<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://shibboleth.nkp.cz/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">nkp.cz</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at shibboleth.nkp.cz</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at shibboleth.nkp.cz</mdui:Description>
                <mdui:Logo height="HeightInPixels" width="WidthInPixels">https://shibboleth.nkp.cz/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
<mdui:UIInfo>
        <mdui:DisplayName xml:lang="en">The National Library of the Czech Republic</mdui:DisplayName>
        <mdui:DisplayName xml:lang="cs">Narodni knihovna Ceske republiky</mdui:DisplayName>
        <mdui:Description xml:lang="en">Identity Provider for The National Library of the Czech Republic employees.</mdui:Description>
<!-- bez diakritiky
        <mdui:Description xml:lang="cs">Identity Provider pro zamestnance Narodni knihovny Ceske republiky.</mdui:Description>
-->
        <mdui:Description xml:lang="cs">Identity provider pro zaměstnance Národní knihovny České republiky.</mdui:Description>
        <mdui:InformationURL xml:lang="en">http://www.en.nkp.cz/</mdui:InformationURL>
        <mdui:InformationURL xml:lang="cs">http://www.nkp.cz/</mdui:InformationURL>
        <mdui:Logo height="45" width="205" xml:lang="en">https://www.en.nkp.cz/++resource++plonetheme.nkp.images/nkp_logo_en.png</mdui:Logo>
        <mdui:Logo height="45" width="187" xml:lang="cs">https://www.nkp.cz/++resource++plonetheme.nkp.images/nkp_logo.png</mdui:Logo>
    </mdui:UIInfo>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.nkp.cz/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.nkp.cz/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">nkp.cz</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.nkp.cz/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.nkp.cz/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

<Organization xmlns="urn:oasis:names:tc:SAML:2.0:metadata">
    <OrganizationName xml:lang="en">The National Library of the Czech Republic</OrganizationName>
<!-- bez diakritiky
    <OrganizationName xml:lang="cs">Narodni knihovna Ceske republiky</OrganizationName>
-->
    <OrganizationName xml:lang="cs">Národní knihovna České republiky</OrganizationName>
    <OrganizationDisplayName xml:lang="en">The National Library of the Czech Republic</OrganizationDisplayName>
<!-- bez diakritiky
    <OrganizationDisplayName xml:lang="cs">Narodni knihovna Ceske republiky</OrganizationDisplayName>
-->
    <OrganizationDisplayName xml:lang="cs">Národní knihovna České republiky</OrganizationDisplayName>
    <OrganizationURL xml:lang="en">http://www.en.nkp.cz/</OrganizationURL>
    <OrganizationURL xml:lang="cs">http://www.nkp.cz/</OrganizationURL>
</Organization>

<ContactPerson xmlns="urn:oasis:names:tc:SAML:2.0:metadata" contactType="technical">
    <GivenName>Pavel</GivenName>
    <SurName>Kotrba</SurName>
    <EmailAddress>mailto:Pavel.Kotrba@nkp.cz</EmailAddress>
</ContactPerson>


</EntityDescriptor>

