<?xml version='1.0' encoding='UTF-8'?>
<md:EntitiesDescriptor xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xrd="http://docs.oasis-open.org/ns/xri/xrd-1.0" Name="https://md.hkaf.edu.hk/hkaf-edugain-metadata.xml" ID="hkaf-edugain-export20260311T181732" validUntil="2026-03-18T18:17:32Z" cacheDuration="PT5H"><ds:Signature><ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/TR/2001/REC-xml-c14n-20010315"/><ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/><ds:Reference URI="#hkaf-edugain-export20260311T181732"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#WithComments"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><ds:DigestValue>gh6rjaCF2zSqIhWUGJfamJ4B3J/455D1T5bc3iN2HTA=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>EkKYDIrKhMZqimVRuy4AZhgdrxUlATjFFHxVUwz7q1tzWiRDi8QgdeSnA6z9R/tDWi9DFXZEe249zumXq1hubkWa1gg13YWVEfcngNosksqyw71M+ZhndeN/F/ulRdh0ro79aO9o4whRVyzNdwAMjGSIHLfDTY131cYlhl4LWU1LiYtOOiZOSK5KJUOHGP97m3JKStEM4I2UMP/IkyR1dhM4A5NfS1kwnrrfvaDvQl0gECc3QU/HykFE+snrZ4A7r+rsiqONh1xyPvp0wfJBhI42UUnSxIkW/r37nrWmSD4r9+ka3RkM4gOccHcvgI5NJB87wnrVFmHRs1ZgvXH97A==</ds:SignatureValue><ds:KeyInfo><ds:X509Data><ds:X509Certificate>MIIDTzCCAjegAwIBAgIJAInh4vg0dvClMA0GCSqGSIb3DQEBCwUAMD4xJDAiBgNV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</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature><md:Extensions><mdrpi:PublicationInfo publisher="https://hkaf.edu.hk" creationInstant="2026-03-11T18:17:32Z"/></md:Extensions><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.twc.edu.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-04-21T02:33:06Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Tung Wah College</mdui:DisplayName>
          <mdui:Description xml:lang="en">Tung Wah College IDP</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">idp.twc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Encryption</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.twc.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAJHqFDo52+wRxf+XxCF5Awk0D0PBMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Backchannel</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.twc.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUDoY6PdyHVxD3MaWcQsiyXMK2ogQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Signing</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.twc.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUYdtGauF8xtXj1g2HFZe0kYPAZJwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.twc.edu.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.twc.edu.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.twc.edu.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.twc.edu.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">idp.twc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>Encryption</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.twc.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIVAJHqFDo52+wRxf+XxCF5Awk0D0PBMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Backchannel</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.twc.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUDoY6PdyHVxD3MaWcQsiyXMK2ogQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Signing</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.twc.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEIzCCAougAwIBAgIUYdtGauF8xtXj1g2HFZe0kYPAZJwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.twc.edu.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">twc.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Tung Wah College</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.twc.edu.hk/</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Tung Wah College</md:Company>
      <md:GivenName>Alex</md:GivenName>
      <md:SurName>Wut</md:SurName>
      <md:EmailAddress>mailto:alexwut@twc.edu.hk</md:EmailAddress>
      <md:TelephoneNumber>34686628</md:TelephoneNumber>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" entityID="https://aclass.eduhk.hk/sso/module.php/saml/sp/metadata.php/aclass">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-06-21T06:02:04Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Active Classroom</mdui:DisplayName>
