<?xml version="1.0" encoding="UTF-8"?>
<!--
METADATA TEMPLATE PER IDP - v.1.3 LM 20130719
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idp.museogalileo.it/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">museogalileo.it</shibmd:Scope>
            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">Museo Galileo - Istituto e Museo di Storia della Scienza</mdui:DisplayName>
				<mdui:DisplayName xml:lang="it">Museo Galileo - Istituto e Museo di Storia della Scienza</mdui:DisplayName>
                <mdui:Description xml:lang="en">Museum of scientific instruments and institute dedicated to the research of the history of science.</mdui:Description>
                <mdui:Description xml:lang="it">Museo di strumenti scientifici e istituto per la ricerca in storia della scienza.</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.museogalileo.it/logo.png</mdui:Logo>
            </mdui:UIInfo>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDODCCAiCgAwIBAgIVAIq6pge0//9OYFacUJU8rEiaqYoFMA0GCSqGSIb3DQEB
CwUAMB4xHDAaBgNVBAMME2lkcC5tdXNlb2dhbGlsZW8uaXQwHhcNMTgwNTI4MDYz
NzIxWhcNMzgwNTI4MDYzNzIxWjAeMRwwGgYDVQQDDBNpZHAubXVzZW9nYWxpbGVv
Lml0MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgGJBHvJ9xFKSB5Jg
+MJgYxFfHbUI/UpMxUc7PsFE4zkAzEgOmpzkJg6VoHz6eIM2G1t0UiWsyKGLVolg
gbhDaANtIvqst4+o7N2h+DtK7F/6TCVPak7Sw7aIMHi8IMet90wdI7dY79ZlOEaA
oSnrd+wdx6mzzpjk0KPxbfkGNECCsP3mj7s2UaV36RY0MHro0RQrZ7PnjMmDoQIe
j9sLeVIEKkNf1xENxG5WTXKB36NOwLeytyzfKQRNeDLXtkQuXudhrIqEOH+w/3M5
WVmqudR5W8eMNuZtSE6DYWd0nY6+ITLNyYqqKsWKa6gsMSbOkQKtwSGw6cALJ05N
q6NYCwIDAQABo20wazAdBgNVHQ4EFgQUsyzSsYIiOoT7WKsX6Zq5s6E2O0swSgYD
VR0RBEMwQYITaWRwLm11c2VvZ2FsaWxlby5pdIYqaHR0cHM6Ly9pZHAubXVzZW9n
YWxpbGVvLml0L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBd4W4o
aLLb1/8w7cmWfoEd/HmIqA9ZRSh9QjeIc3hApeOUZVQm6Ch37apIWGEmPIzvWleJ
F4v9RYlUrBWpR0omAVErqy+blOcFM4j+VaRBIfKzZLVo3HIT65nNvKsk+eRhlK8E
NJNZWuJMtHeTESkxZcoAmLvn7QVJHUt20VXoXDhEs8e3E6OrG4TwsiSQPPs93TDr
Yy9wAVmBVyahzlvbZonKGmBPW+hONEe+f1xgZ53RTf7O6fTw52fzhxCaEoWTfBIZ
ODfd+Nxgc6w3C/6iXEtQdKgK02gWfKdjbW22irJqbhp0099/Er+rdhsWhdohnmt8
btexRITKzA4VDaUG
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDNzCCAh+gAwIBAgIUY/Ms9QafTgGwZszZjaFp/Zrmz8owDQYJKoZIhvcNAQEL
BQAwHjEcMBoGA1UEAwwTaWRwLm11c2VvZ2FsaWxlby5pdDAeFw0xODA1MjgwNjM3
MjBaFw0zODA1MjgwNjM3MjBaMB4xHDAaBgNVBAMME2lkcC5tdXNlb2dhbGlsZW8u
aXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCAq/rZq3LU+KZAQ+CS
eSN43+TerewK0bF75Tj1cPqkuSxkwwPJemrR/I6b8XPQju1fFU5DSc2euBXAHKFH
cHjDsthYOKWr0/rd11ywuyOT7FB1PwCSE4CoQanPY/X5IqOcP8y8cbemqX7oomN+
7qSuDVXKDT4oJ1Gkifkf1K/IPDKPQZRMXS6yt2fiu4jaVPQ8CHT5UzLcQmZn5Rzq
bDpT6MNAcLm3sgpOl0Ob8qLBrA0T8aXF8REEGoJyNx9lz6W30udA9uEStXZsyIcj
47MsnmTDO+dF+7cyo8Pa4raB2AsqWzvsKxkE30QluDs5n+D7JIthc3N89RuY9LyC
Wo8fAgMBAAGjbTBrMB0GA1UdDgQWBBSttDJg1pd5gHTbicGbWJy5+Hr7TTBKBgNV
HREEQzBBghNpZHAubXVzZW9nYWxpbGVvLml0hipodHRwczovL2lkcC5tdXNlb2dh
bGlsZW8uaXQvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAGyQiAF3
Fq71dW7D1Q0LVRf9PCmal1jHxK4IpoAnQXCXRZQCWtOBrO5JqDy6vyY7Y8a+/Pod
C9cdD+RRfE75ueWcw6waZ9cRm0uUygun/x2NRD84lf3HIVP0nK1DwYqkaffpmHg9
LZsofJ6jIKobzyieaB7qpBbE6BwT0R00Em59cJxxoHWmFMLcSrdoU14Lu5Ts8eZs
iegzqMdQ+P7cyTtO3cxaZCtNJWsL0S23OVeOuGzPxbZa379aTXhXW1tZRLpVsSVl
4pP3dIWJxagYE7e9Ew2IGt2ta2Y63iK5GHCyspE0CrDHDZMtLAMKt5/k6lp5OIJQ
42j3msuxDu0kkn4=
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.museogalileo.it/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>

