda@bigdigdata.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://registrace.dev.knihovny.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtf</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">On-line registration to Moravian Library</DisplayName>
          <Description xml:lang="en">On-line registration to Moravian Library</Description>
          <InformationURL xml:lang="en">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.mzk.cz/en/personaldatainfo</PrivacyStatementURL>
          <DisplayName xml:lang="cs">On-line registrace do Moravské zemské knihovny</DisplayName>
          <Description xml:lang="cs">On-line registrace do Moravské zemské knihovny</Description>
          <InformationURL xml:lang="cs">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.mzk.cz/osobniudajeinfo</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/DS"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>registrace.dev.knihovny.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=registrace.dev.knihovny.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIFKzCCAxOgAwIBAgIUMxHuDTw2J/3pd0+BjmLFJxVSdUIwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registrace.dev.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">On-line registration to Moravian library</md:ServiceName>
        <md:ServiceName xml:lang="cs">On-line registrace do Moravské zemské knihovny</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://registrace.mzk.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtf</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">On-line registration to Moravian Library</DisplayName>
          <Description xml:lang="en">On-line registration to Moravian Library</Description>
          <InformationURL xml:lang="en">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.mzk.cz/en/personaldatainfo</PrivacyStatementURL>
          <DisplayName xml:lang="cs">On-line registrace do Moravské zemské knihovny</DisplayName>
          <Description xml:lang="cs">On-line registrace do Moravské zemské knihovny</Description>
          <InformationURL xml:lang="cs">https://www.mzk.cz/registrace</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.mzk.cz/osobniudajeinfo</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://registrace.mzk.cz/Shibboleth.sso/DS"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>registrace.mzk.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=registrace.mzk.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIFGTCCAwGgAwIBAgIUQ2ArsFI3+8Zz/RNWvQ78c6OeH4gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.mzk.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.mzk.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.mzk.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registrace.mzk.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">On-line registration to Moravian library</md:ServiceName>
        <md:ServiceName xml:lang="cs">On-line registrace do Moravské zemské knihovny</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://registry.cesnet-ca.cz/simplesaml">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xsi:type="xs:string">http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">CESNET CA 4 certifikáty</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">CESNET CA 4 certificates</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Federalizovaný přístup k CESNET CA 4 certifikátům.</mdui:Description>
          <mdui:Description xml:lang="en">Federalized access to the CESNET CA 4 certificates.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://pki.cesnet.cz/cs/ch-personal-ca4.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://pki.cesnet.cz/en/ch-personal-ca4.html</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://registry.cesnet-ca.cz/privacy.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://registry.cesnet-ca.cz/privacy_en.html</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://registry.cesnet-ca.cz/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">CESNET CA 4 certifikáty</md:ServiceName>
        <md:ServiceName xml:lang="en">CESNET CA 4 certificates</md:ServiceName>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonNameASCII" Name="http://eduid.cz/attributes/commonName#ASCII" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/cs</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Chvojka</md:SurName>
      <md:EmailAddress>mailto:jan.chvojka@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://reporitar.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Data Repository</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Datový repozitář Univerzity Karlovy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Repository of research data created by researchers affiliated with Charles University.</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitář pro výzkumná data vznikající se zapojením výzkumníků s afiliací k Univerzitě Karlově.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://openscience.cuni.cz/OSCIEN-48.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://openscience.cuni.cz/OSCI-61.html</mdui:InformationURL>
          <mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
          <mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://repozitar.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://repozitar.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://repozitar.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>repozitar.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=repozitar.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUd4rmmzTBp7ma/8KZyxhN5epo4gwwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAxMRcmVwb3ppdGFyLmN1bmkuY3owHhcNMjUwNTI5MjAxMjQ5
WhcNMzUwNTI3MjAxMjQ5WjAcMRowGAYDVQQDExFyZXBveml0YXIuY3VuaS5jejCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBANy4n8H6h8SDuA+jbxjmmkgU
vF5rUxbQCEmBwlTwWfY2mUL8SkcsXm3LYa+ovISYNBezE7S16PvFLJE1IpOnztgX
cnMIpsUb07gYUJr8xAc5VZXxEldFUNany/0eBvDlFCO7/1tS6aSj4S8wHc5JH5BA
sk0nd6qRhFD3A1uik7qKR2zIupwJLJMTqjzVhpVkadbYzBgo3d/EorwCkgq7hPtx
6je8MJRPjwU/wfPRnmtVqpb8e9JNexwO5IvuVaTDmzjepYpd5/GGhFDzZNq+sltl
X7ZMZkjNw0dkwe0Ie0zCWdMRofGTTXwKXK0m5ccAHDzBmj3FDkIo3pdGETaVTdt2
SZrv8hPcl9wj7b62X+VRmfjcyRYK2c+Eon4kMeqekVvT3ndnEqUg8XTQlkQAZteK
xyXEkniNxh4MdOfKbAzPjzGRMgzbWdwQ+Lfz6Msl6jQQEvPbBNAwF3C7rhB4xDDf
Ql+d23BlehORE6/e5+wxp67qY6Xdn3swRzntf1MN0QIDAQABo2UwYzBCBgNVHREE
OzA5ghFyZXBveml0YXIuY3VuaS5jeoYkaHR0cHM6Ly9yZXBveml0YXIuY3VuaS5j
ei9zaGliYm9sZXRoMB0GA1UdDgQWBBR79rQsnz+UKz3p7o8J1qakeYZaxTANBgkq
hkiG9w0BAQsFAAOCAYEAArWOPUXlZ1ULoSBpVx1V6XPHWrN6RiSwZgPU6FrH/f8G
FERUxMhnDsTY6JoNLwCebsajOsvEPGT3zEJaJPhwNXwjcGJ/2dBo56fwuklWPrOb
IvBCW6d9IZpg6Qk4PaYpyDA8r50HuUOojJGrlwmt8R5TeymW0vFI5tumm8ncQ8gm
ly+K0K9VSt37WWdSjSoxWsdNCGynMgLBdZYetIG1KrDowrqkIoTPNbyTRIbAr/Bt
gfs/oyMAnnDBjiO+H63oSX5Pi4hkC2r4t/kLXjvkyz/IBWj2GSF4dRWq6KsYfpHP
NwIXW9FqiavZV9DipzsMK2SXCIAFW7NdHod7sb0Rr6uJJ+iCyMzAG99exFnxXkiu
mGFgURRwV44ofs2jXUGKMtLpXq6VXMXfs+zNGKC9VfgfFARheZpnXKifcTBF997a
IbCiWHjvpGXnn5xqjUzDDr9CCsMn+a8983ZoLKFFWi5irxhjE87iQZr4PJw6j0DI
a1DcUr1XDFIY5Pxy0SPC</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://repozitar.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivo</md:GivenName>
      <md:SurName>Prajer</md:SurName>
      <md:EmailAddress>mailto:ivo.prajer@ruk.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://repozitar.cz/shibboleth/">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://repozitar.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Repozitar.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Repozitar.cz – Repozitář vědeckých prací</mdui:DisplayName>
          <mdui:Description xml:lang="en">Repozitar.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitar.cz – Repozitář vědeckých prací</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://repozitar.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://repozitar.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://repozitar.cz/pics/design/re/m/logotyp.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://repozitar.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>repozitar.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=repozitar.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDTCCAfWgAwIBAgIJAKdeBAN1fEpsMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://repozitar.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>repozitar.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=repozitar.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDTCCAfWgAwIBAgIJAKdeBAN1fEpsMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://repozitar.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://repozitar.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://repozitar.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://repozitar.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://repozitar.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://repozitar.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://repozitar.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://repozitar.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://repozitar.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Prohlížeč atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy vydané vaším poskytovatelem identit.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Repozitar.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Repozitar.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Repozitar.cz - Repozitář vědeckých prací</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Repozitar.cz - Repository of scientific work</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://repozitar.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://repozitar.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Stančík</md:SurName>
      <md:EmailAddress>mailto:repozitar@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://rt.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">RT system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">RT system</mdui:DisplayName>
          <mdui:Description xml:lang="en">Request Tracker University of Pilsen</mdui:Description>
          <mdui:Description xml:lang="cs">Request Tracker Západočeské univerzity</mdui:Description>
          <mdui:InformationURL xml:lang="en">rt.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">rt.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://rt.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rt.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rt.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUN4d4zbzjnsnZ7+KnxVUOUq0RmyQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://rt.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rt.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rt.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECzCCAnOgAwIBAgIUfyf5k4q1r+q2125RtItM9vnKf64wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rt.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rt.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rt.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">RT system</md:ServiceName>
        <md:ServiceName xml:lang="cs">RT system</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Request Tracker University of Pilsen</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Request Tracker Západočeské univerzity</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Grolmus</md:SurName>
      <md:EmailAddress>mailto:iss@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://rt4.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt4.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt3.cesnet.cz/Shibboleth.sso/WAYF" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt-new.cesnet.cz/Shibboleth.sso/WAYF" index="3"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.muni.cz/Shibboleth.sso/WAYFMU" index="4"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.ics.muni.cz/Shibboleth.sso/WAYFMU" index="5"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.elixir-czech.cz/Shibboleth.sso/WAYFELIXIR" index="6"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Request Tracker</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Request Tracker</mdui:DisplayName>
          <mdui:Description xml:lang="en">Ticketing system</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu požadavků</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://rt.cesnet.cz/wayf/images/bpslogo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYF" index="7"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFMU"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFMU" index="8"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFELIXIR"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.cesnet.cz/Shibboleth.sso/WAYFELIXIR" index="9"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://rt.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rt.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rt.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDDCCAfSgAwIBAgIJAMY2F0T2RlIAMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.cesnet.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt4.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt3.cesnet.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.muni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt-new.cesnet.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.elixir-czech.cz/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rt.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Hanousek</md:SurName>
      <md:EmailAddress>mailto:rt@rt.cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://rtest64.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">RT system UWB - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">RT system ZĆU - test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Request tracker University of Pilsen(test)</mdui:Description>
          <mdui:Description xml:lang="cs">RT systém Západočeské university(test)</mdui:Description>
          <mdui:InformationURL xml:lang="en">rtest64.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">rtest64.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://rtest64.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://rtest64.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rtest64.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rtest64.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUZhTkZLJsS12YtiKuLHAFQwG/PwcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://rtest64.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>rtest64.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=rtest64.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUEdohfWiYAkvz4OFRVdc3dXU7nWAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rtest64.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rtest64.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rtest64.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">RT system UWB</md:ServiceName>
        <md:ServiceName xml:lang="cs">RT system ZĆU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Request tracker University of Pilsen</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">RT systém Západočeské university</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Grolmus</md:SurName>
      <md:EmailAddress>mailto:iss@service.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/metadata.php/default-sp">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
    </Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">EO Video Platforma</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">EO Video Platform</mdui:DisplayName>
          <mdui:Description xml:lang="cs">EO Video Platforma.</mdui:Description>
          <mdui:Description xml:lang="en">EO Video Platform is a platform being developed within the European Space Agency project.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.cgi.com/ceska-republika/cs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.cgi.com/ceska-republika/en</mdui:InformationURL>
          <mdui:Logo height="81" width="306">https://saml-proxy.vantage.earthi.world/simplesaml/vantage.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDazCCAlOgAwIBAgIUJWNQhwBtoQBe8SwL6rluHFFyXsUwDQYJKoZIhvcNAQELBQAwRTELMAkGA1UEBhMCQVUxEzARBgNVBAgMClNvbWUtU3RhdGUxITAfBgNVBAoMGEludGVybmV0IFdpZGdpdHMgUHR5IEx0ZDAeFw0yMDA5MDExMzU3NDBaFw00MDA5MDExMzU3NDBaMEUxCzAJBgNVBAYTAkFVMRMwEQYDVQQIDApTb21lLVN0YXRlMSEwHwYDVQQKDBhJbnRlcm5ldCBXaWRnaXRzIFB0eSBMdGQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDAdEoOQp8YH5P3boYi7AJsJee59eBEI28Vtbk3+i+L/RY8kKfCBZ1puujh/R88lNHriMOVLmROOTtMVTUPet4U2Zuoxh1qH8B0TC9s2UHJnMl8WuwED5p/2b626WjKGdAIAbM9cgAlqQw97Ym21GlSbJGAAVsyS39d/pX9RsOBH3Wq+tb+BicojHjXGQRreMCHyc9whtZkEkxS2IWO9OF7R8l4OBTSg5aGRefrUEkK3oWCQcl/UlDaigOxFqsQeDqKpUZoJnT3AnfREQFDVYsyg/7yu1z376gQ68axyQYdHqEMi49KFjZXxYh2tmlNngVppvTiRVnSbnYqR+og0HNrAgMBAAGjUzBRMB0GA1UdDgQWBBQq4nfu7HvQCjGLWGnsUKxd8vaUOzAfBgNVHSMEGDAWgBQq4nfu7HvQCjGLWGnsUKxd8vaUOzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBRGWEnDCYOqZNFN2pCOHUm3qKnCtBIRMlcz78OvpiLN5Rw+Zka/KTHijZ/dc9W3VOd/LI47qM/Lxf9ZJP77gXFqlH8yQp+rubWg6snFOYOpyvAE7vVb6h5A9BbpyVWH7vdfY6bMhi9xcBjv/ZXnvco4ESiU+118mjIHkVSMWwnuDA03CHLlBIjV530b6vCmgLp6pSqj4zao5q1/nX2RjYv6wD54ls5zny+DXYLjHPV7UIGaoML9ONiXvafqm0zA/heUm1KwQ7CMQV4hFW8KiQdtHG0QzG6HaYZmj1plzMwgsafgj0/qP1O0VUKFx86kjd7seDpckU5ofa+Ajdp7y/m</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://saml-proxy.vantage.earthi.world/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">Vantage</md:ServiceName>
        <md:ServiceName xml:lang="no">Vantage</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">CGI IT Czech Republic s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">CGI IT Czech Republic s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">CGI IT Czech Republic s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">CGI IT Czech Republic s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cgi.com/ceska-republika/cs</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cgi.com/ceska-republika/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>Lenka</md:GivenName>
      <md:SurName>Svabova</md:SurName>
      <md:EmailAddress>mailto:lenka.svabova@cgi.com</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Guznar</md:SurName>
      <md:EmailAddress>mailto:jan.guznar@cgi.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://saml.k8s.prf.jcu.cz">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">EduApps</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">EduApps</mdui:DisplayName>
          <mdui:Description xml:lang="cs">EDU aplikace pro JCU.</mdui:Description>
          <mdui:Description xml:lang="en">EDU apps for JCU.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://edu-apps.k8s.prf.jcu.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://edu-apps.k8s.prf.jcu.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIFCzCCA/OgAwIBAgIUFvk29lBjvsKIDEgkIUJaewBHL94wDQYJKoZIhvcNAQELBQAwggETMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOSmlob2Nlc2t5IEtyYWoxGTAXBgNVBAcMEENlc2tlIEJ1ZGVqb3ZpY2UxRjBEBgNVBAoMPUppaG/DhMKNZXNrw4PCoSB1bml2ZXJ6aXRhIHYgw4TCjGVza8ODwr1jaCBCdWTDhMKbam92aWPDg8KtY2gxRjBEBgNVBAsMPUppaG/DhMKNZXNrw4PCoSB1bml2ZXJ6aXRhIHYgw4TCjGVza8ODwr1jaCBCdWTDhMKbam92aWPDg8KtY2gxHDAaBgNVBAMME3NhbWwuazhzLnByZi5qY3UuY3oxIjAgBgkqhkiG9w0BCQEWE3NvamthajAwQHByZi5qY3UuY3owHhcNMjUwODE5MjAzNzA1WhcNNDUwODE5MjAzNzA1WjCCARMxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5KaWhvY2Vza3kgS3JhajEZMBcGA1UEBwwQQ2Vza2UgQnVkZWpvdmljZTFGMEQGA1UECgw9Smlob8OEwo1lc2vDg8KhIHVuaXZlcnppdGEgdiDDhMKMZXNrw4PCvWNoIEJ1ZMOEwptqb3ZpY8ODwq1jaDFGMEQGA1UECww9Smlob8OEwo1lc2vDg8KhIHVuaXZlcnppdGEgdiDDhMKMZXNrw4PCvWNoIEJ1ZMOEwptqb3ZpY8ODwq1jaDEcMBoGA1UEAwwTc2FtbC5rOHMucHJmLmpjdS5jejEiMCAGCSqGSIb3DQEJARYTc29qa2FqMDBAcHJmLmpjdS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALo8SeesDVoTrantyE87BCRANWQM+Px0rCTM20efamFVQ2231uwvE/4SKHlEH+aZYb+W8f2dspSDLBYbs2v3I586go/Du/lstmCYiReW/cev5KoET+dKjw/gWpPhi307GLvCYAjB3TzHkau/LchuxCRtxGNwO8HhvY02dHyr+reEI4VpKTdEBmN4H1dc4VLk3o+CDOXyq6HfdG80U55B9O4NaTfhc+qr3ylW13kqjJUY6AGhTj19BS2cRuJbZmudUazfZnlMdJGFLjXPwe1X65wjpE5oCkxOH0xtlw0g7q2MXlDT6/UlRfqtEe/MLJhLu+gqdQHINjfrsk2N7dbB8akCAwEAAaNTMFEwHQYDVR0OBBYEFF1Dfp9SNfQc3KrMi9J80h3VjjihMB8GA1UdIwQYMBaAFF1Dfp9SNfQc3KrMi9J80h3VjjihMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAD6xeGzTWJprZ8t3fp+fo1qky4WqaQ0SzhO22tpK1ECD971jFaNFbGAzDK4h/U6a7zR58E1PT/YPANYGeozU7TLqTxEK9CcR4FFaYekM5Tpsi0L4X1r5GvEDRvMskjN8IcjoRnW51fe0l50fPCGl4E1x2CzHb0NEIQuCsst0HbSPqguibTOdnyRw3eRTtINf7qjoQ9nRaz/9HaczF0yVCk9OOXwzcteXpfZuDHntj8n9TpHNZM9U7GaMS8s28auc0zB3dUrek79yz6J6jkAy+RN8b60eYvBUCkGL5kVburjKpRBzU2tCVuxENxANuS+CzDajK/0hAfKGYHMl9JMw1wY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.k8s.prf.jcu.cz/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.k8s.prf.jcu.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml.k8s.prf.jcu.cz/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">JCU</md:OrganizationName>
      <md:OrganizationName xml:lang="en">JCU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Jihočeská univerzita v Českých Budějovicích</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">University of South Bohemia in České Budějovice</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.jcu.cz/cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.jcu.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Sojka</md:SurName>
      <md:EmailAddress>mailto:sojkaj00@prf.jcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://scs.it4i.cz/shibboleth">
    <Extensions>
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
    </Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">IT4I SCS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">IT4I SCS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Self-service portal for needs of IT4I partners and users</mdui:Description>
          <mdui:Description xml:lang="cs">Samoobslužný portál pro potřeby partnerů a uživatelů IT4I</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.it4i.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.it4i.cz</mdui:InformationURL>
          <mdui:Logo height="120" width="777">https://extranet.it4i.cz/ssp/images/it4i_cz.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://scs.it4i.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://scs.it4i.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://scs.it4i.cz/shibboleth</ds:KeyName>
          <ds:KeyName>scs.it4i.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=scs.it4i.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDCDCCAfCgAwIBAgIJAPg9our9hPEZMA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://scs.it4i.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://scs.it4i.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://scs.it4i.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://scs.it4i.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://scs.it4i.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">IT4I SCS</md:ServiceName>
        <md:ServiceName xml:lang="cs">IT4I SCS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Self-service portal for needs of IT4I partners and users</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Samoobslužný portál pro potřeby partnerů a uživatelů IT4I</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IT4Innovations - National Supercomputing Center</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">IT4Innovations - Národní Superpočítačové Centrum</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IT4Innovations</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IT4Innovations</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.it4i.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.it4i.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>IT4I</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@it4i.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:infrastruktura@it4i.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sdg2023.fel.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Single digital gateway SDG</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Jednotná digitální brána pro vysoké školství</mdui:DisplayName>
          <mdui:Description xml:lang="en">Implementation rules  SDG - service introduction pro High School/College/University</mdui:Description>
          <mdui:Description xml:lang="cs">Implementace pravidel jednoté digitální brány - zavedení služby pro Univerzity</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://sdg2023.fel.cvut.cz/projekt.php</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://sdg2023.fel.cvut.cz/projekt.php</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sdg2023.fel.cvut.cz/shibboleth</ds:KeyName>
          <ds:KeyName>sdg2023.fel.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sdg2023.fel.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUJYrj7CANRqPct47PL8ZFxo5kfq0wDQYJKoZIhvcNAQEL
BQAwHjEcMBoGA1UEAxMTc2RnMjAyMy5mZWwuY3Z1dC5jejAeFw0yMzA0MTIxMTM0
MDFaFw0zMzA0MDkxMTM0MDFaMB4xHDAaBgNVBAMTE3NkZzIwMjMuZmVsLmN2dXQu
Y3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCmOdemW0OnIfzClAmj
9WdrbsJqMWDn+8OVt1abLAZClO1++k9y3niodTXnkdkiBwU40Lzvbew1a8p0wCxv
/ITwCU169HmlsCjEZOxCHognY6VlUz3cqJBLNnOBL+pZ4sAeAbt1KngXL8m2TLsz
MLqkkmltTvNN9QD+9u5QY3Mqle43UXtn7eHQI+c2cjesZwFl/cjgHwmClqlx4KCj
Nel6yNkSD9RVltZwf5jhH6umaJr++dSjyF5sZeXl0AV+E+lXAV14zYHzV15CM0yY
H02fXOEc9ikEaGSG++i9hqRUIBvQzHyy15cWiwDAzcEECQWvP8an6LyQDcuiO+mD
hpevXU2PjSN1DjW1btQZMwoEozwlsFCqwS3Y5gkQcyq86EIDaa6aYEC+4FgLos5G
uN4c2u9W1oywoXz6eXlLCJS2Ck0B1SO+ipODnBViUEKTh4yUN5wm/s4S8lgTNzIv
V+FfNabd8ZvIDDXwdQIwiejakZ6U2MdZrs3ECKOAOD43Y18CAwEAAaNpMGcwRgYD
VR0RBD8wPYITc2RnMjAyMy5mZWwuY3Z1dC5jeoYmaHR0cHM6Ly9zZGcyMDIzLmZl
bC5jdnV0LmN6L3NoaWJib2xldGgwHQYDVR0OBBYEFA+hYyhHsaLtP1OeF4narqIP
zaQaMA0GCSqGSIb3DQEBCwUAA4IBgQABHULwpPr7e2NUvq6H6Ni1wx9eN+JNUp+G
NC+TNNNmp+2XLQMu8GHv3OkL4ZCe4aPQZWHotl0GIdimjec+NiyDujQ+94Deaa72
eyEiyrU52bwNi3o95zcnNOX/uLGS2eeDUyCUbSQ++XzZnBMsWJpFLOc3MZrTTSno
25q50h6EL9RtkjYB7oyyLbm5ZarJv6uUzZadKHLfYj5QAmTeU5TqtB9m9gJjOGhm
2porDPe6Dts7Zdl/HrFxu0uUtiDbGCuzE+QkuZ5Fsr6sPXt5SkIQTmKSyiWCXd7R
yvZ9eNou7EKrlNvS/WyGEI15yw5yrA81yppHO9pieziZDrjA7JZ+1tq5ASiCGk73
zwkVxrXlN1uDVkZ9iGtRZMXhbqKkDwhvEMz3fuodUHtb4ymw2kO1N6bk3wJa/frF
jjoaCDVglZYTkLZr743DMdTfoHIodBdj+wA/TZBdjsZ7bo8I+rrCw/ETmj/BKrqR
HkS4CgWuO/Az24hIZJ2TZyzM+heredo=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sdg2023.fel.cvut.cz/cvutid/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CTU SDG gateway</md:ServiceName>
        <md:ServiceName xml:lang="cs">ČVUT SDG Brána</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Implementation rules  SDG - service introduction pro High School/College/University</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Implementace pravidel jednoté digitální brány - zavedení služby pro Univerzity</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CTU</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">ČVUT</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cvut.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cvut.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Marek</md:GivenName>
      <md:SurName>Nevosad</md:SurName>
      <md:EmailAddress>mailto:marek.nevosad@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Kezlinek</md:SurName>
      <md:EmailAddress>mailto:kezlinek@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://seth.ics.muni.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>seth.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=seth.ics.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEbjCCA1agAwIBAgIRAN5YUKq8gO0Is7BK8vlZc+8wDQYJKoZIhvcNAQEFBQAw
NjELMAkGA1UEBhMCTkwxDzANBgNVBAoTBlRFUkVOQTEWMBQGA1UEAxMNVEVSRU5B
IFNTTCBDQTAeFw0xNDEwMDYwMDAwMDBaFw0xNjEyMzEyMzU5NTlaMD4xITAfBgNV
BAsTGERvbWFpbiBDb250cm9sIFZhbGlkYXRlZDEZMBcGA1UEAxMQc2V0aC5pY3Mu
bXVuaS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAK9nFozapnIO
bO1nzZFo8e7N3rBbBvYXxJiAjaFGhWWCZiP3jAnAka3rx8ciHjaXQy8n1d4+DKMj
U94OtBvADh1WLC6hXaqpjUUdYdYZs5wP7JHrdnV3AmqQDw4GTjfZE4W8Cz0TpuG5
zkwurhkc2fpKt4YJ/4ULHq0llqfDZkkDe7efUzHSmn5VxkzJn9Hk7EXCofkdbd2X
1nyHa726kqN1+RODc4W3g9Aa29CxOm0p9Bgjog0c6OGYFj9N9rW75BKYy9vzyYXk
/to3eSLmv5cHI5424n9DVpdebwRiO6eXgTzH/4/Bu8aUNkPiXrRIRtt24jPIjtEG
thAowFm2V2kCAwEAAaOCAW0wggFpMB8GA1UdIwQYMBaAFAy9k2gM896ro0lrKzdX
R+qQ47ntMB0GA1UdDgQWBBQxoztobBRfKAW9UmxGvAf2TlbDqjAOBgNVHQ8BAf8E
BAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUH
AwIwIgYDVR0gBBswGTANBgsrBgEEAbIxAQICHTAIBgZngQwBAgEwOgYDVR0fBDMw
MTAvoC2gK4YpaHR0cDovL2NybC50Y3MudGVyZW5hLm9yZy9URVJFTkFTU0xDQS5j
cmwwbQYIKwYBBQUHAQEEYTBfMDUGCCsGAQUFBzAChilodHRwOi8vY3J0LnRjcy50
ZXJlbmEub3JnL1RFUkVOQVNTTENBLmNydDAmBggrBgEFBQcwAYYaaHR0cDovL29j
c3AudGNzLnRlcmVuYS5vcmcwGwYDVR0RBBQwEoIQc2V0aC5pY3MubXVuaS5jejAN
BgkqhkiG9w0BAQUFAAOCAQEAcp8oHH2qHd42hCI5cTt+TVs9il4VUTtjyNvHiRMG
zuzh7Ut/hv5I29QJ9xcInZX/rpHJYwFG+UTodu3BGmw5p16tFWk5RWJvXKny2HPu
vAOnSPrxZXDMsq8Afmlgh+WcXhyzjYg1mTU966V1jFKuLN55cCKJcF2ypKq0bsMy
iJoVBuj5/z6Fezd8dvLycIfoBUJG7H9Z0gnkS9EsMDwHgCVIoR4rz9CmOkRKTVZ6
+K1TbFs8EL0ekqDUStAo+K1fCQ5kk5zpbIvhJLHv6fiIzp53yEtZrqwVFoUuui2b
oVD9XhohGCdFwjFe4CJ1LMYrQ+YZaZeeOocs0bhf1RB0CA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>seth.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=seth.ics.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEbjCCA1agAwIBAgIRAN5YUKq8gO0Is7BK8vlZc+8wDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://seth.ics.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://seth.ics.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://seth.ics.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://seth.ics.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk university</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukas</md:GivenName>
      <md:SurName>Hejtmanek</md:SurName>
      <md:EmailAddress>xhejtman@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shb.demo.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream DEMO portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream DEMO portal</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance is for demo purposes.</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, tato instance je určena pro demonstrační účely</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shb.demo.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shb.demo.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shb.demo.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://shb.fmm.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shb.fmm.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shb.fmm.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEDzCCAnegAwIBAgIUY1McUHVcVf9I9rmvmhKIlVkuYZwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shb.demo.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream DEMO portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream DEMO portal</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance is for demo purposes.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, tato instance je určena pro demonstrační účely</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shb.fmm.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Fenomen multimedia Zone</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fenomen multimedia Zone</mdui:DisplayName>
          <mdui:Description xml:lang="en">Customer resources</mdui:Description>
          <mdui:Description xml:lang="cs">Customer resources</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shb.fmm.cz/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shb.fmm.cz/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shb.fmm.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shb.fmm.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shb.fmm.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUOMKtz3iwh7nkcleaEms9xI96084wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUEqRmY95NtcV52EsC/DG8MmneQE8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.fmm.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.fmm.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shb.fmm.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Fenomen multimedia Zone</md:ServiceName>
        <md:ServiceName xml:lang="cs">Fenomen multimedia Zone</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Customer resources</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Customer resources</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shib-sp.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">shib-sp.zcu.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">shib-sp.zcu.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">shib-sp.zcu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Testovací SP</mdui:Description>
          <mdui:InformationURL xml:lang="en">shib-sp.zcu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">shib-sp.zcu.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shib-sp.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://shib-sp.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shib-sp.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shib-sp.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUcl4Gl6Nu1RjRZEpcmvwBR5eCj4kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://shib-sp.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shib-sp.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shib-sp.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUbb/hFWbvKShjZKztTyE6CrpoAWwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-sp.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shib-sp.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">shib-sp.zcu.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">shib-sp.zcu.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">shib-sp.zcu.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Testovací SP</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="memberof" Name="http://www.zcu.cz/groups/" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shib.screenx.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ScreenX</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ScreenX</mdui:DisplayName>
          <mdui:Description xml:lang="en">Laboratory Information Management System.</mdui:Description>
          <mdui:Description xml:lang="cs">Systém pro správu laboratorních dat.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.openscreen.cz/en/software#screenx-section</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.openscreen.cz/cs/software#screenx-section</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shib.screenx.cz/static/vue/img/screenx-logo-light-2.38bd7898.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shib.screenx.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shib.screenx.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://shib.screenx.cz/shibboleth</ds:KeyName>
          <ds:KeyName>shib.screenx.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shib.screenx.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUadmcbOZ8Bn2NCsdgAT0wAA7aKVwwDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAxMPc2hpYi5zY3JlZW54LmN6MB4XDTI1MTIxNzEwMDU0MFoX
DTM1MTIxNTEwMDU0MFowGjEYMBYGA1UEAxMPc2hpYi5zY3JlZW54LmN6MIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEArbHFGmtVnZRm5NuEvxxS+4Aw6JqM
mbAGKzRC00+YJaeR6LkjN7K3Zc4RC2kBhYrBcO7ISk24oFcxGqKCuDSfM+g0Hr12
JS2wltJhputQFu2brRIWIoczmFlIG4s8P1YQ7YPUjmGeYZKhUL/UmJSHhc4Z6xqB
vXwoUqEI6vESGKwOGxhWUFxnApv8tjPbYwWklIEzO1U0opMXqSmnWP12enR2vepq
nGZZv8Bi6QB5Y9mnAOS65/SR2B5gnpodZnn2rDLwaId7AyW2+1wrmKqixKWZE8SJ
Dqd+EM31uxX+r9ChunO+v4s8cjaMiZwVuGoeEC0ohCDbFwA+aro9je8kukYH1U52
sGPWpqZShvqneAWYa5zVtTppZKzMoNTeuDvwkuIQn+svgSUhM0XJPrHQZdJsYNwo
kXW+8JuNDGApVX8fe9nfs67DSENnWM7CI4AgtfBF6IMXS8+nexX9+0tnldSQVX4J
LZTxWXYq8tgbJXiQ6zmourKhrtWdl9aYoaYxAgMBAAGjYTBfMD4GA1UdEQQ3MDWC
D3NoaWIuc2NyZWVueC5jeoYiaHR0cHM6Ly9zaGliLnNjcmVlbnguY3ovc2hpYmJv
bGV0aDAdBgNVHQ4EFgQUt1BpaRbs/RgV24zV+bVaPZmrRogwDQYJKoZIhvcNAQEL
BQADggGBAFo6hVNeWFfK1tgEc2+pV1VP3UpsDb2JPPdgt/acBKgVTsE4UQmWVP3z
URErmEt0aek4+JSMGAuCJdchvXZVsNuegAoimODmw7M3YisrGqIalqA73WRb9yC9
gNQFQYZhj9asrNWMXteKoBar6imSN4Xhso2ZaBRNR0pv9p/srgLyWyVQtS2ilmeH
Oe2nFAKHDuVtRfyCFRpjiI1jbzTLInCf3tS0Vb2gbNZCb6xiM6UszQPnx+YJaJv0
raTUlYyOd3lebQ4PzOaSXrR2JpETdYtmrN3TIePCs923V1gLYh/ATBlDLbukKHj7
UHwCrDiGtHb+Nw4/NYqzK6+P1o2VhAosXOkpC57Cy/pR55XHA6B9vlh6CjVHndB5
3pVWaCbCiXIzgqsAJU8l68exWGllztD27/cFJkcHPkBc6yo6qZQb85W73TT9WTRr
gdPcaP7kbgtprNql88X6hTWVPkusje6sssfzFlnC7Sf7qar/uF4KjXHdxvFBKqxl
oQi/e3LQdg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.screenx.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib.screenx.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib.screenx.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ScreenX</md:ServiceName>
        <md:ServiceName xml:lang="cs">ScreenX</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Laboratory Information Management System.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Systém pro správu laboratorních dat.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Molecular Genetics of the Czech Academy of Sciences, CZ-OPENSCREEN: National Infrastructure for Chemical Biology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav molekulární genetiky AV ČR, v. v. i., CZ-OPENSCREEN: Národní infrastruktura chemické biologie</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CZ-OPENSCREEN</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.openscreen.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.openscreen.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Novotny</md:SurName>
      <md:EmailAddress>mailto:michal.novotny@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Zacek</md:SurName>
      <md:EmailAddress>mailto:michal.zacek@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Ruzicka</md:SurName>
      <md:EmailAddress>mailto:jiri.ruzicka@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Divina</md:SurName>
      <md:EmailAddress>mailto:petr.divina@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>IMG IT Team</md:GivenName>
      <md:EmailAddress>mailto:report@img.cas.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.abbreva.site/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Development Abbreva - On-line registration to Moravian Library</DisplayName>
          <Description xml:lang="en">Development Abbreva - On-line registration to Moravian Library</Description>
          <InformationURL xml:lang="en">https://www.mzk.cz/registrace</InformationURL>
          <DisplayName xml:lang="cs">Vývoj Abbreva - On-line registrace do Moravské zemské knihovny</DisplayName>
          <Description xml:lang="cs">Vývoj Abbreva - On-line registrace do Moravské zemské knihovny</Description>
          <InformationURL xml:lang="cs">https://mzk.abbreva.site.cz/registrace</InformationURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.abbreva.site/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.abbreva.site/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://shibboleth.abbreva.site/shibboleth</ds:KeyName>
          <ds:KeyName>shibboleth.abbreva.site</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shibboleth.abbreva.site</ds:X509SubjectName>
            <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUJX2hJZAEbRqPjAgREb51eyzvKQswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.abbreva.site/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.abbreva.site/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Development Abbreva - On-line registration to Moravian library</md:ServiceName>
        <md:ServiceName xml:lang="cs">Vývoj Abbreva - On-line registrace do Moravské zemské knihovny</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Abbreva.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Abbreva.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Abbreva.cz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Abbreva.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.abbreva.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.abbreva.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michael</md:GivenName>
      <md:SurName>Urban</md:SurName>
      <md:EmailAddress>mailto:michael.urban@abbreva.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:operative@abbreva.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.amu.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream, AMU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream, AMU</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on The Academy of Performing Arts in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Akademii múzických umění v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth.amu.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth.amu.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shibboleth.amu.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUOMKtz3iwh7nkcleaEms9xI96084wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>instoremeter</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=instoremeter</ds:X509SubjectName>
            <ds:X509Certificate>MIID9jCCAl6gAwIBAgIUEqRmY95NtcV52EsC/DG8MmneQE8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.amu.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream, AMU</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream, AMU</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on  The Academy of Performing Arts in Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Akademii múzických umění v Praze</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.cuni.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream, UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream, UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on Charles University in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Univerzitě Karlově v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth.cuni.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth.cuni.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shibboleth.cuni.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stream1</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stream1</ds:X509SubjectName>
            <ds:X509Certificate>MIID5zCCAk+gAwIBAgIULurnMENzEqWhJpiVqCxBwbF58hQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.cuni.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream, UK</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream, UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on Charles University in Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Univerzitě Karlově v Praze.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth.vscht.fenomio.stream/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FenomioStream, VSCHT</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FenomioStream, VSCHT</mdui:DisplayName>
          <mdui:Description xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on University of Chemistry and Technology in Prague</mdui:Description>
          <mdui:Description xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Vysoké škole chemicko-technologické v Praze.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth.vscht.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth.vscht.fenomio.stream/info.htm</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://shibboleth.vscht.fenomio.stream/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stream1</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stream1</ds:X509SubjectName>
            <ds:X509Certificate>MIID5zCCAk+gAwIBAgIULurnMENzEqWhJpiVqCxBwbF58hQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.vscht.fenomio.stream/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FenomioStream, VSCHT</md:ServiceName>
        <md:ServiceName xml:lang="cs">FenomioStream, VSCHT</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FenomioStream is media streaming platform, this instance provides e-learning on University of Chemistry and Technology in Prague</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FenomioStream je streamovací mediální platforma, která podporuje e-learning na Vysoké škole chemicko-technologické v Praze.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fenomen multimedia, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fenomen multimedia</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.fmm.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fmm.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Miškovský</md:SurName>
      <md:EmailAddress>mailto:miki@fmm.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth2.lf1.cuni.cz/shibboleth/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Service Provider 2.6 - IIS 8.5</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Service Provider 2.6 - IIS 8.5</mdui:DisplayName>
          <mdui:Description xml:lang="en">Central authentication service for web applications</mdui:Description>
          <mdui:Description xml:lang="cs">Centrální autentizační služba pro webové aplikace</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth2.lf1.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth2.lf1.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/DS" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/WAYF" index="3"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/CUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/MUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/UPOL"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>dek-shibboleth2</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dek-shibboleth2</ds:X509SubjectName>
            <ds:X509Certificate>MIID9DCCAlygAwIBAgIJAIwXMALwBGArMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth2.lf1.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Shibboleth2.lf1.cuni.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Shibboleth2.lf1.cuni.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Central autentization for web services</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Centrální autentizace webových služeb</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">First Faculty of Medicine, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">1. lékařská fakulta, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">First Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">1. lékařská fakulta, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf1.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf1.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Nikl</md:SurName>
      <md:EmailAddress>mailto:tomas.nikl@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Josef</md:GivenName>
      <md:SurName>Martňák</md:SurName>
      <md:EmailAddress>mailto:josef.martinak@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ivan</md:GivenName>
      <md:SurName>Pešek</md:SurName>
      <md:EmailAddress>mailto:ivan.pasek@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shibboleth3.lf1.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://eduid.cz/uri/group/mefanet</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Authentication Service UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Autentizační služba UK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Charles University authentication service for electronic identities verification associated in eduid.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Služba ověřování elektronických identit sdružených v eduid.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://shibboleth3.lf1.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://shibboleth3.lf1.cuni.cz</mdui:InformationURL>
          <mdui:Logo height="94" width="120">https://shibboleth3.lf1.cuni.cz/pix/grif.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/WAYF"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/WAYF" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/CUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/MUNI"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/UPOL"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>dek-shibboleth3</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dek-shibboleth3</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUO7p/Kg+qN7bMs6VA9V3cPiwZ56swDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>dek-shibboleth3</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=dek-shibboleth3</ds:X509SubjectName>
            <ds:X509Certificate>MIID/zCCAmegAwIBAgIUZi7avySkquPO8vvZAAOm0SoHrQEwDQYJKoZIhvcNAQEL
BQAwGjEYMBYGA1UEAxMPZGVrLXNoaWJib2xldGgzMB4XDTIxMTEyMzEzMDEzNloX
DTMxMTEyMTEzMDEzNlowGjEYMBYGA1UEAxMPZGVrLXNoaWJib2xldGgzMIIBojAN
BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAwocY5wymCdp9Zqs0iwE1qXaocyaE
IeopZQwJXy5OFcaV3VDFKm+zGWTaZUGVZnz+ni/5S0sMGiDGHqE1vC+JSdWyGFDy
UceZYzhpcYvoK/uXrlALyVmXOwOf1HPYPX56LvyrdKPJq/QixbPCcLXZPUk0TAUl
hAydWvgT/KfyYN3LBNJNg+3QQvhL4Kw01F/kyByy81zCmZfv1HbjrL5r8HlWeJ46
7W9D8+1vwVUbBuhWbI/MbdF7su1RTR9rVJ2hbTUXr5reQ2dKCC8JmVewlGJBzTgd
yDkeieUUbL38ZJVANtlDQK9Jm6H5sOvh9p/wXAQm4/86588VMH63/X74ZLc66Hn5
PrPL1cEoEFD1TvKwWDevYZqgnxPrbXq4bf84KhX/Le2In4oqE2blhCxQ36v56iC9
uWWj5Nt36rWC7T4yrf4BpPEN/kTANSCZx+2j6H3bwuXfrVrRAIwtKiAmgkfO+q1x
K43+1nGyiiAtxpV+6S0fRbDydvC8xFKaYs6/AgMBAAGjPTA7MBoGA1UdEQQTMBGC
D2Rlay1zaGliYm9sZXRoMzAdBgNVHQ4EFgQUmvJk0MKuv+/XtUvnrxudgq/GB5kw
DQYJKoZIhvcNAQELBQADggGBAAxVINWyewjyrhzqivOff5HdaFQfbyzY36m/y8QY
H7LvIM7lFp9kQCQNuqRdd1xEBaKdz5O78YB47L47urZJxaK/gJmhSCwFwIyUju8y
Zhe17rfPFRnHfqsBYxOR2bLvxuO7nuPhvLGIuRZSagNFd1Jl9iKCiBfNF05z6db9
/KRa2x33iDQDphieuqN97tyWu4tpfIcBXxV2az0C0f1A3+ZMLHv3KB4tRhX/2uvw
CLBVQxnHyfdYGMB3zRAftJNQuJVjbRa2OZoYoIS1G6b2c6Up2ap1bWdlzmm2PUfU
7TjdJ3vpQrrqKuAanrfl+j4Ph77MDcXKShKPgJMAwt1F999OArOdGaKk60I5PaPd
K6+flzqfr6aNy4fNeP9LbkM6xGM7VHOLhI/kP8YD2bxg+b37Yo30f4jvFUfMM0UG
q4ZyjBF6TF3xE9POB0ga/mcxAsSqvk78DGP35Uuip04G3EwbJ9kyJT1ma1JYKJtM
vcO1nr22foCW33zJWvGiySV5mw==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth3.lf1.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Authentication Service UK</md:ServiceName>
        <md:ServiceName xml:lang="cs">Autentizační služba UK</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Charles University authentication service for electronic identities verification associated in eduid.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba ověřování elektronických identit sdružených v eduid.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Nikl</md:SurName>
      <md:EmailAddress>mailto:tomas.nikl@lf1.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shongo-auth.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Reservation System</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Rezervační systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Authentication And Authorization Services For The Shongo Project</mdui:Description>
          <mdui:Description xml:lang="cs">Autentizační a autorizační služby pro projekt Shongo</mdui:Description>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>shongo-auth.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=shongo-auth.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDBjCCAe6gAwIBAgIJAPdo24Tq3FVEMA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV
BAMTFXNob25nby1hdXRoLmNlc25ldC5jejAeFw0xNDAxMjQxMjEzMTRaFw0yNDAx
MjIxMjEzMTRaMCAxHjAcBgNVBAMTFXNob25nby1hdXRoLmNlc25ldC5jejCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALBFVzWDnz28jNnIPMioSG7Cwazr
LkeWTCRt82fvO08G+4rkYyGejW9dxajDEBmL94bDxdgxbfNQFy7ri2v+ZQ6CygHy
251uGY4w83jaLFHu7kVPVoERRFSQyGs8wnjqxP0uCCY2eNCc1j0yZHKRKzIkurfS
P25rY0B437cHbfoplpbYgjaLBY5XdA01HxnTRsHPBDc87YtejZdNnEMjr63trrGn
xkxjQlIoxlXR5BWcojlAXywtbAxrWA4FJCLd3H+938ToTMUaHG79VuqeMcQ8eblt
d59o4zP4yA5XPZkawDozWQilEq7i/xUOUMUm+83+zCQ/p6obMuUEtBXq19sCAwEA
AaNDMEEwIAYDVR0RBBkwF4IVc2hvbmdvLWF1dGguY2VzbmV0LmN6MB0GA1UdDgQW
BBS1wR3gPhGLFVy5YrWf66hxaj/uaTANBgkqhkiG9w0BAQUFAAOCAQEADLlRAYmt
X6ftsJBKPKyfxm1+jjG3JRPaK7Vyi6Qv0RGLI0NZbSqbdgX1kEmrFev4Pl1e8DoE
PASUlr5TH/oOTi9jiRvGPNN1nJy0vFQY2udOd29Lnx3ETui9KxFYll3csNFFCJRP
tr7w8xZOHnN4N0GUZhIsvhOzDknPAouSjlJ0KJ1DEaclqGu+/A2QDDeyhSAXtxGG
TirU3H/3ROlEUrG3TZ9J0bzrTLHq3UZ2MPTHh7vMxyR+DMkLbRE72LKGjMMz+jLA
drDHeRyuyNLWtSgHTio/C3yGY/q+TBtMuuUkmrKECH9JBSaic4gAL6F3w3BIFE51
8EOiDtYiofT6Fg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shongo-auth.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.cesnet.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Marek</GivenName>
      <SurName>Perichta</SurName>
      <EmailAddress>mailto:marek.perichta@cesnet.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <GivenName>Jan</GivenName>
      <SurName>Růžička</SurName>
      <EmailAddress>mailto:jan.ruzicka@cesnet.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://skoleni.kr-vysocina.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/Login"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">LMS Moodle</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">LMS Moodle</mdui:DisplayName>
          <mdui:Description xml:lang="en">E-Learning</mdui:Description>
          <mdui:Description xml:lang="cs">E-Learning</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://skoleni.kr-vysocina.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://skoleni.kr-vysocina.cz/</mdui:InformationURL>
          <mdui:Logo height="207" width="65">https://skoleni.kr-vysocina.cz/logo-kraj-vysocina.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>srv-tck-nemeler</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=srv-tck-nemeler</ds:X509SubjectName>
            <ds:X509Certificate>MIIC9DCCAdygAwIBAgIJAIa+uhuR5yeLMA0GCSqGSIb3DQEBBQUAMBoxGDAWBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://skoleni.kr-vysocina.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Vysocina Region</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Kraj Vysočina</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Vysocina Region</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Kraj Vysočina</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.kr-vysocina.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.kr-vysocina.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jaroslav</md:GivenName>
      <md:SurName>Krotký</md:SurName>
      <md:EmailAddress>mailto:Krotky.J@kr-vysocina.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://slavus.ca/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">the Slavic Humanities Index</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Index slovanských humanitních věd</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Slavic Humanities Index is a research database in the field of Central, Eastern, and South-Eastern European Studies.</mdui:Description>
          <mdui:Description xml:lang="cs">Databáze Slavic Humanities Index obsahuje zhruba 200 000 bibliografických záznamů časopisů, knižních recenzí, životopisů, rozhovorů, historických pramenů, konferenčních materiálů a dalších informačních zdrojů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://slavus.ca/aboutdatabase.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://slavus.ca/aboutdatabase.html</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://slavus.ca/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slavus.ca/Shibboleth.sso/Login" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://slavus.ca/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://slavus.ca/Shibboleth.sso/LoginCESNET"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>slavus.ca</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=slavus.ca</ds:X509SubjectName>
            <ds:X509Certificate>MIIC+zCCAeOgAwIBAgIJAOxUh6x9VejwMA0GCSqGSIb3DQEBCwUAMBQxEjAQBgNV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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://slavus.ca/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slavus.ca/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slavus.ca/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slavus.ca/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slavus.ca/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slavus.ca/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slavus.ca/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slavus.ca/Shibboleth.sso/https://slavus.ca/Shibboleth.sso/SAML2/ECP" index="10"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Slavonica Discovery s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Slavonica Discovery s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Slavonica Discovery</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Slavonica Discovery</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://slavus.ca</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://slavus.ca</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Anatoliy</md:GivenName>
      <md:SurName>Ilchuk</md:SurName>