          <mdui:Description xml:lang="en">Active Classroom (AClass) is a website designed for knowledge transfer of education studies and idea exchanges. Our target audience include teachers from different education sectors, ranging from pre-schools, primary schools, secondary schools, to higher </mdui:Description>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aclass.eduhk.hk/sso/module.php/saml/sp/discoresp.php"/>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>E=aclass@eduhk.hk,OU=Department of Curriculum and Instruction,L=Tai Po,CN=aclass.eduhk.hk,O=The Education University of Hong Kong,ST=New Territories,C=hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEeTCCA2CgAwIBAgIBADANBgkqhkiG9w0BAQ0FADCB1TELMAkGA1UEBhMCaGsx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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>E=aclass@eduhk.hk,OU=Department of Curriculum and Instruction,L=Tai Po,CN=aclass.eduhk.hk,O=The Education University of Hong Kong,ST=New Territories,C=hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEeTCCA2CgAwIBAgIBADANBgkqhkiG9w0BAQ0FADCB1TELMAkGA1UEBhMCaGsx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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aclass.eduhk.hk/sso/module.php/saml/sp/saml2-logout.php/aclass"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aclass.eduhk.hk/sso/module.php/saml/sp/saml2-logout.php/aclass"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService index="1" isDefault="false" Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://aclass.eduhk.hk/sso/module.php/saml/sp/saml1-acs.php/aclass"/>
      <md:AssertionConsumerService index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aclass.eduhk.hk/sso/module.php/saml/sp/saml2-acs.php/aclass"/>
      <md:AssertionConsumerService index="2" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aclass.eduhk.hk/sso/module.php/saml/sp/saml2-acs.php/aclass"/>
      <md:AssertionConsumerService index="3" isDefault="false" Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://aclass.eduhk.hk/sso/module.php/saml/sp/saml1-acs.php/aclass"/>
      <md:AttributeConsumingService index="1" isDefault="false">
        <md:ServiceName xml:lang="en">Active Classroom</md:ServiceName>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:.16.840.1.113730.3.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="departmentNumber"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationalUnit"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganization"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganizationType"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">eduhk.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Education University of Hong Kong</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.eduhk.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:Company>The Education University of Hong Kong</md:Company>
      <md:GivenName>Bick Har</md:GivenName>
      <md:SurName>Lam</md:SurName>
      <md:EmailAddress>mailto:bhlam@eduhk.hk</md:EmailAddress>
      <md:TelephoneNumber>2948 7909</md:TelephoneNumber>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>The Hong Kong University of Science and Technology</md:Company>
      <md:GivenName>Nick</md:GivenName>
      <md:SurName>LAI</md:SurName>
      <md:EmailAddress>mailto:nicklai@ust.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor entityID="https://www.cityu.edu.hk/sklmp/booking">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-07-08T06:26:00Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">SKLMP Facility Booking System</mdui:DisplayName>
          <mdui:Description xml:lang="en">Welcome to the State Key Laboratory of Marine Pollution (SKLMP) for performing experimental work. SKLMP Facility Booking System allows users to book equipment and facility simultaneously, view their status instantly, and check the expense usage quickly.</mdui:Description>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sklmp.cityu</ds:X509SubjectName>
            <ds:X509Certificate>MIICzTCCAbWgAwIBAgIEH1tC7DANBgkqhkiG9w0BAQsFADAWMRQwEgYDVQQDEwtza2xtcC5j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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=sklmp.cityu</ds:X509SubjectName>
            <ds:X509Certificate>MIICzTCCAbWgAwIBAgIEH1tC7DANBgkqhkiG9w0BAQsFADAWMRQwEgYDVQQDEwtza2xtcC5j
aXR5dTAgFw0yMTAzMTAwODA5NTJaGA8yMDUxMDMwMzA4MDk1MlowFjEUMBIGA1UEAxMLc2ts
bXAuY2l0eXUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCv/R2p9UsPVBXWGXit
QzxLW0w0iThCqmxReNCMYZUOsggOm95NSLJl1OmOgwgN85anhYolkGqxNzt5GRZVfcB4WVdJ
N356IgGPGcstdzUxjyGuV+SMP9jSX8c7z+dvRglgnZgePd7KouvWTyN8zdDuiQir9joEyIru
mPFBgTtH9iMq+UGMA/NaqU3Z+xcvytH4Mdep7zwLkujyphEdxkbxvwCRsYvi4/v1mKybvv/E
P22RdoyQeMTEkaldGQ1b8nUz2/Xc2YVxRVCdQtdjSluFns97+1K/yGp9nXve4Gibaf30BgA9
WW5y89KqKZavYZuwj5NMg4/JDeVMkCbFlZ8bAgMBAAGjITAfMB0GA1UdDgQWBBT51BntSwp5
rPAH9I0aYTIbns4VszANBgkqhkiG9w0BAQsFAAOCAQEAeL1qbXHDH3tpjJ2oGX+hQL6l/8Iw
A0nlEvftO4DrZrUOD1fDcdCW/GaycV2REPWbRo8+Kv0n92JbMdHMJkxoOyl+VTxmtaStA54n
M9IDtKYgO0HubGqzRHGeuOZOVWPw4aFJf0vJlhoxevb+jBZN59Y8WQwi/KcpxXvyOSF+5EQF
KqQQeV0Oz5KN4AdJcxlemQvY199sPKPbV5X7oyGrt7F1yxDnpeqi1b9S8S5wOWUuwATfXbh1