        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.museogalileo.it/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.museogalileo.it/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.museogalileo.it/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.museogalileo.it/idp/profile/SAML2/SOAP/SLO"/>

        <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>

        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.museogalileo.it/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.museogalileo.it/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.museogalileo.it/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">museogalileo.it</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDODCCAiCgAwIBAgIVAIq6pge0//9OYFacUJU8rEiaqYoFMA0GCSqGSIb3DQEB
CwUAMB4xHDAaBgNVBAMME2lkcC5tdXNlb2dhbGlsZW8uaXQwHhcNMTgwNTI4MDYz
NzIxWhcNMzgwNTI4MDYzNzIxWjAeMRwwGgYDVQQDDBNpZHAubXVzZW9nYWxpbGVv
Lml0MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgGJBHvJ9xFKSB5Jg
+MJgYxFfHbUI/UpMxUc7PsFE4zkAzEgOmpzkJg6VoHz6eIM2G1t0UiWsyKGLVolg
gbhDaANtIvqst4+o7N2h+DtK7F/6TCVPak7Sw7aIMHi8IMet90wdI7dY79ZlOEaA
oSnrd+wdx6mzzpjk0KPxbfkGNECCsP3mj7s2UaV36RY0MHro0RQrZ7PnjMmDoQIe
j9sLeVIEKkNf1xENxG5WTXKB36NOwLeytyzfKQRNeDLXtkQuXudhrIqEOH+w/3M5
WVmqudR5W8eMNuZtSE6DYWd0nY6+ITLNyYqqKsWKa6gsMSbOkQKtwSGw6cALJ05N
q6NYCwIDAQABo20wazAdBgNVHQ4EFgQUsyzSsYIiOoT7WKsX6Zq5s6E2O0swSgYD
VR0RBEMwQYITaWRwLm11c2VvZ2FsaWxlby5pdIYqaHR0cHM6Ly9pZHAubXVzZW9n
YWxpbGVvLml0L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBd4W4o
aLLb1/8w7cmWfoEd/HmIqA9ZRSh9QjeIc3hApeOUZVQm6Ch37apIWGEmPIzvWleJ
F4v9RYlUrBWpR0omAVErqy+blOcFM4j+VaRBIfKzZLVo3HIT65nNvKsk+eRhlK8E
NJNZWuJMtHeTESkxZcoAmLvn7QVJHUt20VXoXDhEs8e3E6OrG4TwsiSQPPs93TDr
Yy9wAVmBVyahzlvbZonKGmBPW+hONEe+f1xgZ53RTf7O6fTw52fzhxCaEoWTfBIZ
ODfd+Nxgc6w3C/6iXEtQdKgK02gWfKdjbW22irJqbhp0099/Er+rdhsWhdohnmt8
btexRITKzA4VDaUG
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.museogalileo.it/idp/profile/SAML2/SOAP/AttributeQuery"/> 
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
