<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" entityID="https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/shibboleth">

    <Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://tuakiri.ac.nz/" registrationInstant="2020-10-30T01:45:24Z" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
        <mdrpi:RegistrationPolicy xml:lang="en">https://tuakiri.ac.nz/documents/tuakiri-mrps-1.0.pdf</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
      <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
        <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
          <saml:AttributeValue>https://refeds.org/sirtfi2</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </Extensions>

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">reannz.co.nz</shibmd:Scope>
            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">REANNZ</mdui:DisplayName>
                <mdui:Description xml:lang="en">Research and Education Advanced Network New Zealand (REANNZ) provides the pathways and connections for research and science collaboration</mdui:Description>
                <mdui:Logo xml:lang="en" height="25" width="150">https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/images/logo.jpg</mdui:Logo>
            </mdui:UIInfo>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>


        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/profile/SAML2/Redirect/SLO"/>

        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://hosted-login.tuakiri.ac.nz/hosting/reannz.co.nz/idp/profile/SAML2/Redirect/SSO"/>

        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.27856.1.2.5" FriendlyName="auEduPersonSharedToken" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:2.5.4.3" FriendlyName="cn" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:2.16.840.1.113730.3.1.241" FriendlyName="displayName" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" FriendlyName="eduPersonAffiliation" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" FriendlyName="eduPersonAssurance" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" FriendlyName="eduPersonEntitlement" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" FriendlyName="eduPersonPrimaryAffiliation" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" FriendlyName="eduPersonPrincipalName" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" FriendlyName="eduPersonScopedAffiliation" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:2.5.4.42" FriendlyName="givenName" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:0.9.2342.19200300.100.1.3" FriendlyName="mail" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:2.5.4.10" FriendlyName="o" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" FriendlyName="schacHomeOrganization" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" FriendlyName="schacHomeOrganizationType" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oid:2.5.4.4" FriendlyName="sn" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" FriendlyName="samlPairwiseID" />
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oasis:names:tc:SAML:attribute:subject-id" FriendlyName="samlSubjectID" />
    </IDPSSODescriptor>


    <Organization>
        <OrganizationName xml:lang="en">reannz.co.nz</OrganizationName>
        <OrganizationDisplayName xml:lang="en">REANNZ</OrganizationDisplayName>
        <OrganizationURL xml:lang="en">https://www.reannz.co.nz/</OrganizationURL>
    </Organization>
    <ContactPerson contactType="support">
      <Company>REANNZ</Company>
      <GivenName>REANNZ</GivenName>
      <SurName>Support</SurName>
      <EmailAddress>mailto:staff-support@reannz.co.nz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="technical">
      <Company>REANNZ</Company>
      <GivenName>Tuakiri</GivenName>
      <SurName>Support</SurName>
      <EmailAddress>mailto:tuakiri@reannz.co.nz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="administrative">
      <Company>REANNZ</Company>
      <GivenName>Tuakiri</GivenName>
      <SurName>Support</SurName>
      <EmailAddress>mailto:tuakiri@reannz.co.nz</EmailAddress>
    </ContactPerson>
    <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security" xmlns:remd="http://refeds.org/metadata" >
      <Company>REANNZ</Company>
      <GivenName>Tuakiri</GivenName>
      <SurName>Security</SurName>
      <EmailAddress>mailto:security@reannz.co.nz</EmailAddress>
    </ContactPerson>

</EntityDescriptor>