      <md:EmailAddress>mailto:contact@slavus.ca</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://softresource.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Softresource, spol. s r.o.</mdui:Description>
          <mdui:Description xml:lang="cs">Softresource, spol. s r.o.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://softresource.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://softresource.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://softresource.cz/shibboleth</ds:KeyName>
          <ds:KeyName>softresource.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=softresource.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUCUNPNIk8Qx6GKBwIKUNXrdb0P2kwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softresource.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softresource.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://softresource.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softresource.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softresource.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softresource.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://softresource.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softresource.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://softresource.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://softweco.cz/shibboleth-sp">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://softweco.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>*.softweco.cz</ds:KeyName>
          <ds:KeyName>*.softwecogroup.cz</ds:KeyName>
          <ds:KeyName>*.suweco.cz</ds:KeyName>
          <ds:KeyName>softweco.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=softweco.cz,OU=Softweco Group\, a.s.,O=Softweco,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEvTCCA6WgAwIBAgIJAPbmblj/K1tHMA0GCSqGSIb3DQEBBQUAMGYxCzAJBgNV
BAYTAkNaMQ8wDQYDVQQHEwZQcmFndWUxETAPBgNVBAoTCFNvZnR3ZWNvMR0wGwYD
VQQLExRTb2Z0d2VjbyBHcm91cCwgYS5zLjEUMBIGA1UEAxMLc29mdHdlY28uY3ow
HhcNMTEwNzI0MTQwNzQ0WhcNMzAwNTA0MTQwNzQ0WjBmMQswCQYDVQQGEwJDWjEP
MA0GA1UEBxMGUHJhZ3VlMREwDwYDVQQKEwhTb2Z0d2VjbzEdMBsGA1UECxMUU29m
dHdlY28gR3JvdXAsIGEucy4xFDASBgNVBAMTC3NvZnR3ZWNvLmN6MIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAleg0IrcD+N+YKwE1yIZ/us9j3gnVmHA1
JByar2Ixyt7Q6R81Wj+O9OVduiMRc6302LxuaT8Dx6Z0+VXC9/ixbGchfAqLCC6F
MSiq6vj7XVVhqfc2klXHvEYGLIawW3C3tjtdW84MxsNFlfN7fA5FPU5vkiE/ammN
uKQ+rQ2Zx6Powkujr42dQ4ptK083dQtMOP9gh1zA9KUM5xkNAc5puakMm8pOVnAo
Kotw5QJGoveFUFU4aQzkulVw70Ik3w6xttebFOVayqs+NwWPuaq5aZArfEtJ+k7X
tRnAkopZYXMU1LzyopOr3B6FXe/XFPzS+68igIMg8ufH749UeCfhOQIDAQABo4IB
bDCCAWgwHQYDVR0OBBYEFOcnhYB//scdwstBSNt0QMKPeTV3MIGYBgNVHSMEgZAw
gY2AFOcnhYB//scdwstBSNt0QMKPeTV3oWqkaDBmMQswCQYDVQQGEwJDWjEPMA0G
A1UEBxMGUHJhZ3VlMREwDwYDVQQKEwhTb2Z0d2VjbzEdMBsGA1UECxMUU29mdHdl
Y28gR3JvdXAsIGEucy4xFDASBgNVBAMTC3NvZnR3ZWNvLmN6ggkA9uZuWP8rW0cw
DAYDVR0TBAUwAwEB/zALBgNVHQ8EBAMCAvwwSQYDVR0RAQH/BD8wPYILc29mdHdl
Y28uY3qCEiouc29mdHdlY29ncm91cC5jeoINKi5zb2Z0d2Vjby5jeoILKi5zdXdl
Y28uY3owRgYDVR0SBD8wPYILc29mdHdlY28uY3qCEiouc29mdHdlY29ncm91cC5j
eoINKi5zb2Z0d2Vjby5jeoILKi5zdXdlY28uY3owDQYJKoZIhvcNAQEFBQADggEB
ADfhw/93mZ0+GtsTdFqzHBMv+mRRawv99rsXf2FfewmQ846R5RzGEhgm0cmkeag9
74n7aL4rLsPC3+3n1DTcGjgvz0ycMcgEk+hrLRD+QgrJlZcbngo0fWbdfkVp0wA3
qaMEpo+hnO8gXpCYKR9cl4SdFka/c0eO1mdo3VY0bFS1FBqM4MJ2M8zUGEe+AI8s
nIt9x2u5aFhB8W67rA+XCDncRLhzHiX+1BB2leWC/zFVaiuXxGFBO85PGoEI87o/
ZpxVboxab0vu1sypTJ8o15JQ3CsEIvmEahasLXvLNVqc37SLwMrEaaOqLT8KoBqE
dX+UHYACFuHlPhI6NZ2HadA=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>*.softweco.cz</ds:KeyName>
          <ds:KeyName>*.softwecogroup.cz</ds:KeyName>
          <ds:KeyName>*.suweco.cz</ds:KeyName>
          <ds:KeyName>softweco.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=softweco.cz,OU=Softweco Group\, a.s.,O=Softweco,L=Prague,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIEvTCCA6WgAwIBAgIJAPbmblj/K1tHMA0GCSqGSIb3DQEBBQUAMGYxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softweco.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://softweco.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softweco.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softweco.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://softweco.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://softweco.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softweco.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softweco.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softweco.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://softweco.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softweco.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://softweco.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://softweco.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://softweco.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softweco Group, a.s.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softweco Group, a.s.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Softweco Group, a.s.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Softweco Group, a.s.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://softweco.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://softweco.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Vacek</md:SurName>
      <md:EmailAddress>admin@softweco.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp-cro.slu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Service provider for SLU</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Service provider pro SLU</mdui:DisplayName>
          <mdui:Description xml:lang="en">Service provider for SLU</mdui:Description>
          <mdui:Description xml:lang="cs">Service provider pro SLU</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://uit.opf.slu.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://uit.opf.slu.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://uit.opf.slu.cz/_media/slu-znacka-hlavni.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp-cro.slu.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp-cro.slu.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>sp-cro.slu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sp-cro.slu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID7jCCAlagAwIBAgIJAOc2pwZe1ca9MA0GCSqGSIb3DQEBCwUAMBgxFjAUBgNV
BAMTDXNwLWNyby5zbHUuY3owHhcNMTcxMDA1MDY1MzUzWhcNMjcxMDAzMDY1MzUz
WjAYMRYwFAYDVQQDEw1zcC1jcm8uc2x1LmN6MIIBojANBgkqhkiG9w0BAQEFAAOC
AY8AMIIBigKCAYEA3dOmBQjBhyM/4I//ISWIlUJRiYkz1mRMTd/fLAZujfmud7j2
TeqDPLbANcTT4x/xHKVcSz3Ne+cNAUrUL6EHSyskMJtpt+5TNN58I87hxJgWKPIm
57awKe634+QpPqovfFoIUjMsTP0EnbhggjqvrU7pXrEJLKP0wBEq5bQO5HHoYoGQ
bf5UoWtUJM5BbeHnh1SLeEa11sVh3rC97adAaIlTzg+oNoHmf7KSZ4KrRL6BwCiF
mYRwvOsIpUJX567tRgv2ZwNgXFnaiTHmKkoLAoSx+ZpaPNrw0iA/Fco1iml2Ai5f
HSMVWkDlRUEPD8NjBZcfZ2pZPIj8NiSRCrT1OD038KpfLecvsuY+kcyXexxSuPt3
5hNwlckYiotclUlwmZCuXjtsl14ZQFdOQ7KVn1kcVQ4QVYDKHe/ChR0+tSAy4zUi
ppJD3VwekT0G/NKEb631VK608sxapgg8vPX483Eha+KbtiR/CM8MaWzkOTj57f+d
1Ydn8brPBIPg4ADpAgMBAAGjOzA5MBgGA1UdEQQRMA+CDXNwLWNyby5zbHUuY3ow
HQYDVR0OBBYEFEVt6m1oWC6nY/IoVa5XAJb4TcDLMA0GCSqGSIb3DQEBCwUAA4IB
gQDV3Hkol29Vt4xpSl0y4VkjLMSFn/QCxM5FAQ1qDMHYWFg65+k4e5Dsu/P/XRHo
F1rttc7wlQVJBD5mnZVkKD4lGREvEtUMR/0EOlTM9zpub6dfrqICU4q/hEEgPdyO
GwJeSkHPyHK9pMWvCKtEZwWoHHCFeTficQ97tLzl2fM/CN7zKarfQebY3XHq6V/6
yWll298tfEnsSlNUP+kR7RaPcMHuESVSAuKOKr6tAHGyep49lKyOiwHo8FmBC2oC
SBcC5lewEqC3WsUPK3v6N58ytxklIeqNqX4sEPR8jv0gFGOIazZU7G1B9T/tdEx4
z/obikQZzGJ1yIHRQ3RRKmFgFlCzYtdkUay90ZBhH9YTZuxS1v/wfC2ZjxjRXDDe
zvJH/HemYmrSo9/LXJYl8yDVs7A7KOZ7QTCWu14G/EGiEnosxvQggJL6jgQ/cSNB
y0o0ifKZice+LRCl96cBBKL0q/+q2wKvujTVQYDgtlRBrX84ez1qkc1xooVb+LgY
O60=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-cro.slu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp-cro.slu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp-cro.slu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Silesian University in Opava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Slezská univerzita v Opavě</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Silesian University in Opava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Slezská univerzita v Opavě</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.slu.cz/slu/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.slu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Ježíšek</md:SurName>
      <md:EmailAddress>mailto:jezisek@opf.slu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp.knihovny.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <UIInfo xmlns="urn:oasis:names:tc:SAML:metadata:ui">
          <DisplayName xml:lang="en">Czech libraries in one place</DisplayName>
          <Description xml:lang="en">Czech libraries in one place</Description>
          <InformationURL xml:lang="en">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="en">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
          <DisplayName xml:lang="cs">České knihovny na jednom místě</DisplayName>
          <Description xml:lang="cs">České knihovny na jednom místě</Description>
          <InformationURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/o-portalu</InformationURL>
          <PrivacyStatementURL xml:lang="cs">https://www.knihovny.cz/Portal/Page/ochrana-osobnich-udaju</PrivacyStatementURL>
        </UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.knihovny.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.knihovny.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sp.knihovny.cz/</ds:KeyName>
          <ds:KeyName>www.knihovny.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.knihovny.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDDTCCAfWgAwIBAgIJAN8/Gxg8FlrBMA0GCSqGSIb3DQEBBQUAMBoxGDAWBgNV BAMTD3d3dy5rbmlob3ZueS5jejAeFw0xNjA4MjMxODAwMjhaFw0yNjA4MjExODAw MjhaMBoxGDAWBgNVBAMTD3d3dy5rbmlob3ZueS5jejCCASIwDQYJKoZIhvcNAQEB BQADggEPADCCAQoCggEBALKSFiYUgdzIH6HqKllebCVsrRHB0yIc/NFaIkFpp/1b AsOfEluFenLxe8jFauzeJjWSuQrwMsl4NGVdDky98Oz2sS5p5kVqu5L6zrlsDMQL mhezqM/5nFEZ+nSJqSfn9mClM5PlRH4mUGnvEf4AqeROGZLY9dNKcZCXh/6vHhVc VqagPkNHNOZrg47uvMoagxT8Qy6vesHT7aweEJzN1I35bM+9LQw/LOZk490w0gOD 5jpO7O0fd/Bg/2nxWVGNtndJEAktwRnitczrBi10/Qt+3l6OAAvN2hDCcyEaJLE7 /qvfGRDw9lAXL9soTaBSIRsrhDepb5pwjC16vASqDqkCAwEAAaNWMFQwMwYDVR0R BCwwKoIPd3d3LmtuaWhvdm55LmN6hhdodHRwczovL3NwLmtuaWhvdm55LmN6LzAd BgNVHQ4EFgQU6LbP8RmsTDjvxDZ0yN2LPct9bpowDQYJKoZIhvcNAQEFBQADggEB AFJik7o7s/1voo+ZPn2guTUgVNzfM3J9CaD2OVn6AK+r58UnOB9zrRqXjqKFlIhv 8RkDuKWvIvz9VUhSHa1QeA4sdNzeVV9Lu/3F5EXHB9FchHN3Cnwdofd2G3vX+QYl 3lfvfb31mNimfoxo8bzElvHvOhfkno+biJ0js4ohMblCJhbE1OQQaokfnec5Q9j8 m1NTw3yr0Zii+yzU+XTe/vRtcnkwjYWiFoQhKRHDI6NT2PkGbwCsXpWawyoRHjp8 xGTmsbkvKGcCGYmqctzrD7muVuEldgiDvwXLeZvjUCRPXYHb4Z0c//6ot1R9Q7zj bKUOdTK0GTlj+HkFTGcRZHU=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.knihovny.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.knihovny.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.knihovny.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.knihovny.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.knihovny.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.knihovny.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Czech libraries in one place</md:ServiceName>
        <md:ServiceName xml:lang="cs">České knihovny na jednom místě</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:mace:dir:attribute-def:ou" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/alephID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="https://shib.knihovny.cz/attribute-def/userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="userLibraryId" Name="userLibraryId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Moravian Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Moravská zemská knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Moravian Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Moravská zemská knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.mzk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.mzk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Václav</md:GivenName>
      <md:SurName>Rosecký</md:SurName>
      <md:EmailAddress>mailto:xrosecky@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Žabička</md:SurName>
      <md:EmailAddress>mailto:zabak@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Security Response Team</md:GivenName>
      <md:EmailAddress>mailto:abuse@mzk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp.sdnnt-test.nkp.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Out-Of-Commerce Works</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Seznam děl nedostupných na trhu</mdui:DisplayName>
          <mdui:Description xml:lang="en">Out-Of-Commerce Works</mdui:Description>
          <mdui:Description xml:lang="cs">Seznam děl nedostupných na trhu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://sp.sdnnt-test.nkp.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://sp.sdnnt-test.nkp.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://sdnnt-test.nkp.cz/sdnnt/logo-sdnnt-blue.33993314dd897deac243.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sp.sdnnt-test.nkp.cz/shibboleth</ds:KeyName>
          <ds:KeyName>sdnnt-test.nkp.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sdnnt-test.nkp.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIELDCCApSgAwIBAgIJALlIqRGemA6bMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV BAMTFHNwLnNkbm50LXRlc3QubmtwLmN6MB4XDTIyMDIxNTA5MzM0OVoXDTI0MDIx NTA5MzM0OVowHzEdMBsGA1UEAxMUc3Auc2RubnQtdGVzdC5ua3AuY3owggGiMA0G CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDQ18BkRDb6IDlEXP7KPzB0vBB0ld4d cvHRjzelHRUfUWi0efDfZ6jXzv3k6DZaweOPwOGk55zX+C0dkvsFkozby9UHquwZ p/AMnr8FH6kXbmRMBjH7ZgjIBybaPwEs6zn/ykL5ZJKfwJy/Tn5XvxcuSUQcAqHO pcmfn68U8eIbkSn93U95WkjTYwY+Fh4fPRe14wtPaBHS/bubjSBRopo7DkzdVC6P EVpOI3B/1tX9DMIEk3PcQz7y16UoRqNv3lqwjJF9DD9l1hoCExMxuksePYwR+0aM 0IUasaIn2Ww7K+IXwQLmLHq+Zl69hyWUeGFw4HaFKK2ev0c7pgH+KrNQ5V3uJaxM AW0dTNFHynGuEn5zXoB159Q8EkgmYTPX/x740Jd/7v63zT/Rz7hPLQ3SF775XZko XVMYRu+h13bEoUE+yDjrvfR9SzvRlI5cLPo4qapQ9keZ5NVx/dDIZPun/I2mr9F5 Klc84b0qj73R0KNCq+OuWBkVeGhqvgcKjt8CAwEAAaNrMGkwSAYDVR0RBEEwP4IU c3Auc2RubnQtdGVzdC5ua3AuY3qGJ2h0dHBzOi8vc3Auc2RubnQtdGVzdC5ua3Au Y3ovc2hpYmJvbGV0aDAdBgNVHQ4EFgQUkq0M0VtM+QbmVZYLHFiM1leLxSMwDQYJ KoZIhvcNAQELBQADggGBABuBKCxvP4hp9Gu2hZQnzmq4HDzyIxMmwCLaFjM+r7Tb u8ACaAImdPoMzoF9pAx/FTSje8pCStPBvq8aAQZEZussHJoRkzN38d7FpqKtx13S 6+udx35w6hHNVXAFvZBQRT0AE1J7f90uXsE53IpJr6bE5ZoBZDGM4Ajn9QVUGxsF oBhQgESUATkLyf1NzWFZgg0EEvm/mfS1DjWZd3fWoF5Inbo4Vj34TTEcsQ1uGe+0 z4/BWaWZLEv6mCl58wpmtosmvtzZz0n0MQpIEK5prS1FaY7e5mu7IFwitBG2pnTP V/HbcBusgC7X4uRjc0UH6J0nebEiqlFIqpvnft2dflCtF6VZUFmf4cOQ3LkZOFNH JGftcR72PrYyJleb9U69IbTopOcy+fynERvglqStGneg686ZqtnfDHvahnxSSsiP DstCukqlrJ3oSXINOVFpz/5eti0w+MwbvaIt9LDeRs6Ll1LpapE/mz6pdbTKYxTe cnb9i0ufkJke4z9jhz4PNg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sdnnt-test.nkp.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Out-Of-Commerce Works</md:ServiceName>
        <md:ServiceName xml:lang="cs">Seznam děl nedostupných na trhu</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Out-Of-Commerce Works</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Seznam děl nedostupných na trhu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of the Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní knihovna České republiky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.en.nkp.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.nkp.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdenko</md:GivenName>
      <md:SurName>Vozár</md:SurName>
      <md:EmailAddress>mailto:Zdenko.Vozar@nkp.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sp.veverka.ch/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp.veverka.ch/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp.veverka.ch/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sp.veverka.ch/shibboleth</ds:KeyName>
          <ds:KeyName>sp.veverka.ch</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sp.veverka.ch</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEDCCAfigAwIBAgIJAMSxspHvQo3hMA0GCSqGSIb3DQEBBQUAMBgxFjAUBgNV
BAMTDXNwLnZldmVya2EuY2gwHhcNMTQwNDA0MTMxODA0WhcNMzQwMzMwMTMxODA0
WjAYMRYwFAYDVQQDEw1zcC52ZXZlcmthLmNoMIIBIjANBgkqhkiG9w0BAQEFAAOC
AQ8AMIIBCgKCAQEA7JImgPYxzOk+5n4+2JG/wam/jPzH9RKQM+iN026tAnOnKV9h
uF5/AofkQkFyUnviAgEl1RL2sjsro3EDcTgyLxHQZ+vnQdsCQIVmRAtrx0NnQmZ+
W8iN/pl5cnQm0E3ov03V2ab0wV5c6shC+ugKGWbQpyDl44XKJi65EUKAK4zZQHq4
N3wQR2hekxkO2p5cBGcXhdrlsae+s3wvAf6pUArViDURQtUIN6YavUvgOKOQoaqR
FTJreIChquZS0IDiTwADn4xWZZxsOfD83CmvTlp8fKbP+pjargiunRQT67t/Vooq
eUgZZfxUGq8By9KVWawl9rRYwtO7Mo8hMcE1xwIDAQABo10wWzA6BgNVHREEMzAx
gg1zcC52ZXZlcmthLmNohiBodHRwczovL3NwLnZldmVya2EuY2gvc2hpYmJvbGV0
aDAdBgNVHQ4EFgQURJzjSydvxK4oTiio1Bc+Vq0oa+cwDQYJKoZIhvcNAQEFBQAD
ggEBAET39Z5mZze1BYX16eDfK0LpzKUDrISYaFtIzv1IQQfYc4bN4yFVgnNrZJf1
KKfpqsG5k4k5rEU9Udl9fEiW4596P6tHo0xZVJCjGWd1EG+U1uls1NmPz+WbSn7o
rc3YyQ6C3i4oMm5HepQHkl5lSewhxdBlJwqWtyTly6Rk1qgl0cR5Zf7HvizfPRPl
38lzpKX4iIGbMZWfeZjJVM2Xe/s5EYR9zPVdpKEuUeAVq3mQ7NErQAldznj+eWyk
2YVh9UQK4MwSBbQ2wdWiVRMh97uq57cqH8hL9G6VlIB+2OtTNKWziC+lyEygatB6
cTBvWor6BqduERJmzZk2GUWevK0=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp.veverka.ch/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.veverka.ch/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp.veverka.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp.veverka.ch/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp.veverka.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Veverka.ch</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Veverka.ch</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Veverka.ch</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://veverka.ch/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://veverka.ch/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>František</md:GivenName>
      <md:SurName>Kučera</md:SurName>
      <md:EmailAddress>sp-eduid.cz@frantovo.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://spcr.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">ExaFS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">ExaFS</mdui:DisplayName>
          <mdui:Description xml:lang="en">ExaFS tool</mdui:Description>
          <mdui:Description xml:lang="cs">ExaFS tool</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://github.com/CESNET/exafs</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://github.com/CESNET/exafs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://spcr.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://spcr.cesnet.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>spcr</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=spcr</ds:X509SubjectName>
            <ds:X509Certificate>MIID3jCCAkagAwIBAgIUAZb7TX3Gjw0GjP+T59U9jlQs1FMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://spcr.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spcr.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://spcr.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">ExaFS</md:ServiceName>
        <md:ServiceName xml:lang="cs">ExaFS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">ExaFS tool</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">ExaFS tool</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ces.net</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Adamec</md:SurName>
      <md:EmailAddress>mailto:petr.adamec@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" cacheDuration="P7DT0H0M0S" entityID="https://sso.finesoftware.eu/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>https://refeds.org/category/code-of-conduct/v2</AttributeValue>
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>https://refeds.org/sirtfi2</AttributeValue>
          <AttributeValue>https://refeds.org/sirtfi</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Fine Software - student license</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Fine Software - studentská licence</mdui:DisplayName>
          <mdui:Description xml:lang="en">Software available for download</mdui:Description>
          <mdui:Description xml:lang="cs">Seznam software ke stažení</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.finesoftware.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.fine.cz</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://sso.finesoftware.eu/privacy-policy/Fine_Software_Privacy_Policy.pdf</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://sso.finesoftware.eu/privacy-policy/Fine_Software_Privacy_Policy.pdf</mdui:PrivacyStatementURL>
          <mdui:Logo height="151" width="200" xml:lang="en">https://www.finesoftware.eu/public/assets/frontend/img/Fine-software-logo.png</mdui:Logo>
          <mdui:Logo height="151" width="200" xml:lang="cs">https://www.finesoftware.eu/public/assets/frontend/img/Fine-software-logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sso.finesoftware.eu/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.finesoftware.eu/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sso.finesoftware.eu/shibboleth</ds:KeyName>
          <ds:KeyName>sso.finesoftware.eu</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sso.finesoftware.eu</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMzCCApugAwIBAgIUYAV9diX7d2owEuC2HCym9EsDU2IwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.finesoftware.eu/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.finesoftware.eu/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.finesoftware.eu/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Fine Software - student license</md:ServiceName>
        <md:ServiceName xml:lang="cs">Fine Software - studentská licence</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Software available for download.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Seznam software ke stažení.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="samlPairwiseID" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="samlSubjectID" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fine spol. s r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fine spol. s r.o.</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.finesoftware.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fine.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:GivenName>Fine Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:ssosupport@fine.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Fine Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:ssosupport@fine.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Fine Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:ssosupport@fine.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Fine-Security-Team</md:GivenName>
      <md:EmailAddress>mailto:sec@fine.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sso.pythia.bigdigdata.com/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Pythia</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Pythia</mdui:DisplayName>
          <mdui:Description xml:lang="en">Pythia - software for library acquisition</mdui:Description>
          <mdui:Description xml:lang="cs">Pythia - aplikace pro knihovní akvizice</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.bigdigdata.com/pythia/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.bigdigdata.com/pythia/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.bigdigdata.com/pythia/dist/img/logo-128.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sso.pythia.bigdigdata.com/shibboleth</ds:KeyName>
          <ds:KeyName>sso.pythia.bigdigdata.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sso.pythia.bigdigdata.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIESzCCArOgAwIBAgIUIGBau+tCC3Z402wbbF7+X7axPW8wDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso.pythia.bigdigdata.com/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Pythia</md:ServiceName>
        <md:ServiceName xml:lang="cs">Pythia</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Big Dig Data, s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Big Dig Data</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.bigdigdata.com/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.bigdigdata.com/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Bedřich</md:GivenName>
      <md:SurName>Košata</md:SurName>
      <md:EmailAddress>mailto:beda@bigdigdata.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sso.testfine.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Software for academic users</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Software pro akademické uživatele</mdui:DisplayName>
          <mdui:Description xml:lang="en">Software available for download.</mdui:Description>
          <mdui:Description xml:lang="cs">Seznam software ke stažení.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.finesoftware.eu</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.fine.cz</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://www.finesoftware.eu/public/assets/frontend/img/Fine-2020-black-color.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sso.testfine.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.testfine.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://sso.testfine.cz/shibboleth</ds:KeyName>
          <ds:KeyName>sso.testfine.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sso.testfine.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUBsOyvNCN9Ijq6avNxLqXts6Sf5gwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.testfine.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.testfine.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.testfine.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Software for academic users</md:ServiceName>
        <md:ServiceName xml:lang="cs">Software pro akademické uživatele</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Software available for download.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Seznam software ke stažení.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Fine spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Fine</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Fine</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.finesoftware.eu</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.fine.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technical</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:support@fine.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://stage.mzk.abbreva.site/simplesaml">
    <md:SPSSODescriptor AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Stage Abbreva - mzk.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Stage Abbreva - mzk.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Stage verze pro registrace a přihlášení k účtu Moravské zemské knihovny.</mdui:Description>
          <mdui:Description xml:lang="en">Stage version for account login to Moravian Library.</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.abbreva.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.abbreva.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stage.mzk.abbreva.site/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage.mzk.abbreva.site/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stage.mzk.abbreva.site/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Stage Abbreva - mzk.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Stage Abbreva - mzk.cz</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="firstName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="lastName" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="street" Name="urn:oid:2.5.4.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="city" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="postcode" Name="urn:oid:2.5.4.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="phone" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="birth" Name="urn:oid:1.3.6.1.4.1.2428.90.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="state" Name="urn:oid:2.5.4.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="country" Name="urn:oid:2.5.4.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdValid" Name="http://specs.nic.cz/attr/contact/valid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdStudent" Name="http://specs.nic.cz/attr/contact/student" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityCardNumber" Name="http://specs.nic.cz/attr/contact/ident/card" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityPassNumber" Name="http://specs.nic.cz/attr/contact/ident/pass" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdIdentityIsicNumber" Name="http://specs.nic.cz/attr/contact/isic" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdStatus" Name="http://specs.nic.cz/attr/contact/status" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet" Name="http://specs.nic.cz/attr/addr/mail/street" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet1" Name="http://specs.nic.cz/attr/addr/mail/street1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactStreet2" Name="http://specs.nic.cz/attr/addr/mail/street2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCity" Name="http://specs.nic.cz/attr/addr/mail/city" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactPostcode" Name="http://specs.nic.cz/attr/addr/mail/pc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactState" Name="http://specs.nic.cz/attr/addr/mail/sp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactCountry" Name="http://specs.nic.cz/attr/addr/mail/cc" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="mojeIdContactVerified" Name="http://specs.nic.cz/attr/addr/mail/verified" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
        <md:RequestedAttribute FriendlyName="schacDateOfBirth" Name="urn:oid:1.3.6.1.4.1.25178.1.2.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Abbreva s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Abbreva s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">ABBREVA</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">ABBREVA</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.abbreva.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.abbreva.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>7Labs</md:Company>
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Janda</md:SurName>
      <md:EmailAddress>mailto:petrjanda@7labs.cz</md:EmailAddress>
      <md:TelephoneNumber>+420776737996</md:TelephoneNumber>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://stats.czechelib.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CzechElib stats</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Statistiky projektu CzechElib</mdui:DisplayName>
          <mdui:Description xml:lang="en">Usage statistics system of project CzechElib.</mdui:Description>
          <mdui:Description xml:lang="cs">IS pro statistiky projektu CzechElib.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.czechelib.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.czechelib.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://stats.czechelib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stats.czechelib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>cel-stats.ntkcz.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cel-stats.ntkcz.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUPWBxBN2reNwYPwF+SK0cBQahzBcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>cel-stats.ntkcz.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=cel-stats.ntkcz.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUPWBxBN2reNwYPwF+SK0cBQahzBcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.czechelib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.czechelib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://stats.czechelib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CzechElib stats</md:ServiceName>
        <md:ServiceName xml:lang="cs">Statistiky projektu CzechElib</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Operator of ERMS system of CzechElib project.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Provozovatel ERMS projektu CzechElib.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://stats.test.czechelib.cz/shibboleth">
    <md:Extensions>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CzechElib stats (test)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Statistiky projektu CzechElib (test)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Usage statistics system of project CzechElib (test).</mdui:Description>
          <mdui:Description xml:lang="cs">IS pro statistiky projektu CzechElib (test).</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.czechelib.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.czechelib.cz/cs/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://stats.test.czechelib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stats.test.czechelib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>stats.test.czechelib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stats.test.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd3qaJoYNVP0i73a4w77yvI3xfxMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>stats.test.czechelib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stats.test.czechelib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd3qaJoYNVP0i73a4w77yvI3xfxMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.test.czechelib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML2/ECP" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML/POST" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://stats.test.czechelib.cz/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CzechElib stats (test)</md:ServiceName>
        <md:ServiceName xml:lang="cs">Statistiky projektu CzechElib (test)</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="affiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">National Library of Technology</OrganizationName>
      <OrganizationName xml:lang="cs">Národní technická knihovna</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Operator of ERMS system of CzechElib project.</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Provozovatel ERMS projektu CzechElib.</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.techlib.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.techlib.cz/cs</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Ondrej</GivenName>
      <SurName>Koch</SurName>
      <EmailAddress>mailto:administrator@techlib.cz</EmailAddress>
    </ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://stigmator.ceitec.muni.cz/authzone">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CIISB administration</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Administrativa CIISB projektu</mdui:DisplayName>
          <mdui:Description xml:lang="en">Access to the project proposal administration</mdui:Description>
          <mdui:Description xml:lang="cs">Pristup k administraci CIISB projektu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.ciisb.org</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.ciisb.org</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://stigmator.ceitec.muni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>stigmator.ceitec.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=stigmator.ceitec.muni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPDCCAqSgAwIBAgIJAN0JZrC0KN+4MA0GCSqGSIb3DQEBCwUAMCMxITAfBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stigmator.ceitec.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CIISB administration</md:ServiceName>
        <md:ServiceName xml:lang="cs">Administrativa CIISB projektu</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Access to the project proposal administration</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Pristup k administraci CIISB projektu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Czech infrastructure for integrative structural biology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Czech infrastructure for integrative structural biology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CIISB</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CIISB</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ciisb.org</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.ciisb.org</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jiri</md:GivenName>
      <md:SurName>Novacek</md:SurName>
      <md:EmailAddress>mailto:jiri.novacek@ceitec.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://su-dev.fit.vutbr.cz/kis">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://su-dev.fit.vutbr.cz/kis/api/auth/eduid/discovery" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">KIS (development version)</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">KIS (testovací verze)</mdui:DisplayName>
          <mdui:Description xml:lang="en">FIT BUT Students' Union membership registry (development version)</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně (testovací verze)</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://su.fit.vutbr.cz/kis/cs.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://su.fit.vutbr.cz/kis/en.html</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEHTCCAwWgAwIBAgIUB1MuS4pWBRpwuQGPYAV1JTPMVvswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://su-dev.fit.vutbr.cz/kis/api/auth/eduid/assertion" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">KIS (development version)</md:ServiceName>
        <md:ServiceName xml:lang="cs">KIS (testovací verze)</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FIT BUT Students' Union membership registry (development version)</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně (testovací verze)</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Studentská unie FIT VUT v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">FIT BUT Students' Union</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">SU FIT VUT</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">SU FIT BUT</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://su.fit.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://su.fit.vutbr.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Budiský</md:SurName>
      <md:EmailAddress>mailto:xbudis02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Kotoun</md:SurName>
      <md:EmailAddress>mailto:xkotou04@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Ondryáš</md:SurName>
      <md:EmailAddress>mailto:xondry02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://su-int.fit.vutbr.cz/kis">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://su-int.fit.vutbr.cz/kis/api/auth/eduid/discovery" index="1"/>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">KIS</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">KIS</mdui:DisplayName>
          <mdui:Description xml:lang="en">FIT BUT Students' Union membership registry</mdui:Description>
          <mdui:Description xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://su.fit.vutbr.cz/kis/cs.html</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://su.fit.vutbr.cz/kis/en.html</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEETCCAvmgAwIBAgIUC0MoRO99PZ32OXlPlCEIWkD/aFswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://su-int.fit.vutbr.cz/kis/api/auth/eduid/assertion" index="1"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">KIS</md:ServiceName>
        <md:ServiceName xml:lang="cs">KIS</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FIT BUT Students' Union membership registry</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Evidence členů Studentské unie FIT VUT v Brně</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Studentská unie FIT VUT v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">FIT BUT Students' Union</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">SU FIT VUT</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">SU FIT BUT</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://su.fit.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://su.fit.vutbr.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jakub</md:GivenName>
      <md:SurName>Budiský</md:SurName>
      <md:EmailAddress>mailto:xbudis02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Michal</md:GivenName>
      <md:SurName>Kotoun</md:SurName>
      <md:EmailAddress>mailto:xkotou04@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Ondryáš</md:SurName>
      <md:EmailAddress>mailto:xondry02@stud.fit.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sulu.cesnet.cz:43081/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">jenkins for haas.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">jenkins for haas.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Honeypot as a Service build platform</mdui:Description>
          <mdui:Description xml:lang="cs">Honeypot as a Service build platform</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="267" width="411">https://haas.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>haas-jenkins.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://sulu.cesnet.cz:43081/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=haas-jenkins.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMjCCApqgAwIBAgIJAPfrX2/I5RXzMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sulu.cesnet.cz:43081/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radoslav</md:GivenName>
      <md:SurName>Bodo</md:SurName>
      <md:EmailAddress>mailto:haas-dev@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://sulu.cesnet.cz:44081/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">warden visualization for haas.cesnet.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">warden visualization for haas.cesnet.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Honeypot as a Service data visualization</mdui:Description>
          <mdui:Description xml:lang="cs">Honeypot as a Service data visualization</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://haas.cesnet.cz</mdui:InformationURL>
          <mdui:Logo height="267" width="411">https://haas.cesnet.cz/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>haas-viz.cesnet.cz</ds:KeyName>
          <ds:KeyName>https://sulu.cesnet.cz:43081/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=haas-viz.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJjCCAo6gAwIBAgIJAPMfwPEWlgr+MA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV
BAMTEmhhYXMtdml6LmNlc25ldC5jejAeFw0xNzA4MzEwOTIyNTJaFw0yNzA4Mjkw
OTIyNTJaMB0xGzAZBgNVBAMTEmhhYXMtdml6LmNlc25ldC5jejCCAaIwDQYJKoZI
hvcNAQEBBQADggGPADCCAYoCggGBAMfjSgG270vrWC+F7E3k6owCyxTtMQFp04uX
ZA+KdDy3oLmaIKZsgcMLlVo4WxwsxVV+cgWvozsrdT2I8GuBY3mqKFXKOA5/UqIK
4oIjekxJppTQJiTeM0y23rF4l6+vQWydsJvSPa7CP7ftnhvg2mTkMAC+eDQjUTM5
rnc/w9Fq1/SuJrDZ+n4eQpaOLZygTBj/c8JuXdrSwDMt8ZW8MG6v+ffLs2J6G1+0
eaPtBnIy3CgG5SuGGV4Ik9P8bmXy5R2J8b87dDERA2K0gDAVNTSsHi+Ab10Xv7Af
6h86RsiDNieRQP00ONxVsvmTVrdVZgshJ/67hGaBQJXhiYL4kKNbfC+ryz0HGaIa
2kLLcNcXU2PK7c0LtIXE4Nd6J1NsqmkM2p/Y1KTmPZ/s1Q0x8+BZoCkyWzZFujp4
YM+Xlzp/i1XtGAlY/qGVqlmCI1am7QQzzhTT6nwGnduveKemJB3NLIBQti9PwlNe
DlRlany1+NlvGiZi6AB63ZoXj26Q1QIDAQABo2kwZzBGBgNVHREEPzA9ghJoYWFz
LXZpei5jZXNuZXQuY3qGJ2h0dHBzOi8vc3VsdS5jZXNuZXQuY3o6NDMwODEvc2hp
YmJvbGV0aDAdBgNVHQ4EFgQU8kJGsfNHbQBidAjvmGAyUcjIE90wDQYJKoZIhvcN
AQELBQADggGBAKrG1eMu+NJSUZIysp+jtFGJ1pEOGXa6ImMaORFiwu26x6BVo1QZ
X8j6rAGNhTasoU7Lmm5wYyvSj0BZfIUWxXaX1MuBWiBUTW79OY/NFS0fgLCES4Iv
w7WpoIYD3noR3uJGbsl/SYx5GZDDgmS/3H3x8hDEHAWz+9zVsWLn9o+I6t6ugx4e
ABGaKb3pIsYU+vDgr1wFCJZuM21bxD9V7rJEAC9bqpfqVlKD85IT6ycUYtI3ylT5
JMWblUkhp/1L35PszmjNeK+iI4rUsa96guyzss9Eg0EJWXbSjSFbvfZzvyn1/YDv
UuNb+HpLMEovuvgW74y+IEzS3Vl18R+8akcy/V0TTx7+29rT6NJHo35M31y0gLE9
ZQfN3YBbYGbz0/sl6TwSymeJDH1CHfPvoyjiosQbcqShRrz9jj818HOTU9jz23c3
FGa/H8R1qq55iOCvOd4PcBYqwlYPuvfuE5oXIGypAk65bFlMqzx4HM30+xcg61Mg
0Zbhghi0QPN+Rg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sulu.cesnet.cz:44081/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.cesnet.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radoslav</md:GivenName>
      <md:SurName>Bodo</md:SurName>
      <md:EmailAddress>mailto:haas-dev@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tcs-dev.cesnet.cz/simplesaml/">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TCS certificates</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Certifikáty TCS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Personal, server, robot, code and document certificates - development</mdui:Description>
          <mdui:Description xml:lang="cs">Osobní, serverové, robotové, aplikační a dokumentové certifikáty - vývoj</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://tcs-dev.cesnet.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://tcs-dev.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIESjCCArKgAwIBAgIJAK9HdKndFZh4MA0GCSqGSIb3DQEBCw
UAMDoxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKDAZDRVNORVQxGjAYBgNVBAMMEXRjcy1kZXYuY2VzbmV0Lm
N6MB4XDTIwMDUyMjE5MDMwMVoXDTQwMDUyMjE5MDMwMVowOjELMAkGA1UEBhMCQ1oxDzANBgNVBAoMBk
NFU05FVDEaMBgGA1UEAwwRdGNzLWRldi5jZXNuZXQuY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwgg
GKAoIBgQC28DHjySYjAVhnYBxXgEmZSDkna25/FW18xBWNM4IUWfd7LxjmPO70ZTRH2Gx099/xh7UO+R
G8Gea5Ar8jmiQuhoozDI61JUzPXh+oWsHk6EiJVt5nSGnw8BNFvP79daeOXlAh4DTVmwi31rIzQ57L4R
O4tQV56jzcDZ4qDKVNvdGdTY2HF4jSkTTBtXlzxc6dWXIa4Xyj9r5uWewIZjhw1r4VP6VudHoMK6pRhW
pDRTKyM5srldTu83PFSt153whMGX5J89pQ3EWIwFzIXeIirBUwsb8BUp927ofHp2yDO0tobp9IAz/VXk
zTyeXdFd5fCq+D8dbw8THxXB+TtLzsWOTORts4r6/pJHDIRu5sUm63zn00SWRyE9uiznVlrF8P6zCQzQ
JCVApgOhJPzrZYv8vepHs2e5lMcTKMstTVAQE8ROdzrDElLEvqZoD+Y3pLSzITy6AVEWtVrmOqCDaypr
f+yq51SxDl5Wxim+g418wApDcnbcqD3X7LmBmQOs8CAwEAAaNTMFEwHQYDVR0OBBYEFIfPOFmwnXVjwV
sHOgTrlHT/5y3wMB8GA1UdIwQYMBaAFIfPOFmwnXVjwVsHOgTrlHT/5y3wMA8GA1UdEwEB/wQFMAMBAf
8wDQYJKoZIhvcNAQELBQADggGBADtQjz/Sio8NgVAV5xUrHftskbdPVH/eoo0bHAcohPA6tljtTnmMLL
vAb+huNMMDthCAikJPTtnF3fmzC9QCtLccb531LTDziO6Jef41AJLr3jOMj+U2rbsOD8IgJqKgV+nnVz
YJL96HDjA1x21fMWRV/vWPl2nTYke7uUlCErb9sVFyC6VvKhUTYdG+5MM7/HNuQEOEHlJDaLA0ly1i3S
z0SHzFSkok+lt0EeN2AF226pCPbBmM0YOFs2XSnGqunHt8pfq4izuChUNSCA/TK9Q5EA1ElcNxiPborl
9ko05jFjE+0/NNQ4+hstS8hnP9U7auqgGRAsDwLSylxNKNV/d8ecqhBV7GWmZIvq6vyk+EX6nL/ax858
X4fssLjSRnR7Tyw2yxOwiqsOrWsqTP2WV3M+o+Olo5JBqRZ9BbgSblbpOAnoKr3XSB3hH8365XVwtbGg
DugjksoPafNxkkRRy/Bm0/0WossEmfphc1lMgiCmMxx9D/Lvd9aAqVDJnzxQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIESjCCArKgAwIBAgIJAK9HdKndFZh4MA0GCSqGSIb3DQEBCw
UAMDoxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKDAZDRVNORVQxGjAYBgNVBAMMEXRjcy1kZXYuY2VzbmV0Lm
N6MB4XDTIwMDUyMjE5MDMwMVoXDTQwMDUyMjE5MDMwMVowOjELMAkGA1UEBhMCQ1oxDzANBgNVBAoMBk
NFU05FVDEaMBgGA1UEAwwRdGNzLWRldi5jZXNuZXQuY3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwgg
GKAoIBgQC28DHjySYjAVhnYBxXgEmZSDkna25/FW18xBWNM4IUWfd7LxjmPO70ZTRH2Gx099/xh7UO+R
G8Gea5Ar8jmiQuhoozDI61JUzPXh+oWsHk6EiJVt5nSGnw8BNFvP79daeOXlAh4DTVmwi31rIzQ57L4R
O4tQV56jzcDZ4qDKVNvdGdTY2HF4jSkTTBtXlzxc6dWXIa4Xyj9r5uWewIZjhw1r4VP6VudHoMK6pRhW
pDRTKyM5srldTu83PFSt153whMGX5J89pQ3EWIwFzIXeIirBUwsb8BUp927ofHp2yDO0tobp9IAz/VXk
zTyeXdFd5fCq+D8dbw8THxXB+TtLzsWOTORts4r6/pJHDIRu5sUm63zn00SWRyE9uiznVlrF8P6zCQzQ
JCVApgOhJPzrZYv8vepHs2e5lMcTKMstTVAQE8ROdzrDElLEvqZoD+Y3pLSzITy6AVEWtVrmOqCDaypr
f+yq51SxDl5Wxim+g418wApDcnbcqD3X7LmBmQOs8CAwEAAaNTMFEwHQYDVR0OBBYEFIfPOFmwnXVjwV
sHOgTrlHT/5y3wMB8GA1UdIwQYMBaAFIfPOFmwnXVjwVsHOgTrlHT/5y3wMA8GA1UdEwEB/wQFMAMBAf
8wDQYJKoZIhvcNAQELBQADggGBADtQjz/Sio8NgVAV5xUrHftskbdPVH/eoo0bHAcohPA6tljtTnmMLL
vAb+huNMMDthCAikJPTtnF3fmzC9QCtLccb531LTDziO6Jef41AJLr3jOMj+U2rbsOD8IgJqKgV+nnVz
YJL96HDjA1x21fMWRV/vWPl2nTYke7uUlCErb9sVFyC6VvKhUTYdG+5MM7/HNuQEOEHlJDaLA0ly1i3S
z0SHzFSkok+lt0EeN2AF226pCPbBmM0YOFs2XSnGqunHt8pfq4izuChUNSCA/TK9Q5EA1ElcNxiPborl
9ko05jFjE+0/NNQ4+hstS8hnP9U7auqgGRAsDwLSylxNKNV/d8ecqhBV7GWmZIvq6vyk+EX6nL/ax858
X4fssLjSRnR7Tyw2yxOwiqsOrWsqTP2WV3M+o+Olo5JBqRZ9BbgSblbpOAnoKr3XSB3hH8365XVwtbGg
DugjksoPafNxkkRRy/Bm0/0WossEmfphc1lMgiCmMxx9D/Lvd9aAqVDJnzxQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp-no-hostel"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs-dev.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel/artifact" index="13"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TCS development portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">Vývojový TCS portál</md:ServiceName>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Studený</md:SurName>
      <md:EmailAddress>mailto:dans@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tcs.cesnet.cz/simplesaml/">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TCS certificates</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Certifikáty TCS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Personal, server, robot, code and document certificates</mdui:Description>
          <mdui:Description xml:lang="cs">Osobní, serverové, robotové, aplikační a dokumentové certifikáty</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://tcs.cesnet.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://tcs.cesnet.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC8zCCAdsCFGDCyNiKANX4GlKYj7z0jgJl2vTuMA0GCSqGSI
b3DQEBCwUAMDYxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKEwZDRVNORVQxFjAUBgNVBAMTDXRjcy5jZXNuZX
QuY3owHhcNMTkwNjI3MTM0NDI3WhcNMzkwNjI3MTM0NDI3WjA2MQswCQYDVQQGEwJDWjEPMA0GA1UECh
MGQ0VTTkVUMRYwFAYDVQQDEw10Y3MuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCg
KCAQEApRx/8Nk6S1PZKq90hE2kPqVe+ntPzDRHExhrqkjvTr9tsDgaL1TohIJR8UfV0c0lLQW9eeVasJ
GYnvZoFykCExiiTbQnHD+1Q4GWfrGk7FfrcQ2I8UgeiLF1SoTMd/eQPSwM/7wAyb8j+cyEtXJpztcnkR
SDxLnBiPn7lvc4UrR9eDxWWBMCRDEl5Z7EZLt8i1OVU/qQCXxHDxGYv9HG80vfS9XBIsIhNAqUa+iRqa
K0Yn1j+yuU0imAl7XLzZCp4w2RtmQWKpJW/NI5RKvZupU2QK1mEPNqQrQlbcVaszkjrt8MGtlTOrVeHK
Dc+NZBXUz5SwZPxmCb8cfQjFT0AQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQABp+5zL8l+3FxZGcUIeG
T1GS/7DINU5eVXxob6kxTYYeRU6bHD5IsUmC//QlAif01XRve21dG4p51BlFHmYHvKBv0W5BJOnkogKD
w92hhwp4oTo6In0XDOp25yl7msHXajKeBix6OQSe/jqBzOumBJexwhT10wp0eUWYssOVs8uNqof0Rl6E
ufI1DZRnmnmG9r4gq6G3cC2yQGTL+KcWSfnde/WQnWAPpvknXhDBNZDXAngNsCHgFv+h51eFkFSOOVqQ
ya5guunIxtrfewYJlmxFSHpJa75BJfEV3js8Q8481JSJ+S7DxRh+80M+UjvVkbbkwF55NUYbrZyQYGyv
z/</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIC8zCCAdsCFGDCyNiKANX4GlKYj7z0jgJl2vTuMA0GCSqGSI
b3DQEBCwUAMDYxCzAJBgNVBAYTAkNaMQ8wDQYDVQQKEwZDRVNORVQxFjAUBgNVBAMTDXRjcy5jZXNuZX
QuY3owHhcNMTkwNjI3MTM0NDI3WhcNMzkwNjI3MTM0NDI3WjA2MQswCQYDVQQGEwJDWjEPMA0GA1UECh
MGQ0VTTkVUMRYwFAYDVQQDEw10Y3MuY2VzbmV0LmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCg
KCAQEApRx/8Nk6S1PZKq90hE2kPqVe+ntPzDRHExhrqkjvTr9tsDgaL1TohIJR8UfV0c0lLQW9eeVasJ
GYnvZoFykCExiiTbQnHD+1Q4GWfrGk7FfrcQ2I8UgeiLF1SoTMd/eQPSwM/7wAyb8j+cyEtXJpztcnkR
SDxLnBiPn7lvc4UrR9eDxWWBMCRDEl5Z7EZLt8i1OVU/qQCXxHDxGYv9HG80vfS9XBIsIhNAqUa+iRqa
K0Yn1j+yuU0imAl7XLzZCp4w2RtmQWKpJW/NI5RKvZupU2QK1mEPNqQrQlbcVaszkjrt8MGtlTOrVeHK
Dc+NZBXUz5SwZPxmCb8cfQjFT0AQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQABp+5zL8l+3FxZGcUIeG
T1GS/7DINU5eVXxob6kxTYYeRU6bHD5IsUmC//QlAif01XRve21dG4p51BlFHmYHvKBv0W5BJOnkogKD
w92hhwp4oTo6In0XDOp25yl7msHXajKeBix6OQSe/jqBzOumBJexwhT10wp0eUWYssOVs8uNqof0Rl6E
ufI1DZRnmnmG9r4gq6G3cC2yQGTL+KcWSfnde/WQnWAPpvknXhDBNZDXAngNsCHgFv+h51eFkFSOOVqQ
ya5guunIxtrfewYJlmxFSHpJa75BJfEV3js8Q8481JSJ+S7DxRh+80M+UjvVkbbkwF55NUYbrZyQYGyv
z/</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-logout.php/forcedauth-sp-no-hostel"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml2-acs.php/forcedauth-sp-no-hostel" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tcs.cesnet.cz/simplesaml/module.php/saml/sp/saml1-acs.php/forcedauth-sp-no-hostel/artifact" index="13"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TCS portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">TCS portál</md:ServiceName>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="authMail" Name="urn:oid:1.2.840.113549.1.9.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Daniel</md:GivenName>
      <md:SurName>Studený</md:SurName>
      <md:EmailAddress>mailto:dans@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://teleinform.cz/simplesaml/module.php/saml/sp/metadata.php/portal1">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal1" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal1" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal1" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal1/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://teleinform.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal1" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/metadata.php/portal3">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal3" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal3" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal3" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal3/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://telekomunikace-tit.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal3" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://telemedicina.med.muni.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/telemedicina"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/telemedicina" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/Login" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/safeid" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>telemedicina.med.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=telemedicina.med.muni.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDPzCCAiegAwIBAgIJANJeOnUMWhb8MA0GCSqGSIb3DQEBBQUAMCMxITAfBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://telemedicina.med.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>smid@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xi="http://www.w3.org/2001/XInclude" entityID="https://test.ista.tacr.cz/ISTA">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="http://www.eduid.cz/" registrationInstant="2019-01-31T15:35:38Z"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">TAČR - Technologická agentura ČR</mdui:DisplayName>
          <mdui:Description xml:lang="en">TAČR - Technology Agency of the Czech Republic</mdui:Description>
          <mdui:Description xml:lang="cs">TAČR - Technologická agentura ČR</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.tacr.cz/index.php/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.tacr.cz/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNzCCAh8CBFdyhyowDQYJKoZIhvcNAQELBQAwYDELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIDNzCCAh8CBFdyhyowDQYJKoZIhvcNAQELBQAwYDELMAkGA1UEBhMCQ1oxDzAN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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test.ista.tacr.cz/ISTA/PUBLIC/saml/LogoutServiceHTTPRedirect"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.ista.tacr.cz/ISTA/PUBLIC/saml/SAMLAssertionConsumer" index="0" isDefault="true"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceName>
        <md:ServiceName xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TAČR - Technology Agency of the Czech Republic</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">TAČR - Technologická agentura ČR</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Technologická agentura ČR</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Technologická agentura ČR</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Technology Agency of the Czech Republic</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.tacr.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.tacr.cz/index.php/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Radovan</md:GivenName>
      <md:SurName>Lupták</md:SurName>
      <md:EmailAddress>mailto:luptak@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimír</md:GivenName>
      <md:SurName>Kubíček</md:SurName>
      <md:EmailAddress>mailto:kubicek@tacr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://testing.futurebooks.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Softresource, spol. s r.o.</mdui:DisplayName>
          <mdui:Description xml:lang="en">Softresource, spol. s r.o.</mdui:Description>
          <mdui:Description xml:lang="cs">Softresource, spol. s r.o.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://softresource.cz/#about</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://futurebooks.cz/libraries/images/aaa.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://testing.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testing.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://testing.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>testing.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=testing.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUaDpC8D5jIxOJSrCRZwkuhT+gQeQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testing.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testing.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testing.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Softresource, spol. s r.o.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://testk7.knihovnauk.cz:8443/realms/kramerius">
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
          <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
            <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
          </Attribute>
        </EntityAttributes>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Test K7</mdui:DisplayName>
          <mdui:Description xml:lang="en">Test K7 digital library</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://krameriustest.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
          <mdui:DisplayName xml:lang="cs">Test K7</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Test K7 digitální knihovna</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://krameriustest.knihovnauk.cz/about</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.knihovnauk.cz/o-knihovne/dokumenty/ochrana-osobnich-udaju/</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>0W21-3nfnAty3d_37P8kj_QqMIXCz_U1bv7T2snYmKk</ds:KeyName>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testk7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testk7.knihovnauk.cz:8444/realms/kramerius/broker/endpoint" index="1" isDefault="true"/>
      <md:AttributeConsumingService index="1" isDefault="true">
        <md:ServiceName xml:lang="cs">kramerius</md:ServiceName>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Ústí Regional Library</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Ústí Regional Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Knihovna Ústeckého kraje</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.knihovnauk.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.knihovnauk.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Luboš</md:GivenName>
      <md:SurName>Malý</md:SurName>
      <md:EmailAddress>mailto:lubos.maly@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zbyněk</md:GivenName>
      <md:SurName>Šachl</md:SurName>
      <md:EmailAddress>mailto:zbynek.sachl@knihovnauk.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://thalamoss-data.ics.muni.cz/shibboleth">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">THALAMOSS Data Management Platform</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">System pro spravu dat projektu THALAMOSS</mdui:DisplayName>
          <mdui:Description xml:lang="en">Management and distribution platform for THALAMOSS project on personalized therapy of b-thalassaemia</mdui:Description>
          <mdui:Description xml:lang="cs">System pro spravu a distribuci dat projektu THALAMOSS pro personalizovanou lecbu b-thalassemie</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://thalamoss-data.ics.muni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://thalamoss-data.ics.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="85">https://idp2.ics.muni.cz/muni_logo_85x40.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/ds"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/ds" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>thalamoss-data.ics.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=thalamoss-data.ics.muni.cz,O=Masarykova univerzita,L=Brno-st\C5\99ed,ST=Brno,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIFOjCCBCKgAwIBAgIQCVxtej2wMm/B9oLwzK2HGTANBgkqhkiG9w0BAQsFADBk
MQswCQYDVQQGEwJOTDEWMBQGA1UECBMNTm9vcmQtSG9sbGFuZDESMBAGA1UEBxMJ
QW1zdGVyZGFtMQ8wDQYDVQQKEwZURVJFTkExGDAWBgNVBAMTD1RFUkVOQSBTU0wg
Q0EgMzAeFw0xNjEyMTYwMDAwMDBaFw0xOTEyMjAxMjAwMDBaMHcxCzAJBgNVBAYT
AkNaMQ0wCwYDVQQIEwRCcm5vMRQwEgYDVQQHDAtCcm5vLXN0xZllZDEeMBwGA1UE
ChMVTWFzYXJ5a292YSB1bml2ZXJ6aXRhMSMwIQYDVQQDExp0aGFsYW1vc3MtZGF0
YS5pY3MubXVuaS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOYC
HieVAHYudnFntB+8i1EOnT6jgvlmoCLBtnpD7aEKCl/oT2Tr60clOGY392RWpV9X
eUoqpcdxaDzk2OHCV2l6h2ghLsknMNlemCGREsq4Bzztvq1mjvy6YQF6sRAQmKFG
FfgkgjZ8w6354j6bhh+bPDYQZzK2sWamg2tVrNIXe2fN3Cj8by3PZ6zbyWy2LInC
Cv9HPFBP90+NuFaVLK0dURfMZKFb/CigkjXcAW2FavMnaZwKtUgSKLcx3fb4XRqr
suUuA+UZsHviqT0G1twgQ9adEpsOTaBUQrU2qPes2PiM4XzyYCWQ0UKgRiWFdpt6
o0fh924chUbkZFsvsF0CAwEAAaOCAdMwggHPMB8GA1UdIwQYMBaAFGf9iCAUJ5jH
CdIlGbvpURFjdVBiMB0GA1UdDgQWBBRCvYb69Isfe8+AtVSMp8p50gpMcjAlBgNV
HREEHjAcghp0aGFsYW1vc3MtZGF0YS5pY3MubXVuaS5jejAOBgNVHQ8BAf8EBAMC
BaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMGsGA1UdHwRkMGIwL6At
oCuGKWh0dHA6Ly9jcmwzLmRpZ2ljZXJ0LmNvbS9URVJFTkFTU0xDQTMuY3JsMC+g
LaArhilodHRwOi8vY3JsNC5kaWdpY2VydC5jb20vVEVSRU5BU1NMQ0EzLmNybDBM
BgNVHSAERTBDMDcGCWCGSAGG/WwBATAqMCgGCCsGAQUFBwIBFhxodHRwczovL3d3
dy5kaWdpY2VydC5jb20vQ1BTMAgGBmeBDAECAjBuBggrBgEFBQcBAQRiMGAwJAYI
KwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmRpZ2ljZXJ0LmNvbTA4BggrBgEFBQcwAoYs
aHR0cDovL2NhY2VydHMuZGlnaWNlcnQuY29tL1RFUkVOQVNTTENBMy5jcnQwDAYD
VR0TAQH/BAIwADANBgkqhkiG9w0BAQsFAAOCAQEAGcFXMqdnAy9AXryZkswFEdir
x4VgDFg+9icKvmenDnbG9Z2U+PfJGrakVT7ia7lX7tDNuyr1Q800Z/hGY9OUGaLu
4rZseipOU20oh9pgkdJhWQ6PvVLQjeAh4RbzBcSqa2iJf4iIiioYxGjRJuDhz/3R
xygDPTurMiajMGoft0B8pbP06By7cOrSxxkbl8kNWhVzioB7HFnn2nZ7MDnfd58K
CQw9kicnllXIrDGK5O6gYNnt3mQ8vLhxZuRKtj4BXTiKqVhy6cwsAsrn1BPe8fhz
/SSAoT2vFgwvdm1MLACLHoTawX47d6zRS7D02nTIJYZowWAENVkPuG1jKqIKAA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/artifact/soap" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/soap"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/post"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/slo/artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/soap"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/post"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/nim/artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/post" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/post-simplesign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml2/ecp" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml/post" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://thalamoss-data.ics.muni.cz/auth/shibboleth.sso/saml/artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">THALAMOSS Data Management Platform</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Management platform for THALAMOSS project on personalized therapy of b-thalassaemia</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:mace:dir:attribute-def:eduPersonAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:mace:dir:attribute-def:displayName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Computer Science, Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ustav vypocetni techniky, Masarykova univerzita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Computer Science, Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Ustav vypocetni techniky, Masarykova univerzita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ics.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Holub</md:SurName>
      <md:EmailAddress>mailto:holub@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondrej</md:GivenName>
      <md:SurName>Vojtisek</md:SurName>
      <md:EmailAddress>mailto:325192@mail.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://theses.cz/shibboleth/">
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://theses.cz/Shibboleth.sso/DS" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Theses.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Theses.cz – Vysokoškolské kvalifikační práce</mdui:DisplayName>
          <mdui:Description xml:lang="en">Theses.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Theses.cz – Vysokoškolské kvalifikační práce</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://theses.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://theses.cz/</mdui:InformationURL>
          <mdui:Logo height="128" width="128">https://theses.cz/pics/design/th/m/logotyp.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://theses.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>theses.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=theses.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDATCCAemgAwIBAgIJAKXs0bzxFhYCMA0GCSqGSIb3DQEBBQUAMBQxEjAQBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://theses.cz/shibboleth/</ds:KeyName>
          <ds:KeyName>theses.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=theses.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDATCCAemgAwIBAgIJAKXs0bzxFhYCMA0GCSqGSIb3DQEBBQUAMBQxEjAQBgNV
BAMTCXRoZXNlcy5jejAeFw0xOTA5MzAxMzI1MzhaFw0yOTA5MjcxMzI1MzhaMBQx
EjAQBgNVBAMTCXRoZXNlcy5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
ggEBANuIjoZZAahSFu+eQvbZKT6zNhnwM53juxhRFPl0/x+am8AjHREBiWcO0h3V
zt8kP7Tjo20z0x5nEMeGxfVBvpfuMl7yDCTW41y7HLdSr2ngoGG0+u2SCbgt26zB
8i5rAmQLugkiaaWmtzuV88f351mKoH3nBdCKyRX+EpWjPq8ggl51k3qB6FYPJqib
doB+LxtbDI6D551E240juUq1xmsR08tCBtjVdU4Fb78Ze1kr1TVF+X0/T6eFZ0Zi
EE/1xRgI3fUStJzNankqJp80uUeB3fQ/zCqKoxp5dFNTdimbYAUnRy8hL+gQ2c5p
jttDrrwt9QZ8wiYwRwTX6eQ1LPcCAwEAAaNWMFQwMwYDVR0RBCwwKoIJdGhlc2Vz
LmN6hh1odHRwczovL3RoZXNlcy5jei9zaGliYm9sZXRoLzAdBgNVHQ4EFgQUSoAz
+h6gl6QbRIDYPi/uVQXGM+UwDQYJKoZIhvcNAQEFBQADggEBAEahRhcV8aSJZF5f
siP7L8a2WApr7lJOX0c/NbzFrdncttjY/8VfC5NsKoPTtljMigpCbNSeSZXKT7BL
mjJRKjZgCDuUWjjJ/JZusGIa2FKfx9ukc1sxNmV+7T3VAKsZOiQ+7Z/qx4SPxHTm
+ClUsez6OlERE/n/bNXm9dtSxSTUNmK2XzKi5qMJA30lEczmgyQovB0bZhShFxAh
QUx1wikOBIjE2m/WXywcPdAclDhS2M694CqtbpVHZJ0BPl+H7XMo/9NDpUnWO9IQ
ZMOgIhg4ZT0KlIbqVHqsZtDwVuKE+ZYSE1V/f5ZJ9OLWqZGaNW+t+oArKcAIq4zO
V9mPSzY=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://theses.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://theses.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://theses.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://theses.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://theses.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://theses.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://theses.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://theses.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://theses.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://theses.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://theses.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://theses.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://theses.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://theses.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://theses.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Attribute Viewer</md:ServiceName>
        <md:ServiceName xml:lang="cs">Prohlížeč atributů</md:ServiceName>
        <md:ServiceDescription xml:lang="en">A service displaying attributes released by your Identity Provider.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Služba zobrazující atributy vydané vaším poskytovatelem identit.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="unstructuredName" Name="urn:oid:1.2.840.113549.1.9.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Theses.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Theses.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Theses.cz – Vysokoškolské kvalifikační práce</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Theses.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://theses.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://theses.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Stančík</md:SurName>
      <md:EmailAddress>mailto:theses@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tom.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">FTAS, G3</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">FTAS, G3</mdui:DisplayName>
          <mdui:Description xml:lang="en">FTAS, G3 - monitoring systems test</mdui:Description>
          <mdui:Description xml:lang="cs">FTAS, G3 - testovani monitorovacich systemu</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://tom.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://tom.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>tom.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=tom.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUSbcBvy0rppi/amRTeEhjgQzj5EkwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tom.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">FTAS, G3</md:ServiceName>
        <md:ServiceName xml:lang="cs">FTAS, G3</md:ServiceName>
        <md:ServiceDescription xml:lang="en">FTAS, G3 - monitoring systems test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">FTAS, G3 - testovani monitorovacich systemu</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="persistent-id" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://tom2.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom2.cesnet.cz/Shibboleth.sso/WAYF" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">G3 system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">G3 system</mdui:DisplayName>
          <mdui:Description xml:lang="en">G3 system - monitoring site e-infrastruktury</mdui:Description>
          <mdui:Description xml:lang="cs">G3 system - e-infrastrukture network monitoring</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cesnet.cz/?lang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://tom2.cesnet.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tom2.cesnet.cz/Shibboleth.sso/Login" index="2"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://tom2.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>tom2.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=tom2.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEHzCCAoegAwIBAgIUEJmxfXs1ad4YjnmkADzyr8y0ayEwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAxMOdG9tMi5jZXNuZXQuY3owHhcNMTkwNjA3MTAwNDQ2WhcN
MjkwNjA0MTAwNDQ2WjAZMRcwFQYDVQQDEw50b20yLmNlc25ldC5jejCCAaIwDQYJ
KoZIhvcNAQEBBQADggGPADCCAYoCggGBANTiYYYpUdbdM6MGyMUwelEAlyc3XZDg
nh50qVTnmY13tSA6xy87zUtqe2HMzrwaXeTcErVIqLMj6HNaadOXveVJ/rN97Y1/
nkjUCyu1oogJhgKHG+qqEOswt6X5/nsOk1VhNFNC2QTcoHLZwqShTNhQTIiZFYuL
JRfvC+5esi2ZkS/J/uOVAf/ISeTwnUPSqrS+TCALWDcdAz9I1sHwZtJKdT9NxOzE
p3uFhTqZhEBiNoyaJxy7E/QxmFpq/F5J3KSpfAsbZlRKvvPOa2mVCjTI+uA9NFQ+
8kuWuJ5cjDcH+EKwtBQ7QRKXiqVXx/Kx6jitMCft4GLSakDdQudpjIni8RHm/dYw
D2FelRjZsr+wzLkrGORhCECIFv03TBv+opgCba4Wms26LsbGjLRYfxlcbn3QFze1
PcZGmRACC47qZib+H/tQwM1hGVrOZRXl66tuczDrZh9dpYYDDhn2wAgCxPWxOEV0
nwXUtxRK1SlhvIo9YdL/xmVW0z+XT/6pKwIDAQABo18wXTA8BgNVHREENTAzgg50
b20yLmNlc25ldC5jeoYhaHR0cHM6Ly90b20yLmNlc25ldC5jei9zaGliYm9sZXRo
MB0GA1UdDgQWBBQmSHlXnHDaKc+nb8jHUpy2duwwIjANBgkqhkiG9w0BAQsFAAOC
AYEAGvISdnb8xjqDziAuHf4qdWDtC2Zj4NzpuECCfSxVjUrjGBu6Yo/kPwndijmu
mdG5OpJ0qCJAHuinrkGBlHjvS4YdCVMsP/curKnyEWEencMRo5FG9Wf4dL8uUlLr
QN2lJynaAYyYCdT0a9Wc8vev5SB1tSIMa/vOxx3pD35kiJ5vkdQCLR2O13Zv2AtL
b1WqI5ruy1qBwOgYZ/97uOMQaCgY2FMVOjvDYLPhB4iFQfLVNa67oWYkliJwsrGF
8cES+Fk83ltIOq33fprl6d8EKj1oMS5we6o1U5RAKEqh42T4lF0hdiVXAn98xW6d
RDHK7+NUV+dkmFTB5HcxYBza86220nCvEh2qwHzzDaLAt6trHidbpzghdAk6wU2W
ypg0svnx2MZLpxfuO2J6xdRkV5K0qocBjH/rODeIAB9EQ/jcw93d7G3LOSQFNvb3
NE/u6x1Be5NpC5wud27Tkry/TkceMC8UGm7cKfC9LMu8Ak7J6pperHvpBMsZ34iU
h5T5</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom2.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom2.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tom2.cesnet.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cesnet.cz/?lang=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tom</md:GivenName>
      <md:SurName>Kosnar</md:SurName>
      <md:EmailAddress>mailto:kosnar@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ufal-point.mff.cuni.cz/shibboleth/eduid/sp">
    <md:Extensions>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
          <saml:AttributeValue>http://eduid.cz/uri/sp-group/clarin</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">LINDAT/CLARIAH-CZ services</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Repozitář a služby LINDAT/CLARIAH-CZ</mdui:DisplayName>
          <mdui:Description xml:lang="en">LINDAT/CLARIAH-CZ digital repository and services focused on language research infrastructure</mdui:Description>
          <mdui:Description xml:lang="cs">Repozitář a služby projektu LINDAT/CLARIAH-CZ zaměřené na podporu výzkumu jazyka</mdui:Description>
          <mdui:InformationURL xml:lang="en">http://ufal.mff.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">http://ufal.mff.cuni.cz/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://lindat.mff.cuni.cz/privacypolicy.html</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://lindat.mff.cuni.cz/zoou.html</mdui:PrivacyStatementURL>
          <mdui:Logo height="29" width="29">https://lindat.mff.cuni.cz/favicon.ico</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Active</ds:KeyName>
          <ds:KeyName>https://ufal-point.mff.cuni.cz/shibboleth/eduid/sp</ds:KeyName>
          <ds:KeyName>lindat.cz</ds:KeyName>
          <ds:KeyName>lindat.mff.cuni.cz</ds:KeyName>
          <ds:KeyName>ufal-point.mff.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=lindat.mff.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEVjCCAr6gAwIBAgIJAOdH/SNVQUWDMA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lindat.mff.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">LINDAT/CLARIAH-CZ digital repository and services</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Repository and services of LINDAT/CLARIAH-CZ project at Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:mace:dir:attribute-def:eduPersonScopedAffiliation" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague, Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav formální a aplikované lingvistiky, Matematicko-fyzikální fakulta, Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Institute of Formal and Applied Linguistics, Faculty of Mathematics and Physics, Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚFAL MFF UK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ufal.mff.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ufal.mff.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Straňák</md:SurName>
      <md:EmailAddress>mailto:stranak@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="support">
      <md:GivenName>Authentication Support</md:GivenName>
      <md:EmailAddress>mailto:lindat-technical@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="administrative">
      <md:GivenName>Administrative Support</md:GivenName>
      <md:EmailAddress>mailto:lindat-technical@ufal.mff.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://uzivatel.sso.vsb.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>as1.wps</ds:KeyName>
          <ds:KeyName>https://as.wps.vsb.cz/shibboleth</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=as1.wps</ds:X509SubjectName>
            <ds:X509Certificate>MIIC/jCCAeagAwIBAgIJAJrmD73gTFVgMA0GCSqGSIb3DQEBBQUAMBIxEDAOBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://as.wps.vsb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/Artifact" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML2/ECP" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uzivatel.sso.vsb.cz/Shibboleth.sso/SAML/Artifact" index="7"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">VSB - Technical University of Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola báňská - Technická univerzita Ostrava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">VSB - Technical University of Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">VŠB - Technická univerzita Ostrava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.vsb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://en.vsb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Abrahamczik</md:SurName>
      <md:EmailAddress>petr.abrahamczik@vsb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verify.studentbeans.com/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verify.studentbeans.com/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://verify.studentbeans.com/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>verify.studentbeans.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>emailAddress=developers@thebeansgroup.com,CN=verify.studentbeans.com,O=The Beans Group Ltd,L=London,ST=London,C=UK</ds:X509SubjectName>
            <ds:X509Certificate>MIIEODCCAyCgAwIBAgIJANJg6RwX4lGaMA0GCSqGSIb3DQEBBQUAMIGcMQswCQYD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verify.studentbeans.com/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verify.studentbeans.com/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://verify.studentbeans.com/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">The Beans Group</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Beans Group</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">The Beans Group</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.thebeansgroup.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.thebeansgroup.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>William</md:GivenName>
      <md:SurName>Harris</md:SurName>
      <md:EmailAddress>william@thebeansgroup.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verso3-pp.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso test</mdui:Description>
          <mdui:Description xml:lang="cs">Verso test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility-test.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility-test.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAK8AUVuFqsJ8MA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV
BAMTFm1vYmlsaXR5LXRlc3QudnNjaHQuY3owHhcNMTgxMDA1MTAwODQ1WhcNMjgx
MDAyMTAwODQ1WjAhMR8wHQYDVQQDExZtb2JpbGl0eS10ZXN0LnZzY2h0LmN6MIIB
ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAqjPkULrjmm+qeW8SH9fnfE1R
2NW4zMTzIKG2blKPmBCknb+gX39hYeM3h/9RU0s0iL5+OleDvrdqpxe72YNK7cbW
TNSLy+z7CEV9AZmxYDk8XH80lcuLFv9Vv/vYZV7g88rOUJ+0vRS8RM6wQECUm9MX
vi9j/fbKZupjYAP/72AKGnRG42oTEGNvxVtTNoBtFY8oIusv1U+YuDda+nZ2G+yz
Vh5ui8MV/E4x2SSO4b4n9AZbl9wyjQ0DyGe/McgTSEr/9rbC4wGqyFUINqBNxH38
3wlnuyu1mpKQyfO6H5sWUHK3j76hwL7ha4KrRYH8IcDj/lVrS5YBcUlt0D04REZa
EA4PTkzHTjRIoKozc7MC8gl4G1JI+Xtzvz2fYSU5X1zsVz3kLaw9o/uP9RNV5Soc
9HrsRrCUkhp0/ze8/KKDeNMwa3G7JF+rAUA2YUylMvTcUhzjAATrG6vDHSLd88rV
5uCw9TFT0TeXjZVq22MKLV1O3RuekvktqQoHcpaFAgMBAAGjRDBCMCEGA1UdEQQa
MBiCFm1vYmlsaXR5LXRlc3QudnNjaHQuY3owHQYDVR0OBBYEFHm3zZzz/lVZeuxq
VXZgdx/nfvwPMA0GCSqGSIb3DQEBCwUAA4IBgQCcZsbrZsZCys1bgJqHZwxGF/ZQ
c3CLcAPyLdOUfqpR6ROcYSgWFfUt14TiaOQarD2biENL00aKTrPJvfpHVarsKfOb
Npa7hNijRIxV/4S06p1nbCFKhsOkFc+PwDmOLkm/bnBvNXsirzNx1llUR+LAD5Bp
0ZyK4J/ZyBi4wgpcthn/YW+G/RPDNOH8oXV0p06jE+TAFoCZ6/NS79BzrH21NQYU
vpHQG7jJz3MRq6o8iZYFqvJigClGDzM+T3iZdCkCXRomgTbGhFKMgkwGRpf0fN7/
cDSlL3TYrYfHuBiRbmz7cRKdLMxzi7nl0Cx9SG+PZ+g2Rg5ScETQksOZCdiioN+/
S3UMpA40RSBOZYg/sXgtJiu0HnwluJq9HRtKZDTbG9k+bGE/mxsVmPZ+hK9feJHP
BT7VDa9wfG+GCerh3TAykyFWNO6aKtP+2ByQsXaQZODmwUD9ZeAaDva+1/YOKErI
rSNx0bOiKP380QoP5tSZaVCx4HK8Dby+Ns7dnyE=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verso3-pp.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verso3-test.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso test</mdui:Description>
          <mdui:Description xml:lang="cs">Verso test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verso3-test.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://verso3-test.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility-test.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility-test.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAK8AUVuFqsJ8MA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-test.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verso3-test.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://verso3.vscht.cz">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Verso</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Verso</mdui:DisplayName>
          <mdui:Description xml:lang="en">Verso</mdui:Description>
          <mdui:Description xml:lang="cs">Verso</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vscht.cz/en/info</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vscht.cz/cs/info</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://wsso.vscht.cz/logo_vscht_40px.png</mdui:Logo>
          <mdui:Logo height="200" width="200">https://wsso.vscht.cz/logo_vscht_200px.png</mdui:Logo>
          <mdui:Logo height="400" width="400">https://wsso.vscht.cz/logo_vscht_400px.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://verso3.vscht.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>mobility.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=mobility.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAKJNZSd5rxgqMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://verso3.vscht.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Verso</md:ServiceName>
        <md:ServiceName xml:lang="cs">Verso</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Verso</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Verso</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of Chemistry and Technology Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola chemicko-technologická Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vscht.cz/?jazyk=en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vscht.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Technická</md:GivenName>
      <md:SurName>Podpora</md:SurName>
      <md:EmailAddress>mailto:helpdesk@vscht.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://video.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Video system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Video systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Video system</mdui:Description>
          <mdui:Description xml:lang="cs">Video systém</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://video.lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://video.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://video.lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://video.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUGpBULN8yt++0BLtToqjxECFLOUkwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAxMRdmlkZW8ubGZwLmN1bmkuY3owHhcNMjMwNTI5MTAxNTQy
WhcNNDgwNTIyMTAxNTQyWjAcMRowGAYDVQQDExF2aWRlby5sZnAuY3VuaS5jejCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALwcSLi0wZTpjdioQTFXcb7I
ar7AlzdbQLVMYPDh64oy+tYjbzUx8qDxtiGP7m+wrfVEmnX5OozDKJpDqKDvyN2W
O/JWAZoRBkW9KzlNBe4Avs2p2p3MDIyvhbJz5RbeBUTPUWo2dNrAkVhlOvRsdxOQ
67bnYybYs/wA/byhs7XPUBoRvj6+5UzAcaZ5wHnQZ+1Tigk8QE53Z2lAxnfg7fb+
SClLSfviHUYv0wx9kpfXRiMsyrFrIOUW+3m5cOwxwCCdPDaDxIpCh4LhzZq2y+9u
LB1eGuBlUHm6jQfHWnmhjfSzOc3p59UFlZWIaI7qGAbVva3qOgym5oFzdTfqdyS3
NASRRtMgI6JDnexD47MbezR6hTJLQ26jE6UlVxdbPbTyC+mK0uVjRLZZq342yOeF
nusc20Sq0R4sdBHLX7vlaj4vkYxaUHjCjEbxOBnV48pk8q8oGexUF4pVGHaSvu4L
/4o03JueteU6AtTQxpsR+AdGLWRHcTjXzDYophKe+QIDAQABo2UwYzBCBgNVHREE
OzA5ghF2aWRlby5sZnAuY3VuaS5jeoYkaHR0cHM6Ly92aWRlby5sZnAuY3VuaS5j
ei9zaGliYm9sZXRoMB0GA1UdDgQWBBRzxVe7kR7PHKUHUKaQYi12BM1NtjANBgkq
hkiG9w0BAQsFAAOCAYEAelQGAx0PmSa1kvFa1Lo7kIS1S61/DiklAU08Uf4BEl0K
gfmZiIfmL/Yb/A63vLL27EDUOSbcMAzmErvse5E4GxY/9R9y880KHVUmccuV+Gu6
Qo0tZzJJg2lP5R3tb3p5p9TnfRSWLtBFnJN/jAcTOOcrJQwXr9AT/is12kMz5goI
ErA9IQSshWJeSfEiBGwRhjSuUrVuHuJUzwqPxz9Ltk5DiO/tAhijIWBe/CxvP3bb
k8bHS81q1fq5JqrmM6smOnGFR0n5RHhieVIgZcvk4199pzWDCIE7uaBbOoQMx1oT
JotHdLwf7snQw7OWSA+RVCQ7Y1MrAiioycGqRx45WiarR0K7QB/SoC3mOvHPGh5c
GRZzcs9hFYucS19OV7WBhsFu6BqdipOMrs+f3Bco8BA91LS5zJ/d7eft3c9dXo19
65Hlp+HXKfVVTw452yOX/MCkXbAPPtcBGEp29faFUKOCG6nU0eGeAa4f/X0+008A
dBEHDyhiYrmYFLZEIzJM</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://video.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUBYQNI7r1fzWBm7Dl7WoIdWqQKJAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://video.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Video system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Video systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Video system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Video systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.lfp.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://video2.lfp.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Video system</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Video systém</mdui:DisplayName>
          <mdui:Description xml:lang="en">Video system</mdui:Description>
          <mdui:Description xml:lang="cs">Video systém</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://video2.lfp.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://video2.lfp.cuni.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://video2.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video2.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video2.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIUO1UuENwAKoIgKMBzeDDwzcolANQwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAxMSdmlkZW8yLmxmcC5jdW5pLmN6MCAXDTI1MDUyMDE3MjIz
NFoYDzIwNTAwNTE0MTcyMjM0WjAdMRswGQYDVQQDExJ2aWRlbzIubGZwLmN1bmku
Y3owggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDEIoYV9XrfziZ7dG9A
/CuHwjMCcj+4+HYhT3EtOXo2Ezqcdv+kaL51v2iMRHSIHryGa70ruksuzLL92MGk
IgaxotMjgBR5tLaN1f7FQSI6b4Ji5S/hrI0Jzm366JHkA7jWJzbaOLZdrWTX2eVd
F0oBDoBWReV+lZUCunBmb8OTfHNo/D6MvByjPtN2w85XQi3M/41beapFH9OLlaZe
MOt26nm8P0e5zUbzgnu9pXAxSzX9mc7YogC+VqSC5LDhKatFwuIY9UahaLl6oGkV
qbNqZGvIgtWBqA3N45pOMrPVrOUZmX2BL4DSi+iFaD2NMxrAPti+UjedVvnxqrNJ
WUjWhr0pMRB8eTdEuKYFzg1LHRaWKR/Xa6YtaVbk+v9ZyGJD44xCyk6l943r3suk
aqKA5WzipBFa36ehyt9tOi3/Wbp8X8fUmY4l0NSdiwuUeyEAFWMThrBLcGwEkBc1
ka9s1nua2PMTmMXN2Z6hPTyp9fogNzl/ZGeF69poTiK/YDMCAwEAAaNnMGUwRAYD
VR0RBD0wO4ISdmlkZW8yLmxmcC5jdW5pLmN6hiVodHRwczovL3ZpZGVvMi5sZnAu
Y3VuaS5jei9zaGliYm9sZXRoMB0GA1UdDgQWBBTFy0b2xdi2sUXrd4+IzpjBi6sL
cjANBgkqhkiG9w0BAQsFAAOCAYEAW7/g5D7OSwC2KK4mkSyXOHe/5cwQRh8GtB2N
Xtgl4QQ069SZpBcEN7Svt39BK/pMOxjIaNi0lP4pp40Phk1F415QvVltsYncc6Ms
6QbBMNhAXPaT3AJcpnYIjISoFOHCVz11uuDzCRgGjK1Iu/X1Lhvv9dESPFRv75XK
Xxzo7Spi0kblSNne71/dp8bVXjAcpnMIxn4uff9jHKxP0PxXsoZ8eERTF3Fx3NkA
Vu+3c+C4BWM9QnM4xbkmlY1EAy7mbk7cA0qlxhofftdWAuiY4ZENf0+TwpZe3cN+
DORiuox/PLAzpn6Rb9LYGRq5RYOYZ/mpFwSzyT3viZ4oe2jvpBFM2IUVkDBFZqhI
OimcfcQSdpCMyFl1yDtaJPq+XrDGT5GO+0N6q6Evtgf40Q1YxZ0tnxquUENWWG2j
R6IxQ0PD8Yuud6bOSH2yqBjskm2aRLTVYBu9pL7RG2+jUWxX34hs9uoNoy0g6mGS
o+mICgU6ATA8Devh1HsQ9Lcu3ml6</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://video2.lfp.cuni.cz/shibboleth</ds:KeyName>
          <ds:KeyName>video2.lfp.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=video2.lfp.cuni.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEMTCCApmgAwIBAgIULuXDQlxmilAm6c48yWvVW2JnG2EwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://video2.lfp.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Video system</md:ServiceName>
        <md:ServiceName xml:lang="cs">Video systém</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Video system</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Video systém</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Medicine in Pilsen, Charles University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Lékařská fakulta v Plzni, Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lfp.cuni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lpf.cuni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Navrátil</md:SurName>
      <md:EmailAddress>mailto:navratil@dante.lfp.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby-test.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TBU Elections - test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby UTB - test</mdui:DisplayName>
          <mdui:Description xml:lang="en">TBU Elections - test</mdui:Description>
          <mdui:Description xml:lang="cs">Volby UTB - test</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://volby-test.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://volby-test.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby-test.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://volby-test.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUEum1vdx1NL+zXpXUMPJboHkvkGowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga-test.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga-test.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga-test.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKDCCApCgAwIBAgIUQigpC2rlx0r8uOPOv9Sc8NIN2fMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby-test.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TBU Elections - test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby UTB - test</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TBU Elections - test</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volby UTB - test</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby-test.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Election-test</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby-test</mdui:DisplayName>
          <mdui:Description xml:lang="en">Election-test system.</mdui:Description>
          <mdui:Description xml:lang="cs">Volební testovací systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby-test.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://volby-test.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>volby-test.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=volby-test.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEKzCCApOgAwIBAgIUCvrGlhqOy86gOz189RVoKlFfI4cwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAxMRdm9sYnktdGVzdC56Y3UuY3owHhcNMjEwMzAxMTYyNjA0
WhcNMzYwMjI2MTYyNjA0WjAcMRowGAYDVQQDExF2b2xieS10ZXN0LnpjdS5jejCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAM/AaqOTCl1bAQRfDC/AxEId
pNHP7Gqok6RXU7orE6bI+jYX9/JgAtPz+9SfwFUft6Db2KtIQs9RD3vagBTagWjE
gYMtsan2oTcME64OQYlZDMCHetCj2sNFBJYLzvZ/eaWpSYHicde8mUq+1k7AxGsp
GZI5rQyWfmUnB3649vCtq2Toq+8W317vPoDCM9icgLKs0oI3sRlIIzOFVOG1O71f
35WqVpso/M+SombW7ojNLbPJD3XPJHVoFke4mhuSe/4il4GaLYfrb+w2IsX3PTgB
71uz2g2F7W3tky6hB9R3RrWX3C/GIMoP1kQhMrrXQienVAB3EiDcoReAGyP44sj2
hjO4jpFASnpK6O3wZv0xfGXpBVbyYzX0Rd6psosTrerwXLxAb0pioHwzvOQvQ7RF
E3jtRRZ2HNzBFH0Ozo1qMKGvNKhUku/91PLgfsX+vLR/PcisrcJNhVKIn0QBTrzf
VVfGypNmgoGNZLyAVnn/b64WAiVot4vQ69Q6+K2p/QIDAQABo2UwYzBCBgNVHREE
OzA5ghF2b2xieS10ZXN0LnpjdS5jeoYkaHR0cHM6Ly92b2xieS10ZXN0LnpjdS5j
ei9zaGliYm9sZXRoMB0GA1UdDgQWBBTswhahUR97dsiqmPRT+868wIL63zANBgkq
hkiG9w0BAQsFAAOCAYEAwIhFxoueIfG7T5ic+O73ogNfMyYTkuFL0qFNnvEHmVRV
jMBNWUrYhL0g0VEXoYb/2FCzYj5N2+CJzd7uzd66vxTRsqNAL83ZF4ab+NAuz2Ng
7RSYqmfyPKgGGNVZdGmTf7N0VCMRUUwa5pqaC3ejwVQ0UySu0QwblJVJC1pgZvpE
7eZ5gO046A05kRgdFms4NC0lIbVCaJhMho3p+kDhxnliIxUtxiEBJQbvSrqk08ac
wW7fotuFjyEo4nAwGwpv5wxK6TAQTO4LX0IFs1yT4UUSgWgyIj6AY7HQiL8N2JLN
hL9KNSgM/Zg3QjrDHNO7kmhFW4UD2vv4DWoMJPmlcjFbAnoxNzWSAg2vG0kT9FnJ
IJPm8lJhddInXtVGMUKYv1S6XkOxd8wQdVb9pavUmUkZn8gbkQ7GVMhU0ilufgox
9CTtAqbuOEvsRK4yCITpAk7TFJm2CKKMchM7mESbnCXydONNrPczIJuFarGuR1cg
FvB5CArg0DAscACHX3QT</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby-test.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Election-test</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby-tes</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Election-test system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volební-test systém.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby.utb.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">TBU Elections</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby UTB</mdui:DisplayName>
          <mdui:Description xml:lang="en">TBU Elections</mdui:Description>
          <mdui:Description xml:lang="cs">Volby UTB</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://volby.utb.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://volby.utb.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby.utb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://volby.utb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUMQJKZThsmY6r2de0kxVu0+d10ccwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAxMKaWdhLnV0Yi5jejAgFw0yMDExMDQxNDI1MDdaGA8yMDUw
MTAyODE0MjUwN1owFTETMBEGA1UEAxMKaWdhLnV0Yi5jejCCAaIwDQYJKoZIhvcN
AQEBBQADggGPADCCAYoCggGBAMJye9tjX6YTL4OVKHOEa9LHM6If8J6jyrc0BmkC
Ieq637qIS3yJyhbrtXqgzJus4p6kgfsBgfbJXpFpSjgBQ8+VrUkghTg28KLt1xjQ
IZPsBMTwkxj+Lbaq8hfuJGumDKZM4lkYCxQOvFijklp4FKZQdetvrLmW2oQULxAl
V8BpYFzYZtP5KKdsHLE3sG4+KiHfBZup5HroqhangDe9hDNkVBWBSrwMNlyhuBwd
LnnoQkYBBgASncoxdHEbCR4qt6o0EeqSP7/AxkY3nNqaa8yiQRK3pNgF/GCQuT/t
OFRirWAlCBrd0Fsb6MClS2dJesxP64weWUMbl8nLboZM8TmRqZx1motyHazBarh+
xTjbhxYj+/F+w32IGUz0Ou8WHZVdjCaAdlR2v0ptxEtWY/5M0cg7wHCvOYTjhguM
cPjUCUH2oiW7vA8v7V7esTeGTYS62cnHPT8NoKeU61Zes77R+8rZcATz/ldpJj1j
XTMSx8SX4qvif2KQkdgX3dEACwIDAQABo1owWDA3BgNVHREEMDAuggppZ2EudXRi
LmN6hiBodHRwczovL2lnYS51dGIuY3ovc3Avc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
FdyBq1ySNBXfDDWA/Q3fUJd2SmswDQYJKoZIhvcNAQELBQADggGBAJZs7pqFtnDv
9dvctQh6hwUYjXyD7jz1f9nHem5sCQCRMQhM+TzG+/aywunmryJQcT7yoBR7GEsU
a2yu/+BIqnAv2MEzARuRcZnkYmKe4RlWsn+dkLcMwX0QNbHMd8edl7kRfWV9MZT6
O8Ju3jXsGMaYY9UwnXzgyrfDf6bPFze2l3RAlo9+aZ9nJ+NkUWinJ91Iv5FIQzsW
wYcJK7+ZgHrIMuI/E11SrD5FdpZww19Hgc1GxBchjk0o04WJ53Uoh4sDGU3hfx7P
FHqKoAi4m1o6AeH9FPWKxzysnGhSdjBJ7RP9KQx7sVO5rkOFOeUsomDfRzOabEUy
jwsKDK1ck9EHkwEs66/Jya6gSQb/M6o/58gj3Il1Nk+8uguO/2F+Ai4u9bvJC2Er
XuxS/Ij1QlrDQNB8tQDp3DIbxcexT6lhhmbsW9H6Cu4Uxyv7HRcP2AZIUrsTkJC8
YrN/bVIxy3ewrV2pKfhQL0cc9oKUi/PPsvNnrKeljiCPbtWIucOSVA==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>https://iga.utb.cz/sp/shibboleth</ds:KeyName>
          <ds:KeyName>iga.utb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=iga.utb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFDCCAnygAwIBAgIUaGGw5HaZ0SeuKUXB9Fz4tQntf1AwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.utb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.utb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby.utb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.utb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.utb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby.utb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby.utb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby.utb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">TBU Elections</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby UTB</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TBU Elections</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volby UTB</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="UniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tomas Bata University in Zlín</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Tomáše Bati ve Zlíně</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.utb.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.utb.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Shibboleth</md:GivenName>
      <md:SurName>Administrator</md:SurName>
      <md:EmailAddress>mailto:shibboleth@utb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://volby.zcu.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Election</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Volby</mdui:DisplayName>
          <mdui:Description xml:lang="en">Election system.</mdui:Description>
          <mdui:Description xml:lang="cs">Volební systém.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://support.zcu.cz/en/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://support.zcu.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="40">https://shib.zcu.cz/icons/zcu_logo_40px.png</mdui:Logo>
          <mdui:Logo height="102" width="102">https://shib.zcu.cz/icons/zcu_logo.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://volby.zcu.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://volby.zcu.cz/shibboleth</ds:KeyName>
          <ds:KeyName>volby.zcu.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=volby.zcu.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEFzCCAn+gAwIBAgIUd8FOgOUKbVMzxY6KbKfRD44Vim8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.zcu.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.zcu.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://volby.zcu.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://volby.zcu.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://volby.zcu.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Election</md:ServiceName>
        <md:ServiceName xml:lang="cs">Volby</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Election system.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Volební systém.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">University of West Bohemia</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">University of West Bohemia</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Západočeská univerzita v Plzni</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.zcu.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.zcu.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Jindra</md:SurName>
      <md:EmailAddress>mailto:paja@civ.zcu.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vpn.cesnet.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">CESNET VPN portal</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">CESNET VPN portál</mdui:DisplayName>
          <mdui:Description xml:lang="en">CESNET VPN portal</mdui:Description>
          <mdui:Description xml:lang="cs">CESNET VPN portál</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://vpn.cesnet.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://vpn.cesnet.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vpn.cesnet.cz/Shibboleth.sso/Login"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vpn.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vpn.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vpn.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIUP1jkU5NS5JcKgo+3V1WP50BzwR4wDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAxMNdnBuLmNlc25ldC5jejAeFw0yMjA5MzAxMTQwMDlaFw0z
NzA5MjYxMTQwMDlaMBgxFjAUBgNVBAMTDXZwbi5jZXNuZXQuY3owggGiMA0GCSqG
SIb3DQEBAQUAA4IBjwAwggGKAoIBgQCuv6UnWRD2UeDt9jeYT93nkb0F/zL04KpF
Qz5/px5ga9rq2TBD+IsLmHN6u8EirNvcDDzPwRN6KHL1pqdUH5GdmSYOGBisuGoX
YAD8srk5Kms3xo0FqzpmiW/aGUSXp04M5Ow0R0teEXjQOOSV4hFlQ63GRIYCgddF
7p7aeFxcvok3go+Qm8IC4IjMLINDsrbNu9BSCciETrGwyMZE22s1sSwyW1Vkgzas
mxlKJJBeDxSpox9FO+tBmLJn9xwl5qCOI7+1hVw9q0VBOeoM1X0kahj+AqZzHLfp
bTjfergAAJDRhC6KWFJhIgD4H1cHZwqbixqhGHcVsyBBWOHp6kLhm8/Xy5w/P7pJ
jOnI+zxXIL1LBMhi4jWF60ApVbipxS0owoV2QMETLYKgcJfrp7m5x3FErs/21Voz
gTfFkyMU3nrtKFayvJWqdIel5r8HQw1TQijECbxcQ724rjXf+MDB6Gm8tl78XMMT
AASG92hCjZvYKQD715hsehM3r7I0Ao0CAwEAAaNdMFswOgYDVR0RBDMwMYINdnBu
LmNlc25ldC5jeoYgaHR0cHM6Ly92cG4uY2VzbmV0LmN6L3NoaWJib2xldGgwHQYD
VR0OBBYEFH7jk5PLTq0l/M4ycivXdf6Mx3B5MA0GCSqGSIb3DQEBCwUAA4IBgQAF
pPTgFBcjzH+Da6Nwj1skm1AVZIlI+/dd70HPfgLMH4dFCJGDSa+H2w3zz59nOLls
dtbiKxA6Fnhmo9H8cCM/ymIFU1OO2fl3y6z7rYgr1UFXk17WxGz0NRyLiIT6pEQl
4nSWt5eX9+psSZCqAv8JD7jXpHxLUeNkHr75hfoYp1pB3Nabt/iX34v/4o+iQw8z
qZ3kesTpyysX9rQAiSaw9oWINUSASxbp72vAQ9cm1wuN/oTU3+DdbP2tir11C2hR
2+fSpnTdWbidNNW/eEUFRpBu6VmOPcjMCt6u/N8uLe/Y1vsTJPnkmujHb5LieJX9
RPVAKoc/eScysAu46e7UswkCy8bLCtQ1zqpR8xfpYYh1LvqsESAXYlhhnIIjgfmC
4SlDjzEti+xaHagXqk6GSY5nNcFSzkJcJ0xDjuPclpOzTFVyRnksBGtGcpUUAnXa
xJnVzjRJrxdr2iCDheGqme0ZZNviMNg7KfAiENK9h4PIR/YWCaMHGQsAHgkabbk=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vpn.cesnet.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vpn.cesnet.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vpn.cesnet.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">CESNET VPN portal</md:ServiceName>
        <md:ServiceName xml:lang="cs">CESNET VPN portál</md:ServiceName>
        <md:ServiceDescription xml:lang="en">CESNET VPN portal</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">CESNET VPN portál</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="entitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ismemberof" Name="https://whoami.cesnet.cz/attribute-def/isMemberOf" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vscht.futurebooks.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">vscht.futurebooks.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">vscht.futurebooks.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://vscht.futurebooks.cz/en/1-ochrana-soukromi</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://vscht.futurebooks.cz/1-ochrana-soukromi</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://vscht.futurebooks.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://vscht.futurebooks.cz/</mdui:InformationURL>
          <mdui:Logo height="177" width="909">https://vscht.futurebooks.cz/storage/app/media/logoUSTAV%20EKON__%20MANAG_zuzene_barva.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vscht.futurebooks.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vscht.futurebooks.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vscht.futurebooks.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vscht.futurebooks.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vscht.futurebooks.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENzCCAp+gAwIBAgIUZRDRabZdrOAT5NLFqODDtBYGh0swDQYJKoZIhvcNAQEL
BQAwHzEdMBsGA1UEAxMUdnNjaHQuZnV0dXJlYm9va3MuY3owHhcNMjExMDE1MTMy
NTI0WhcNMzExMDEzMTMyNTI0WjAfMR0wGwYDVQQDExR2c2NodC5mdXR1cmVib29r
cy5jejCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAMaJpHsvalck18/F
STAdcYy2OdNDzLDe/f7t1XN8MBjzKrhDWpVU7IcTx0CHI0ppVj1pqvPtnL6M04cD
fORlNkXpszzIFPtN36gkvUdLMPL66rO4gDMNKQepwKlV2Ocoz78YMDVRhG8VQGjm
MPyLiCzLxXPDhDQIVBy191UBjsruImnMF6hcfL6BWUYRgDPba0YqZhmem+tsFJ9e
5eAO3Hu3TzVRFsu2pYs2+Nrc3vg8/ixXUuqlu/6wsjuYBsQchKWugVeIyHnyH8sf
15N6OYqx2mIs/MfxLHOMAoQdTZtan0Yrv63eqYNZDBU/0vkWX0hWChrBLtuCxfmP
ZXcII4zNNk4BdXqWf+i+aHFumT0zzE/UrVYnwx/f3AjoCt0Cf0iF1n4bHM5qrMtv
z/pTr283jTvmIyT0r5EH3rjAxCJoia3AShxbUgFfZGdb+h602Hh5nJ5yqOW9eSIN
wK0ULb2P6eQAKOnc1U0Yu6fD+uN1HM8NqbADUeXHu2C12mlwDwIDAQABo2swaTBI
BgNVHREEQTA/ghR2c2NodC5mdXR1cmVib29rcy5jeoYnaHR0cHM6Ly92c2NodC5m
dXR1cmVib29rcy5jei9zaGliYm9sZXRoMB0GA1UdDgQWBBSuDF988QDrOfsJ4sXa
ugNv5drd6TANBgkqhkiG9w0BAQsFAAOCAYEAEhNd3HzXnIg42NPsILnkNtGk5tXT
33xBrJ7rq1WwXHI0L1CAkSOo+q+qpqw07vRUvNXEsBd3k1uwP8adue7pCbpVtVXp
yW4ipCpzfm2Q3C1Nl+w0AFalq/IJQHyG789bhBIo8Xq5DsMq5iuoYWgeZRx9ZmmG
RDFvUfTN+5ynaoUXvty+Ap5Z0p3DKO8evkrGw8L41DGe4yUIkryf1CYOh5ShHY/v
ITrkoXQKGugLAI5Erqw8sS3zi21rzo0cJFsJzevvBfSt9Wx2eR94OkdvE2opMb3P
h7kv8Go5Xq1oUCTCqEAEsaDKgUDpp4Xaknv3yCBSxj8QpTlD3NBFUjh9DMhbGyEu
Q9QPMrZLgjVzBAtsoxH88kBzUBnKSMMMmiO8mpUaM5zsXkG1/AQK1LnIy/9Rz9+0
IL/EF6wqDoRnxl6A73rw0KQceBlN23jPXVrc+gQ305m1ohxim/rzSYspC9hY15Pr
+oVnnNI/HD7eke/l3TTnxx3a/Kz1PaRRvBzx</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vscht.futurebooks.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vscht.futurebooks.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vut-vsb.cz/simplesaml/module.php/saml/sp/metadata.php/portal2">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIFnDCCBISgAwIBAgIJAK+H47VEhUDZMA0GCSqGSIb3DQEBBQUAMIHjMQswCQYDVQQGEwJDWjEXMBUGA1UECBMOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcTBEJybm8xJjAkBgNVBAoTHUJybm8gVW5pdmVyc2l0eSBvZiBUZWNobm9sb2d5MTwwOgYDVQQLEzNGYWN1bHR5IG9mIEVsZWN0cmljYWwgRW5naW5lZXJpbmcgYW5kIENvbW11bmljYXRpb24xITAfBgNVBAMTGHdlc29wLnV0a28uZmVlYy52dXRici5jejEjMCEGCSqGSIb3DQEJARYUZnJvbGthQGZlZWMudnV0YnIuY3owHhcNMTYwNDI3MTEyNDExWhcNMjYwNDI3MTEyNDExWjCB4zELMAkGA1UEBhMCQ1oxFzAVBgNVBAgTDkN6ZWNoIFJlcHVibGljMQ0wCwYDVQQHEwRCcm5vMSYwJAYDVQQKEx1Ccm5vIFVuaXZlcnNpdHkgb2YgVGVjaG5vbG9neTE8MDoGA1UECxMzRmFjdWx0eSBvZiBFbGVjdHJpY2FsIEVuZ2luZWVyaW5nIGFuZCBDb21tdW5pY2F0aW9uMSEwHwYDVQQDExh3ZXNvcC51dGtvLmZlZWMudnV0YnIuY3oxIzAhBgkqhkiG9w0BCQEWFGZyb2xrYUBmZWVjLnZ1dGJyLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy4HrqRMe4nr9QWXp6F/sZEqPw3jAVPe+R7HXgG0nhusCN9S7MqMIAFjaiipwdLkwcPvXnozrZNxhN+o0zHuc7Rgb6jTp0FavkUdGyzo9QFoJ2K7dXJ5Esv5VYb7BDP57Dq32C4uig6h8m7fR8IxBTy5lTCV1uO3wZ35O3oL8ev7TBX3LcQXdixK6hLEuO84sZd+AavSeGFevs9MmEeaBFiAIffRLdrNF3VPAptXyRrMMKD9BQ/2BZmbvmZfGMW1p1YpFz2FM2TxbxZLR0ORLyWBx1Cz5YFlU2X1wnvsZquAoTQqHsDGvxCAT3mT7cL24dEPdy9ibeMBwYRtk3ViccwIDAQABo4IBTzCCAUswHQYDVR0OBBYEFPVQawlZ6Do9QwwYsE5vMw3JET1uMIIBGgYDVR0jBIIBETCCAQ2AFPVQawlZ6Do9QwwYsE5vMw3JET1uoYHppIHmMIHjMQswCQYDVQQGEwJDWjEXMBUGA1UECBMOQ3plY2ggUmVwdWJsaWMxDTALBgNVBAcTBEJybm8xJjAkBgNVBAoTHUJybm8gVW5pdmVyc2l0eSBvZiBUZWNobm9sb2d5MTwwOgYDVQQLEzNGYWN1bHR5IG9mIEVsZWN0cmljYWwgRW5naW5lZXJpbmcgYW5kIENvbW11bmljYXRpb24xITAfBgNVBAMTGHdlc29wLnV0a28uZmVlYy52dXRici5jejEjMCEGCSqGSIb3DQEJARYUZnJvbGthQGZlZWMudnV0YnIuY3qCCQCvh+O1RIVA2TAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQCUCWsU54vl6pHWw62a6LrjaZ0NDz4/XytAwtBWhjnqMY4aD8NDPd0uZoZlAwG7p6Ptd2YIf5Z9X2TAPU52KW7F/Jfs8KhY7VspoKXcloNaI4H4FCjFMBBP9RNixFHsJSizB/OovCJKL4yoHSRUFRBKtd4JRWgMj/7Qy6KQK1lfSbwvkRJhyZWOKkLJep4EjN+vJRjvlC+6Rm2RODaIVUev6gprEPgmr0oauWpe0YVS7vJlSBfzKxkFgRi0L5a4d0AhDNTikHaKNFabHvYhUnvZOvTkxTWGDkmH0wX0xXaPdpzSlLh/7VqnjZyx5U0WPFr4KvYNECZ5ix+591EjKYg7</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-logout.php/portal2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal2" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal2" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal2" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml1-acs.php/portal2/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:profiles:holder-of-key:SSO:browser" Location="https://vut-vsb.cz/simplesaml/module.php/saml/sp/saml2-acs.php/portal2" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Brno University of Technology</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoké učení technické v Brně</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Brno University of Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.vutbr.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.vutbr.cz/en</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Kopidol</md:SurName>
      <md:EmailAddress>kopidol@matesova.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vydavatelstvi.vscht.cz/shibboleth">
    <md:Extensions>
      <EntityAttributes xmlns="urn:oasis:names:tc:SAML:metadata:attribute">
        <Attribute xmlns="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</AttributeValue>
        </Attribute>
      </EntityAttributes>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">vydavatelstvi.vscht.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">vydavatelstvi.vscht.cz</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronická knihovna Vydavatelství VŠCHT Praha. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</mdui:Description>
          <mdui:Description xml:lang="en">Electronic library of Vydavatelství VŠCHT Praha. Allows viewing interactive teaching materials in the Futurebooks system.</mdui:Description>
          <mdui:PrivacyStatementURL xml:lang="en">https://vydavatelstvi.vscht.cz/public-info/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://vydavatelstvi.vscht.cz/public-info/zasady-ochrany-osobnich-informaci</mdui:PrivacyStatementURL>
          <mdui:InformationURL xml:lang="en">https://vydavatelstvi.vscht.cz/#about</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://vydavatelstvi.vscht.cz/#about</mdui:InformationURL>
          <mdui:Logo height="130" width="813">https://vydavatelstvi.vscht.cz/storage/app/media/vydavatelstvi_logo.jpeg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vydavatelstvi.vscht.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vydavatelstvi.vscht.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vydavatelstvi.vscht.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEPzCCAqegAwIBAgIUa7hKhaYBUviE/fz++n8LgFk3EJAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vydavatelstvi.vscht.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceName xml:lang="cs">Softresource, spol. s r.o.</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Elektronická knihovna Vydavatelství VŠCHT Praha. Umožňuje prohlížení interaktivních výukových materiálů v systému Futurebooks.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Electronic library of Vydavatelství VŠCHT Praha. Allows viewing interactive teaching materials in the Futurebooks system.</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Softresource, spol. s r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Organizace</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Organizace</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://softresource.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://softresource.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Tomáš</md:GivenName>
      <md:SurName>Stejskal</md:SurName>
      <md:EmailAddress>mailto:stejskal@softresource.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://webcentrum-dev.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>bydleni.muni.cz</ds:KeyName>
          <ds:KeyName>ckr.muni.cz</ds:KeyName>
          <ds:KeyName>crc.muni.cz</ds:KeyName>
          <ds:KeyName>econ.muni.cz</ds:KeyName>
          <ds:KeyName>ics.muni.cz</ds:KeyName>
          <ds:KeyName>jobchallenge.muni.cz</ds:KeyName>
          <ds:KeyName>kariera.muni.cz</ds:KeyName>
          <ds:KeyName>poradenstvi.muni.cz</ds:KeyName>
          <ds:KeyName>webcentrum-dev.muni.cz</ds:KeyName>
          <ds:KeyName>webcentrum.muni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=webcentrum.muni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIFDjCCA/agAwIBAgIQH5/RzYjHO3ohnh231q9wuDANBgkqhkiG9w0BAQUFADA2
MQswCQYDVQQGEwJOTDEPMA0GA1UEChMGVEVSRU5BMRYwFAYDVQQDEw1URVJFTkEg
U1NMIENBMB4XDTEzMDkyMzAwMDAwMFoXDTE2MDkyMjIzNTk1OVowQDEhMB8GA1UE
CxMYRG9tYWluIENvbnRyb2wgVmFsaWRhdGVkMRswGQYDVQQDExJ3ZWJjZW50cnVt
Lm11bmkuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC5kkyDi/w2
l4k9TOruUErgkNSYVAh5WjBr1cJKajjbrzXrxhtr+ndn9jDbD1XwPiyp0YuXVxUO
E/wJXkqqqKUWjpf++ljw2wsE0cNy1q6MnEy/4+7OW0LOzeBjUKk5QRpcnk65ON2y
PBSaf/rcNkh3WC9RWelm0mF7bdvwmDNbH8zX1PohEuz+u37OgH5b6nLszEalabpD
Q1QfuBo6s7IsakG8AfZvbxCeFtORVtvFtfD96930Wn0x8XMKFH/hnokbmux8glGW
aGOFluv9oWFSX1h2GnJzjTRMJZIwiywdGr+L9dSgFQCUZ1K/0XpLLsK+G5+Nkol+
i0Wl77f2DHq5AgMBAAGjggIMMIICCDAfBgNVHSMEGDAWgBQMvZNoDPPeq6NJays3
V0fqkOO57TAdBgNVHQ4EFgQUmgm14kh8tD4k9RJ1wxca3s2j8AYwDgYDVR0PAQH/
BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUF
BwMCMCIGA1UdIAQbMBkwDQYLKwYBBAGyMQECAh0wCAYGZ4EMAQIBMDoGA1UdHwQz
MDEwL6AtoCuGKWh0dHA6Ly9jcmwudGNzLnRlcmVuYS5vcmcvVEVSRU5BU1NMQ0Eu
Y3JsMG0GCCsGAQUFBwEBBGEwXzA1BggrBgEFBQcwAoYpaHR0cDovL2NydC50Y3Mu
dGVyZW5hLm9yZy9URVJFTkFTU0xDQS5jcnQwJgYIKwYBBQUHMAGGGmh0dHA6Ly9v
Y3NwLnRjcy50ZXJlbmEub3JnMIG5BgNVHREEgbEwga6CEndlYmNlbnRydW0ubXVu
aS5jeoIPYnlkbGVuaS5tdW5pLmN6ggtja3IubXVuaS5jeoILY3JjLm11bmkuY3qC
DGVjb24ubXVuaS5jeoILaWNzLm11bmkuY3qCFGpvYmNoYWxsZW5nZS5tdW5pLmN6
gg9rYXJpZXJhLm11bmkuY3qCE3BvcmFkZW5zdHZpLm11bmkuY3qCFndlYmNlbnRy
dW0tZGV2Lm11bmkuY3owDQYJKoZIhvcNAQEFBQADggEBADA6Pfde6QOKHtWCsBUU
64MvCYUoeaC+K6NfBdEyv7yxzqIbnnJl3syujU342iLfmqkoN34WXKMVduVCGSZm
UTr6PAhaJELLQtQw+IW02lYU24fVZglqR6cK6z93XoS1f8goez3HTUj9flhfgZ5r
1dUvcSQkGCskWX5hMD8JHM/oW86d5NP7k7JCk82hG7nr5dFqlBK/WM/o4zYwzO9F
GdbzqVTSZGkH13ZGTeaymYm0C43C6GqbT6lW80wiCpu27tIcqP6K8CAnTcw11Pkf
YDx+ur2SV2Kwvir6W/LJilUJRz7i3D+/X2JfMNNJBHbSNc70hd8asKqpfoy3cynP
3YM=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum-dev.muni.cz:16065/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum-dev.muni.cz:16067/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum-dev.muni.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ics.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Budík</md:SurName>
      <md:EmailAddress>web@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" cacheDuration="PT1H" entityID="https://webcentrum.muni.cz/">
    <SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">WebCentrum</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">WebCentrum</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Služba pro tvorbu webů Masarykovy univerzity</mdui:Description>
          <mdui:Description xml:lang="en">Masaryk University web content management service</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://webcentrum.muni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://webcentrum.muni.cz/en</mdui:InformationURL>
        </mdui:UIInfo>
      </Extensions>
      <KeyDescriptor>
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.jobch.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jobch.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webcentrum.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test2.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test2.muni.cz/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://research.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://research.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courses.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://courses.alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alliance4life.com/AuthServices/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alliance4life.com/AuthServices/Logout"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jobch.cz/AuthServices/Acs" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.jobch.cz/AuthServices/Acs" index="1" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="2" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="3" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="4" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum.muni.cz/AuthServices/Acs" index="5" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz/AuthServices/Acs" index="6" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz/AuthServices/Acs" index="7" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Acs" index="8" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8043/AuthServices/Acs" index="9" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Acs" index="10" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8045/AuthServices/Acs" index="11" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Acs" index="12" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8046/AuthServices/Acs" index="13" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Acs" index="14" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8061/AuthServices/Acs" index="15" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Acs" index="16" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8065/AuthServices/Acs" index="17" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Acs" index="18" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8067/AuthServices/Acs" index="19" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Acs" index="20" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8069/AuthServices/Acs" index="21" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Acs" index="22" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-dev.muni.cz:8070/AuthServices/Acs" index="23" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test.muni.cz/AuthServices/Acs" index="24" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test.muni.cz/AuthServices/Acs" index="25" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum-test2.muni.cz/AuthServices/Acs" index="26" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum-test2.muni.cz/AuthServices/Acs" index="27" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://research.alliance4life.com/AuthServices/Acs" index="28" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://research.alliance4life.com/AuthServices/Acs" index="29" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courses.alliance4life.com/AuthServices/Acs" index="30" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://courses.alliance4life.com/AuthServices/Acs" index="31" isDefault="false"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alliance4life.com/AuthServices/Acs" index="32" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alliance4life.com/AuthServices/Acs" index="33" isDefault="false"/>
      <AttributeConsumingService index="0">
        <ServiceName xml:lang="en">WebCentrum</ServiceName>
        <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="fullName" Name=" urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Masaryk University, Institute of Computer Science</OrganizationName>
      <OrganizationName xml:lang="cs">Masarykova univerzita, Ústav výpočetní techniky</OrganizationName>
      <OrganizationDisplayName xml:lang="en">Masaryk University, Institute of Computer Science</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">Masarykova univerzita, Ústav výpočetní techniky</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://ics.muni.cz/en</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://ics.muni.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Pavel</GivenName>
      <SurName>Budík</SurName>
      <EmailAddress>mailto:web@ics.muni.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://webcentrum2.muni.cz/sp/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">WebCentrum2</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">WebCentrum2</mdui:DisplayName>
          <mdui:Description xml:lang="en">CMS login and login for services bydleni.muni.cz and bydleni.slu.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Přihlašování do redakčního systému a služeb bydleni.muni.cz a bydleni.slu.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://webcentrum.muni.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://webcentrum.muni.cz/</mdui:InformationURL>
          <mdui:Logo height="44" width="128">https://webcentrum2.muni.cz/css/webcentrum.svg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://webcentrum2.muni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webcentrum2.muni.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>Kentor</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Kentor,OU=UVT,O=MU,L=CZ,ST=CZ,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDezCCAmOgAwIBAgIJAPOAEFWtO4A8MA0GCSqGSIb3DQEBCwUAMFMxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum2.muni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bydleni.muni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/Artifact" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML2/ECP" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bydleni.slu.cz/Shibboleth.sso/SAML/Artifact" index="12"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/POST" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/Artifact" index="15"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML2/ECP" index="16"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML/POST" index="17"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcentrum2.muni.cz/Shibboleth.sso/SAML/Artifact" index="18"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University, Institute of Computer Science</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova Univerzita, Ústav výpočetní techniky</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://ics.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://ics.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Budík</md:SurName>
      <md:EmailAddress>mailto:dis-web@ics.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://webhosting.vse.cz/shibboleth/eduid">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">webhosting.vse.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">webhosting.vse.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Webhosting server of Prague University of Economics and Business</mdui:Description>
          <mdui:Description xml:lang="cs">Webhostingový server Vysoké školy ekonomické v Praze</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vse.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vse.cz/english/</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.vse.cz/english/about-vse/information-and-regulations/gdpr/</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.vse.cz/informace-o-vse/informace-a-predpisy/gdpr/</mdui:PrivacyStatementURL>
          <mdui:Logo height="1772" width="1772">https://pr.vse.cz/wp-content/uploads/page/58/VSE_logo_CZ_circle_blue.jpg</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://akvs.cz/eduid/Shibboleth.sso/Login" index="1"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.akvs.cz/eduid/Shibboleth.sso/Login" index="2"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://akvs.vse.cz/eduid/Shibboleth.sso/Login" index="3"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vykazy-akvs.vse.cz/eduid/Shibboleth.sso/Login" index="4"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vykazy.akvs.cz/eduid/Shibboleth.sso/Login" index="5"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/Login" index="6"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>webhosting.vse.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=webhosting.vse.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIC+jCCAeKgAwIBAgIJAPEjqrHapoNlMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV
BAMTEXdlYmhvc3RpbmcudnNlLmN6MB4XDTEzMDMyMzEwMjUxM1oXDTIzMDMyMTEw
MjUxM1owHDEaMBgGA1UEAxMRd2ViaG9zdGluZy52c2UuY3owggEiMA0GCSqGSIb3
DQEBAQUAA4IBDwAwggEKAoIBAQDUjtG8A74sZ8WJf7Zaz/BbBig4pMck7XsC2Ltm
p8HosdBRp0JtP29CqpW8rXOcGeIPKWHwMeVs6934LJLjKkubUBMvto8LeQjcdRHP
Ny4XBZSq0SllghNaao06yXhGgChqhDSG251fhzg75ZwG+hDXz5WTnFMwKHPKCgGP
JHbrVci/RrCyBrvDJTs4J8h9W8PszKIE/hzIj7Y/duTMmEDIwFHVoIZ4lsrg2od3
C5c97GV3zCCmh2EQ613psdRaFiP87yTSWW1Hu/TN0ukNJUSzVL45ropSfag41OJc
DrQ0codYvvoWPUKwIEuDPk1iTHIGKF6I+k/Be2PJ9XRvv0StAgMBAAGjPzA9MBwG
A1UdEQQVMBOCEXdlYmhvc3RpbmcudnNlLmN6MB0GA1UdDgQWBBSLvdBg1/E7lidR
bawEArknfUy4+jANBgkqhkiG9w0BAQUFAAOCAQEAgGc7XbrieG/QjhQ8MY1VZn3R
Q73YissT1bUxfva0BQ39ccjEFM1OJuPnsRZWjn9rFXUm30nnfTZzrDgSv5IxwCWr
kKF+uY2pRMojAcprpCuDdPc5TZPsA59OiMWZU7k6vDttp/TqGVog4ast9bhPXD4u
ET+se2RNdhGapsIsRzAFKdV18acs8LzWs6OHa+glQHJVbfsDiRM4Pd9hryUUEzMx
jPP85xm69m1JZz/UlcnYaFB2/wncZDFQnuedYEDBZOLVtEHr+c6rl8ZTURzI4KIS
suPM004dSMdsxHuQPGAPyo4wIZPfnRtfYJ0db5xMQb2KTbxcvcVlwxQfRnDsOQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://akvs.cz/eduid/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://akvs.vse.cz/eduid/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.akvs.cz/eduid/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vykazy.akvs.cz/eduid/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vykazy-akvs.vse.cz/eduid/Shibboleth.sso/SAML2/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/POST" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML/Artifact" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webhosting.vse.cz/eduid/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">webhosting.vse.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">webhosting.vse.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Webhosting server of Prague University of Economics and Business</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Webhostingový server Vysoké školy ekonomické v Praze</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vysoká škola ekonomická v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">University of Economics, Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vysoká škola ekonomická v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">University of Economics, Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.vse.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.vse.cz/english/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Zdeněk</md:GivenName>
      <md:SurName>Tlustý</md:SurName>
      <md:EmailAddress>mailto:sus@vse.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://wikisofia.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://wikisofia.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wikisofia.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>adedit.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>ffmisc.praha3.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>fronta.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>pma3.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>praha3.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>rozvrhy.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>wikisofia.cz</ds:KeyName>
          <ds:KeyName>wikisofia.ff.cuni.cz</ds:KeyName>
          <ds:KeyName>www.wikisofia.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=wikisofia.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIFCDCCA/CgAwIBAgIQOuzhbBrml/accdy9tba+QTANBgkqhkiG9w0BAQUFADA2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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wikisofia.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wikisofia.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wikisofia.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wikisofia.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wikisofia.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wikisofia.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wikisofia.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wikisofia.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajic</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.anlupa.cz/">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Anlupa.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Anlupa.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Anlupa.cz enables to easily and automatically search for grants and tenders.</mdui:Description>
          <mdui:Description xml:lang="cs">Anlupa.cz umožňuje snadné automatické vyhledávání a sledování výzev na projekty výzkumu, experimentálního vývoje a inovací vyhlašovaných národními a zahraničními poskytovateli grantů.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.anlupa.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.anlupa.cz/</mdui:InformationURL>
          <mdui:Logo height="531" width="413">https://www.anlupa.cz/assets/logo-anlupa-b2779ddbcb416bc438a76b01a8c956a88b47248c6d6e9bea4670e298f222e5ec.jpg</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.anlupa.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.anlupa.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.anlupa.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.anlupa.cz,O=Anlupa.cz,L=Praha,ST=Czech Republic,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDlzCCAn+gAwIBAgIJAKKU2Hj3YkIiMA0GCSqGSIb3DQEBCwUAMGIxCzAJBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.anlupa.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.anlupa.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.anlupa.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.anlupa.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.anlupa.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Anlupa.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Anlupa.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Přístup k aplikaci.</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Application access..</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="uniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">https://www.anlupa.cz/</md:ServiceName>
        <md:RequestedAttribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="1"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Anlupa.cz</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Anlupa.cz</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Anlupa.cz</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Anlupa.cz</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.anlupa.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.anlupa.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lubomír</md:GivenName>
      <md:SurName>Jiřišta</md:SurName>
      <md:EmailAddress>mailto:lubomir.jirista@mamereseni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <EntityDescriptor xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" cacheDuration="P1D" entityID="https://www.bookport.cz/">
    <SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">BOOKPORT</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">BOOKPORT</mdui:DisplayName>
          <mdui:Description xml:lang="en">Digital library subscription</mdui:Description>
          <mdui:Description xml:lang="cs">On-line knihovna pro každého</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.bookport.cz/o-sluzbe/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.bookport.cz/o-sluzbe/</mdui:InformationURL>
          <mdui:Logo height="48" width="300">https://www.bookport.cz/Content/images/logo.png</mdui:Logo>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.bookport.cz/AccountSaml/SignIn/" index="0" isDefault="true"/>
      </Extensions>
      <KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <KeyDescriptor use="encryption">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </KeyDescriptor>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.bookport.cz/saml2/Logout"/>
      <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.bookport.cz/saml2/Logout"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.bookport.cz/saml2/Acs" index="0" isDefault="true"/>
      <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.bookport.cz/saml2/Acs" index="1" isDefault="false"/>
      <AttributeConsumingService index="0" isDefault="true">
        <ServiceName xml:lang="en">SP</ServiceName>
        <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </AttributeConsumingService>
    </SPSSODescriptor>
    <Organization>
      <OrganizationName xml:lang="en">Grada Publishing, a.s.</OrganizationName>
      <OrganizationName xml:lang="cs">Grada Publishing, a.s.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">BOOKPORT</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">BOOKPORT</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">https://www.bookport.cz/</OrganizationURL>
      <OrganizationURL xml:lang="cs">https://www.bookport.cz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="technical">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <GivenName>Martin</GivenName>
      <SurName>Sviták</SurName>
      <EmailAddress>mailto:m.svitak@grada.cz</EmailAddress>
    </ContactPerson>
  </EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.citacepro.com/simplesaml/module.php/saml/sp/metadata.php/eduid-sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml2-logout.php/eduid-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml2-acs.php/eduid-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml1-acs.php/eduid-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml2-acs.php/eduid-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.citacepro.com/simplesaml/module.php/saml/sp/saml1-acs.php/eduid-sp/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Citace.com</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Citace.com</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Citace.com</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.citace.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.citace.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Miroslav</md:GivenName>
      <md:SurName>Gajda</md:SurName>
      <md:EmailAddress>miroslav.gajda@gmail.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Charles University Web Pages</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Webové stránky Univerzity Karlovy</mdui:DisplayName>
          <mdui:Description xml:lang="en">Charles University Web Pages</mdui:Description>
          <mdui:Description xml:lang="cs">Webové stránky Univerzity Karlovy</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.cuni.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.cuni.cz/UKEN-1.html</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.cuni.cz,OU=Univerzita Karlova,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDUzCCAjugAwIBAgIJANgOYj114fZ8MA0GCSqGSIb3DQEBCwUAMEAxCzAJBgNV
BAYTAkNaMRswGQYDVQQLDBJVbml2ZXJ6aXRhIEthcmxvdmExFDASBgNVBAMMC3d3
dy5jdW5pLmN6MB4XDTIwMDQwOTA5MjEzMVoXDTQwMDQwNDA5MjEzMVowQDELMAkG
A1UEBhMCQ1oxGzAZBgNVBAsMElVuaXZlcnppdGEgS2FybG92YTEUMBIGA1UEAwwL
d3d3LmN1bmkuY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDC5tzA
CVMwD00OX7dWkR/8ko8fTNY1CCd13jz3h7IVBhs38CrDZO1phFcxpOmfYzTfOjrj
YkLWg2auI0hKKLsg7+PJ64J2p7cuyAX+cHmhU1+FUlGehrd9VZJvogmeBofS3kMm
6wtkvLV93hYbraArkB5c2twYEXMx7f7JZZ3NgZKP2Tuz4W3909fY7PbCbKKoXwqt
0rYywvtbi6fdO5J3TjD6tEPzZuqprrJZXmscpd4D2rVs1XqZbHgK1Lg4EH4A7oBs
3h3EmlXQttTOUNPkTxjVw3Ubg3D+ykT1DusVLzG2ctEkjMIx7u1rDGSeI89EzM45
xuEGiAD6gB0sWk+vAgMBAAGjUDBOMB0GA1UdDgQWBBTRvXwxywgRjZ4IukZkhPe2
JE3I0jAfBgNVHSMEGDAWgBTRvXwxywgRjZ4IukZkhPe2JE3I0jAMBgNVHRMEBTAD
AQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBAww1mx0JvxEn7CF7Sxtb/475XcAyqgXp7
apMTPw74z0vafWcUXiccN2rs3PrA5XqM6mTi+eu83832oGLB83UfRtnOsDfeU92+
hW6+3xmfJaTIEkLwFkOWz3fypfB049wQ/2WrsBJfz6x3Fo/Tx94rTYxCYNo1Jhob
sC+L5q7BqQuP7iUR/TBoUjCWZCLynklAlAS/fWGP2BBQbBykbCFjynlPX95cpfbm
az7riI6VoOjdeWKsPfAffyRF1xxo0l/7kGUkguoZQJFkD0gFjSXSHJ0rPrvjtOuu
o3IfxM3yPG8NDwh3F/k81v5jqGoARpwB6iey++gzxbeETk71CIeG</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.cuni.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Univerzita Karlova</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Charles University</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.cuni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>mailto:krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/metadata.php/eunis">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/eunis"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/eunis" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/eunis" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/eunis" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.eunis.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/eunis/artifact" index="3"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Eunis</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Eunis</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Eunis</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Eunis</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.eunis.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Eunis</md:GivenName>
      <md:SurName>Webmasters</md:SurName>
      <md:EmailAddress>webmaster@eunis.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.felk.cvut.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Czech Technical University in Prague</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">České vysoké učení technické v Praze</mdui:DisplayName>
          <mdui:Description xml:lang="en">Password and security settings for FEE at Charles Square.</mdui:Description>
          <mdui:Description xml:lang="cs">Nastavení hesla a bezpečnosti pro areál FEL na Karlově náměstí.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.felk.cvut.cz/?setLang=en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.felk.cvut.cz/</mdui:InformationURL>
          <mdui:Logo height="40" width="53">https://idp2.civ.cvut.cz/idp/images/logo_cvut_40pix.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.felk.cvut.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.felk.cvut.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.felk.cvut.cz/shibboleth</ds:KeyName>
          <ds:KeyName>www.felk.cvut.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.felk.cvut.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDHDCCAgSgAwIBAgIJAPdon7RYL2FNMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.felk.cvut.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.felk.cvut.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.felk.cvut.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">FEL ČVUT</md:OrganizationName>
      <md:OrganizationName xml:lang="en">FEE CTU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Fakulta Elektotechnická, České vysoké učení technické v Praze</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Faculty of Electrical Engineering, Czech Technical University in Prague</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">http://www.fel.cvut.cz/cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">http://www.fel.cvut.cz/en/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Votava</md:SurName>
      <md:EmailAddress>mailto:votavon1@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Martin</md:GivenName>
      <md:SurName>Samek</md:SurName>
      <md:EmailAddress>mailto:samekma1@fel.cvut.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.helgilibrary.com/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Helgi Library</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Helgi Library</mdui:DisplayName>
          <mdui:Description xml:lang="en">Statistical data, charts and reports for over 180 countries and 500 companies in 32 sectors.</mdui:Description>
          <mdui:Description xml:lang="cs">Statistická data, grafy a reporty pro více než 180 zemí a 500 firem ve 32 sektorech.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.helgilibrary.com/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.helgilibrary.com/</mdui:InformationURL>
          <mdui:Logo height="100" width="98">https://www.helgilibrary.com/assets/images/layout/logo.gif</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.helgilibrary.com/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.helgilibrary.com/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.helgilibrary.com/shibboleth</ds:KeyName>
          <ds:KeyName>www.helgilibrary.com</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.helgilibrary.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEOTCCAqGgAwIBAgIUKqNZvENn9YSb7H0HIUMrCp9BUycwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.helgilibrary.com/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.helgilibrary.com/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.helgilibrary.com/Shibboleth.sso/SAML2/ECP" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Helgi Library s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Helgi Library s.r.o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Helgi Library</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Helgi Library</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.helgilibrary.com</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.helgilibrary.com</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Petr</md:GivenName>
      <md:SurName>Branis</md:SurName>
      <md:EmailAddress>mailto:petr.branis@gmail.com</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.jib.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.jib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.jib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>octopus.is.cuni.cz</ds:KeyName>
          <ds:KeyName>sfx.jib.cz</ds:KeyName>
          <ds:KeyName>www.jib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.jib.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIErzCCA5egAwIBAgIRALfceU01+KqtOdYCIYVMWYYwDQYJKoZIhvcNAQELBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.jib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.jib.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.jib.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jib.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.jib.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.jib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.jib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.jib.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.jib.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.jib.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.jib.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKEN-1.html</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Krajíc</md:SurName>
      <md:EmailAddress>krajic@cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.korpus.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
        <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
      </eduidmd:RepublishRequest>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
      <mdattr:EntityAttributes>
        <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Czech National Corpus</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Český národní korpus</mdui:DisplayName>
          <mdui:Description xml:lang="en">Czech National Corpus services.</mdui:Description>
          <mdui:Description xml:lang="cs">Služby projektu Český národní korpus.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.korpus.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.korpus.cz/</mdui:InformationURL>
          <mdui:Logo height="25" width="164" xml:lang="en">https://www.korpus.cz/img/CNC-sirka-01-col-RGB.png</mdui:Logo>
          <mdui:Logo height="25" width="153" xml:lang="cs">https://www.korpus.cz/img/CNK-sirka-01-col-RGB.png</mdui:Logo>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.korpus.cz/privacy-policy</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.korpus.cz/privacy-policy</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.korpus.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.korpus.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.korpus.cz/shibboleth</ds:KeyName>
          <ds:KeyName>www.korpus.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.korpus.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEDCCAfigAwIBAgIJAMm9J1kRx+OZMA0GCSqGSIb3DQEBBQUAMBgxFjAUBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.korpus.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.korpus.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.korpus.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.korpus.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.korpus.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.korpus.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.korpus.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.korpus.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">Czech National Corpus</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Services of the Institute of the Czech National Corpus, Faculty of Arts, Charles University, Czech Republic</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:mace:dir:attribute-def:cn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:mace:dir:attribute-def:o" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Institute of the Czech National Corpus, Faculty of Arts, Charles University, Czech Republic</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Ústav Českého národního korpusu, Filozofická fakulta, Univerzita Karlova</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">ÚČNK FF UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">ÚČNK FF UK</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://ucnk.ff.cuni.cz/en/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://ucnk.ff.cuni.cz/cs/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Vondřička</md:SurName>
      <md:EmailAddress>mailto:shibboleth@korpus.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/metadata.php/default-sp">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="cs">Levná knihovna</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Levna knihovna</mdui:DisplayName>
          <mdui:Description xml:lang="cs">Elektronické knihy a multimédia</mdui:Description>
          <mdui:Description xml:lang="en">Electronic books and multimedia</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.levna-knihovna.cz/page/static/co-je-levna-knihovna</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.levna-knihovna.cz/page/static/co-je-levna-knihovna</mdui:InformationURL>
          <mdui:PrivacyStatementURL xml:lang="cs">https://www.levna-knihovna.cz/page/static/osobni-udaje</mdui:PrivacyStatementURL>
          <mdui:PrivacyStatementURL xml:lang="en">https://www.levna-knihovna.cz/page/static/osobni-udaje</mdui:PrivacyStatementURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIESTCCAzGgAwIBAgIUaQ6pEBr2ZRiIL0awPueSlg4E81swDQYJKoZIhvcNAQELBQAwgbMxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzEPMA0GA1UEBwwGUHJhZ3VlMSYwJAYDVQQKDB1BbGVzIENlbmVrIFB1Ymxpc2hpbmcgQ29tcGFueTEXMBUGA1UECwwOTGV2bmEga25paG92bmExGjAYBgNVBAMMEWxldm5hLWtuaWhvdm5hLmN6MR0wGwYJKoZIhvcNAQkBFg5hZG1pbkBhaWtlbi5jejAeFw0yNTEyMTExNTMxMThaFw0zMDEyMTAxNTMxMThaMIGzMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDzANBgNVBAcMBlByYWd1ZTEmMCQGA1UECgwdQWxlcyBDZW5layBQdWJsaXNoaW5nIENvbXBhbnkxFzAVBgNVBAsMDkxldm5hIGtuaWhvdm5hMRowGAYDVQQDDBFsZXZuYS1rbmlob3ZuYS5jejEdMBsGCSqGSIb3DQEJARYOYWRtaW5AYWlrZW4uY3owggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDLNVv5FMmU55nBnqfViGP7V/D3ct9Zfwl9WO3Ck9Ack6iDklnd8HNrBkQDdldcxKUY4xW5GaIjM/rb646rYT6eSvvv61z5LMas+GvEzPMmQtr/S+ipki8Rm4snsrH8kUD+LHy4gSXk6QYv8TTCCf0IqGLNndlIS2n0MwpM1/tv82MevzMS9Ftl0Rzxg9v1qTOl5gNEHgi95Nuea5i+BXL9bjIXGQ4TUD1svIPF1q4kiPKEQVRSVjwtP+/fIS7iyIA1KE0XjBxB25o2jE8/mQNdtX+97SKKE429hz8WeS91CyI1873BdCl6jqYzz6oOXnCB1WQ1DN4szNVPwn2A+cvRAgMBAAGjUzBRMB0GA1UdDgQWBBRYaXtmh58yWqQDgRCZmBLVyooI/jAfBgNVHSMEGDAWgBRYaXtmh58yWqQDgRCZmBLVyooI/jAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCTxlpKUkTULYnuSxrT0QGAHPXEmgoSXy6EgJPOi4DLWYufDpmxXbiG+lV5usfy81GqEg4/H4A+j0/qtVrk99+XLfEKnNRuuGxI9WToP+vXQgQ3fmvgge3ShYiQ3JLjNfJOP2WZdXbvkgToaplCoCZCS0w9iT6HqK+2xiP7xcWgvre1uIrzxmRpC/Zc6iUTTSZe5GbJ3HLzZONwTwgBH8MvVzrtUgQUZXsYM/YJkvrUfMeQGUW4VUgIR5nuliYBUl6KrTcB6rWtGh7GLTXwa/TFG5iIR/AqWIiB0DMpw5269pPDNYjbEVBivTep2S3yGrP646UV7GvuffWrU/R6SETR</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.levna-knihovna.cz/simplesamlphp/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="cs">Levná knihovna</md:ServiceName>
        <md:ServiceName xml:lang="en">Levna knihovna</md:ServiceName>
        <md:ServiceDescription xml:lang="cs">Levná knihovna - přihlášení SAML 2.0</md:ServiceDescription>
        <md:ServiceDescription xml:lang="en">Levna knihovna - SAML 2.0 authentication</md:ServiceDescription>
        <md:RequestedAttribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <md:RequestedAttribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="cs">Vydavatelství a nakladatelství Aleš Čeněk, s.r.o.</md:OrganizationName>
      <md:OrganizationName xml:lang="en">Ales Cenek Publishing Company</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="cs">Vydavatelství a nakladatelství Aleš Čeněk, s.r.o.</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="en">Ales Cenek Publishing Company</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="cs">https://www.alescenek.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="en">https://www.alescenek.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukas</md:GivenName>
      <md:SurName>Jelinek</md:SurName>
      <md:EmailAddress>mailto:admin@aiken.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.lf2.cuni.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/Login" index="1"/>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web 2.LF UK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">2.LF UK website</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web 2.LF UK</mdui:Description>
          <mdui:Description xml:lang="cs">2.LF UK website</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.lf2.cuni.cz</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.lf2.cuni.cz</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>stary.lf2.cuni.cz</ds:KeyName>
          <ds:KeyName>www.lf2.cuni.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.lf2.cuni.cz,OU=Domain Control Validated</ds:X509SubjectName>
            <ds:X509Certificate>MIIEfzCCA2egAwIBAgIRAL6zHeFuW7gruMtW9mGerE0wDQYJKoZIhvcNAQEFBQAw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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/Artifact" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="11"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dpl.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="13"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lf2.cuni.cz/Shibboleth.sso/saml2/artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lf2.cuni.cz/Shibboleth.sso/saml2/ecp" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.lf2.cuni.czdpl8.lf2.cuni.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.lf2.cuni.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">2.LF UK</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">2.LF UK</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">2. lekarska fakulta UK</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">2nd Faculty of Medicine, Charles University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.lf2.cuni.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.lf2.cuni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Nas</md:GivenName>
      <md:SurName>Webmaster</md:SurName>
      <md:EmailAddress>mailto:webmaster@lfmotol.cuni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/metadata.php/liberouter">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="cs">Liberouter</mdui:DisplayName>
          <mdui:DisplayName xml:lang="en">Liberouter</mdui:DisplayName>
          <mdui:Description xml:lang="cs">TMC Cesnet</mdui:Description>
          <mdui:Description xml:lang="en">TMC Cesnet</mdui:Description>
          <mdui:InformationURL xml:lang="cs">https://www.liberouter.org/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="en">https://www.liberouter.org/</mdui:InformationURL>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml2-logout.php/liberouter"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml2-acs.php/liberouter" index="0"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml1-acs.php/liberouter" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml2-acs.php/liberouter" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.liberouter.org/simplesamlphp/module.php/saml/sp/saml1-acs.php/liberouter/artifact" index="3"/>
      <md:AttributeConsumingService index="1">
        <md:ServiceName xml:lang="en">Liberouter</md:ServiceName>
        <md:ServiceDescription xml:lang="en">TMC Cesnet</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:mace:dir:attribute-def:eduPersonPrincipalName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:mace:dir:attribute-def:mail" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:mace:dir:attribute-def:givenName" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:mace:dir:attribute-def:sn" NameFormat="urn:mace:shibboleth:1.0:attributeNamespace:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="upn" Name="urn:oid:1.3.6.1.4.1.311.20.2.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Liberouter</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Liberouter</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Liberouter</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Liberouter</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.liberouter.org</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.liberouter.org</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>TMC</md:GivenName>
      <md:SurName>CESNET support</md:SurName>
      <md:EmailAddress>mailto:tmc@ro.vutbr.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <q1:EntityDescriptor xmlns:q1="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.mecenat.eu/sp">
    <q1:SPSSODescriptor AuthnRequestsSigned="true" WantAssertionsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <q1:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:2.0:metadata:ui">
          <mdui:DisplayName xml:lang="en">Mecenat</mdui:DisplayName>
          <mdui:DisplayName xml:lang="se">Mecenat</mdui:DisplayName>
          <mdui:Description xml:lang="en">Mecenat makes student life easier by providing discounts and benefits that are relevant to their studies.</mdui:Description>
          <mdui:Description xml:lang="se">Mecenat underlättar för de studerande genom att förmedla rabatter och förmåner som är relevanta under studietiden.</mdui:Description>
          <mdui:Logo height="140" width="250">https://www.mecenat.eu/img/federation-logo-2.png</mdui:Logo>
        </mdui:UIInfo>
      </q1:Extensions>
      <q1:KeyDescriptor use="signing">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIIEBTCCAu2gAwIBAgIJAPs0Eng4fXs9MA0GCSqGSIb3DQEBBQUAMIGYMQswCQYDVQQGEwJTRTEY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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </q1:KeyDescriptor>
      <q1:KeyDescriptor use="encryption">
        <KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
          <X509Data>
            <X509Certificate>MIIEBTCCAu2gAwIBAgIJAPs0Eng4fXs9MA0GCSqGSIb3DQEBBQUAMIGYMQswCQYDVQQGEwJTRTEY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</X509Certificate>
          </X509Data>
        </KeyInfo>
      </q1:KeyDescriptor>
      <q1:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</q1:NameIDFormat>
      <q1:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</q1:NameIDFormat>
      <q1:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.mecenat.eu/integrationservices/login.ashx" index="0" isDefault="true"/>
      <q1:AttributeConsumingService index="0" isDefault="true">
        <q1:ServiceName xml:lang="en">Mecenat</q1:ServiceName>
        <q1:ServiceName xml:lang="se">Mecenat</q1:ServiceName>
        <q1:ServiceDescription xml:lang="en">Mecenat makes student life easier by providing discounts and benefits that are relevant to their studies.</q1:ServiceDescription>
        <q1:ServiceDescription xml:lang="se">Mecenat underlättar för de studerande genom att förmedla rabatter och förmåner som är relevanta under studietiden.</q1:ServiceDescription>
        <q1:RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
        <q1:RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
      </q1:AttributeConsumingService>
    </q1:SPSSODescriptor>
    <q1:Organization>
      <q1:OrganizationName xml:lang="en">Mecenat</q1:OrganizationName>
      <q1:OrganizationName xml:lang="se">Mecenat</q1:OrganizationName>
      <q1:OrganizationDisplayName xml:lang="en">Mecenat</q1:OrganizationDisplayName>
      <q1:OrganizationDisplayName xml:lang="se">Mecenat</q1:OrganizationDisplayName>
      <q1:OrganizationURL xml:lang="en">http://www.mecenat.eu</q1:OrganizationURL>
      <q1:OrganizationURL xml:lang="se">http://www.mecenat.se</q1:OrganizationURL>
    </q1:Organization>
    <q1:ContactPerson contactType="technical">
      <q1:Company>Mecenat</q1:Company>
      <q1:GivenName>Administrator</q1:GivenName>
      <q1:EmailAddress>mailto:it@mecenat.eu</q1:EmailAddress>
    </q1:ContactPerson>
    <q1:ContactPerson contactType="support">
      <q1:Company>Mecenat</q1:Company>
      <q1:GivenName>Customer</q1:GivenName>
      <q1:SurName>Service</q1:SurName>
      <q1:EmailAddress>mailto:customerservice@mecenat.eu</q1:EmailAddress>
    </q1:ContactPerson>
  </q1:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.sitola.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Laboratory of Advanced Network Technologies</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Laboratoř pokročilých síťových technologií</mdui:DisplayName>
          <mdui:Description xml:lang="en">Resources provided by Laboratory of Advanced Network Technologies</mdui:Description>
          <mdui:Description xml:lang="cs">Zdroje poskytované Laboratoří pokročilých síťových technologií</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://sitola.cz/</mdui:InformationURL>
          <mdui:Logo height="135" width="135">https://sitola.cz/files/logo_sitola_24.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sitola.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sitola.cz/Shibboleth.sso/DS" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sitola.cz/Shibboleth.sso/muniidp"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>selfsigned</ds:KeyName>
          <ds:KeyName>sitola.cz</ds:KeyName>
          <ds:KeyName>www.sitola.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sitola.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIC4jCCAcqgAwIBAgIJAPVTzYNT7rppMA0GCSqGSIb3DQEBBQUAMBQxEjAQBgNV
BAMTCXNpdG9sYS5jejAeFw0xNjEyMjcxNzA3NDBaFw0yNjEyMjUxNzA3NDBaMBQx
EjAQBgNVBAMTCXNpdG9sYS5jejCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
ggEBALqz7f6RF9Wka55nWLa/dTEnA4R5FDs2ZFlAGg8gEAJw68brmRpyj28m+xAy
8MQaVYdYCDuWDk5WDD79C6KviJChjkY5YgEhHPNToA/DPNe/61tEwKNodz6IIAS4
ZMmKBMeEGyUfFGWAY0wTZGIl2T9w0fTke5B2/RzMobsVya8catp1NXDdpluIjx96
8pAPqjmMmYP5pGDYfo2eFtu/C2mSTVnF4kWDeaPHbK9v7l92evwu7NWZmnXbA6l4
/ZZOmSUeqGMQNsSVHEj3QeToOQ/NzJkbWZB4oIwmtEPISUb5qQ7hte/gxLXm/ox1
I6ZR7tyYTMYnCp67AdgzTxAoptUCAwEAAaM3MDUwFAYDVR0RBA0wC4IJc2l0b2xh
LmN6MB0GA1UdDgQWBBTKFSjHMup9di7ZFEey8oVgVkJuUzANBgkqhkiG9w0BAQUF
AAOCAQEAI7otFz3Tti0fJkzfgEHqUgJNgpnJljXP0HVRsYIKCC6lyh27o8GO8AZ+
AjJdsDbKIuL73TnUW1LJEi+P6ObbsjrOS0O0Hcfi2KF+ekYTBZI6HL3uwCRe85It
VQHGJTd4bvY8E11o43lYiVfUhApqF7fOjjdVpLwjFZY/fAryjYU58mugoIc/xZvn
FLz3duB3DK+38G04s1jBDVGNN402ckVx+hCBtgJooWkzNBfHSXzzqALiGn3/dXi5
vjmgkCJzpoRIpQ+9w+VXoLl+5dxdGpexaoH3Qn2dIyBI3Vu5sjs9jdMVNg4O+jvd
F/Y9T3hYs980c+3dho38Gdyu/DPQlQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sitola.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sitola.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sitola.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sitola.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sitola.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sitola.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sitola.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.sitola.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.fi.muni.cz/Shibboleth.sso/SAML2/POST" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.sitola.fi.muni.cz/Shibboleth.sso/SAML2/POST" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sitola.cz/Shibboleth.sso/SAML2/POST" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sitola.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sitola.cz/Shibboleth.sso/SAML2/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sitola.cz/Shibboleth.sso/SAML2/ECP" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sitola.cz/Shibboleth.sso/SAML/POST" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sitola.cz/Shibboleth.sso/SAML/Artifact" index="9"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">Masaryk University</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Masarykova Universita</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Masaryk University</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Masarykova universita</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.muni.cz</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.muni.cz</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Lukáš</md:GivenName>
      <md:SurName>Ručka</md:SurName>
      <md:EmailAddress>xrucka@fi.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.vsb.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">VSB-TUO web</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">VŠB-TUO web</mdui:DisplayName>
          <mdui:Description xml:lang="en">VSB-TUO web.</mdui:Description>
          <mdui:Description xml:lang="cs">VŠB-TUO web.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vsb.cz/en</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vsb.cz/cs</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vsb.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.vsb.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://www.vsb.cz/shibboleth</ds:KeyName>
          <ds:KeyName>wp2.vsb.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=wp2.vsb.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEBDCCAmygAwIBAgIJAKxSPPLGzKXdMA0GCSqGSIb3DQEBCwUAMBUxEzARBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vsb.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vsb.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.vsb.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vsb.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vsb.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.vsb.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.vsb.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.vsb.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">VŠB - Technical University of Ostrava</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Vysoká škola báňská - Technická univerzita Ostrava</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">VŠB - Technical University of Ostrava</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">VŠB - Technická univerzita Ostrava</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vsb.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.vsb.cz/cs</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Pavel</md:GivenName>
      <md:SurName>Rath</md:SurName>
      <md:EmailAddress>mailto:pavel.rath@vsb.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.vyzkumne-infrastruktury.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Web www.vyzkumne-infrastruktury.cz</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</mdui:DisplayName>
          <mdui:Description xml:lang="en">Web www.vyzkumne-infrastruktury.cz</mdui:Description>
          <mdui:Description xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://www.vyzkumne-infrastruktury.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://www.vyzkumne-infrastruktury.cz/</mdui:InformationURL>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://vvi.cesnet.cz/shibboleth</ds:KeyName>
          <ds:KeyName>vvi.cesnet.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vvi.cesnet.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIEGzCCAoOgAwIBAgIULfZzGD7FXq9h2pUHuzcn4mSGXREwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AttributeConsumingService index="0">
        <md:ServiceName xml:lang="en">Web www.vyzkumne-infrastruktury.cz</md:ServiceName>
        <md:ServiceName xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</md:ServiceName>
        <md:ServiceDescription xml:lang="en">Web www.vyzkumne-infrastruktury.cz</md:ServiceDescription>
        <md:ServiceDescription xml:lang="cs">Web www.vyzkumne-infrastruktury.cz</md:ServiceDescription>
        <md:RequestedAttribute FriendlyName="eppn" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
        <md:RequestedAttribute FriendlyName="entitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">CESNET, a. l. e.</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">CESNET, z. s. p. o.</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">CESNET</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">CESNET</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.ces.net/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.cesnet.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Vladimir</md:GivenName>
      <md:SurName>Trestik</md:SurName>
      <md:EmailAddress>mailto:Vladimir.Trestik@cesnet.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.vyzkumne-infrastruktury.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Login"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/DS"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/DS" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www-sp</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www-sp</ds:X509SubjectName>
            <ds:X509Certificate>MIICnjCCAYYCCQC2NfTD2+SxiTANBgkqhkiG9w0BAQUFADARMQ8wDQYDVQQDEwZ3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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.vyzkumne-infrastruktury.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <OrganizationName xml:lang="en">CESNET, a. l. e.</OrganizationName>
      <OrganizationName xml:lang="cs">CESNET, z. s. p. o.</OrganizationName>
      <OrganizationDisplayName xml:lang="en">CESNET</OrganizationDisplayName>
      <OrganizationDisplayName xml:lang="cs">CESNET</OrganizationDisplayName>
      <OrganizationURL xml:lang="en">http://www.ces.net/</OrganizationURL>
      <OrganizationURL xml:lang="cs">http://www.cesnet.cz/</OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <GivenName>Vladimir</GivenName>
      <SurName>Trestik</SurName>
      <EmailAddress>Vladimir.Trestik@cesnet.cz</EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://www.zubnilekarstvi.cz/shibboleth/sp">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://zubnilekarstvi.cz/Shibboleth.sso/zubnilekarstvi"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zubnilekarstvi.cz/Shibboleth.sso/zubnilekarstvi" index="1"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://zubnilekarstvi.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zubnilekarstvi.cz/Shibboleth.sso/Login" index="2"/>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://zubnilekarstvi.cz/Shibboleth.sso/safeid"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zubnilekarstvi.cz/Shibboleth.sso/safeid" index="3"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>www.zubnilekarstvi.cz</ds:KeyName>
          <ds:KeyName>zubnilekarstvi.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=zubnilekarstvi.cz,O=Masaryk University,C=CZ</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJzCCAg+gAwIBAgIJAMhMZxpmWwGVMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://zubnilekarstvi.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/Artifact"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/POST"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/Redirect"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SLO/SOAP"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/Artifact"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/POST"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/Redirect"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://zubnilekarstvi.cz/Shibboleth.sso/NIM/SOAP"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML/POST" index="7"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/Artifact" index="8"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/ECP" index="9"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/POST" index="10"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://zubnilekarstvi.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">IBA MU</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">IBA MU</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.iba.muni.cz/</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">http://www.iba.muni.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Roman</md:GivenName>
      <md:SurName>Smid</md:SurName>
      <md:EmailAddress>smid@iba.muni.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ziskej-demo.techlib.cz/shibboleth">
    <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
      <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
      <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    </md:Extensions>
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Ziskej-demo NTK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Získej-demo NTK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Systém pro doručování dokumentů -- DEMO VERZE.</mdui:Description>
          <mdui:Description xml:lang="cs">Document delivery system -- DEMO VERSION.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ziskej-demo.techlib.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ziskej-demo.techlib.cz/</mdui:InformationURL>
          <mdui:Logo height="165" width="91">https://www.techlib.cz/public/assets/images/logo-ntk.png</mdui:Logo>
        </mdui:UIInfo>
        <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/Login"/>
        <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/Login" index="1"/>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:KeyName>https://ziskej-demo.techlib.cz/shibboleth</ds:KeyName>
          <ds:KeyName>ziskej-demo.techlib.cz</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ziskej-demo.techlib.cz</ds:X509SubjectName>
            <ds:X509Certificate>MIIENDCCApygAwIBAgIJAOuZv6hBj/pwMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
        <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/Artifact/SOAP" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/Artifact" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML2/ECP" index="4"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML/POST" index="5"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ziskej-demo.techlib.cz/Shibboleth.sso/SAML/Artifact" index="6"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technická knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.techlib.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.techlib.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Jan</md:GivenName>
      <md:SurName>Pokorný</md:SurName>
      <md:EmailAddress>mailto:jan.pokorny@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
  <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://ziskej.techlib.cz/shibboleth">
    <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
      <md:Extensions>
        <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
          <mdui:DisplayName xml:lang="en">Document Delivery NTK</mdui:DisplayName>
          <mdui:DisplayName xml:lang="cs">Získej NTK</mdui:DisplayName>
          <mdui:Description xml:lang="en">Informační systém pro doručování dokumentů.</mdui:Description>
          <mdui:Description xml:lang="cs">Document delivery system.</mdui:Description>
          <mdui:InformationURL xml:lang="en">https://ziskej.techlib.cz/</mdui:InformationURL>
          <mdui:InformationURL xml:lang="cs">https://ziskej.techlib.cz/</mdui:InformationURL>
          <mdui:Logo height="165" width="91">https://www.techlib.cz/public/assets/images/logo-ntk.png</mdui:Logo>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor>
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509Certificate>MIIEIDCCAoigAwIBAgIJAMb6cqK69MTCMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML2/POST" index="1"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML2/ECP" index="3"/>
      <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ziskej.techlib.cz/Shibboleth.sso/SAML/POST" index="4"/>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">National Library of Technology</md:OrganizationName>
      <md:OrganizationName xml:lang="cs">Národní technická knihovna</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">National Library of Technology</md:OrganizationDisplayName>
      <md:OrganizationDisplayName xml:lang="cs">Národní technická knihovna</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.techlib.cz/en</md:OrganizationURL>
      <md:OrganizationURL xml:lang="cs">https://www.techlib.cz/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:GivenName>Ondřej</md:GivenName>
      <md:SurName>Koch</md:SurName>
      <md:EmailAddress>mailto:ondrej.koch@techlib.cz</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor>
</EntitiesDescriptor>