qetrCpq1Jy9mJYZGMKHUImKcXrDJxlgpUuEBEu8gRR5Qkk3LNFJ1ptKDNdPnChYo/yWg0JF2
hTp0w7GJL5mxJQ/NSJVYjso3pQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService index="2" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.cityu.edu.hk/sklmp/booking/_spauth/_AssertionConsumerService.aspx"/>
      <md:AssertionConsumerService index="1" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.cityu.edu.hk/sklmp/booking/_spauth/_AssertionConsumerService.aspx"/>
      <md:AttributeConsumingService index="1" isDefault="false">
        <md:ServiceName xml:lang="en">SKLMP Facility Booking System</md:ServiceName>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">cityu.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">City University of Hong Kong</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cityu.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Hong Kong Access Federation</md:Company>
      <md:GivenName>Joe</md:GivenName>
      <md:SurName>Lee</md:SurName>
      <md:EmailAddress>mailto:joe.lee@cityu.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" entityID="https://stemvocab.cle.hkust.edu.hk/simplesaml/module.php/saml/sp/metadata.php/default-sp">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-09-30T04:18:51Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">HKUST Stem vocabulary</mdui:DisplayName>
          <mdui:Description xml:lang="en">HKUST Stem vocabulary</mdui:Description>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stemvocab.cle.hkust.edu.hk/simplesaml/module.php/saml/sp/discoresp.php"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>E=shsstechhelp@ust.hk,CN=dev.cle.ust.hk,OU=School of Humanities and Social Science,O=Hong Kong University of Science and Technology,L=Hong Kong,ST=Hong Kong,C=CN</ds:X509SubjectName>
            <ds:X509Certificate>MIIEjzCCA3egAwIBAgIJAMmTTkoYgY6TMA0GCSqGSIb3DQEBCwUAMIHdMQswCQYD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>E=shsstechhelp@ust.hk,CN=dev.cle.ust.hk,OU=School of Humanities and Social Science,O=Hong Kong University of Science and Technology,L=Hong Kong,ST=Hong Kong,C=CN</ds:X509SubjectName>
            <ds:X509Certificate>MIIEjzCCA3egAwIBAgIJAMmTTkoYgY6TMA0GCSqGSIb3DQEBCwUAMIHdMQswCQYD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stemvocab.cle.hkust.edu.hk/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stemvocab.cle.hkust.edu.hk/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService index="2" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stemvocab.cle.hkust.edu.hk/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp"/>
      <md:AssertionConsumerService index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stemvocab.cle.hkust.edu.hk/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp"/>
      <md:AttributeConsumingService index="1" isDefault="false">
        <md:ServiceName xml:lang="en">HKUST Stem vocabulary</md:ServiceName>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">ust.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Hong Kong University of Science and Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ust.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>The Hong Kong University of Science and Technology</md:Company>
      <md:GivenName>Yiu-Fai</md:GivenName>
      <md:SurName>LAI</md:SurName>
      <md:EmailAddress>mailto:ccyflai@ust.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor entityID="https://admin-portal.acvp.hk/saml2/service-provider-metadata-all">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-11-05T04:27:39Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">ACVP Admin Portal</mdui:DisplayName>
          <mdui:Description xml:lang="en">ACVP Admin Portal</mdui:Description>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=admin-portal.acvp.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIICujCCAaICCQCFd5HQxDV3ZDANBgkqhkiG9w0BAQsFADAfMR0wGwYDVQQDDBRh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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=admin-portal.acvp.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIICujCCAaICCQCFd5HQxDV3ZDANBgkqhkiG9w0BAQsFADAfMR0wGwYDVQQDDBRh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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService index="3" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://admin-portal.acvp.hk/login/saml2/sso-all/artifact"/>
      <md:AssertionConsumerService index="1" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin-portal.acvp.hk/login/saml2/sso-all"/>
      <md:AttributeConsumingService index="1" isDefault="false">
        <md:ServiceName xml:lang="en">ACVP Admin Portal</md:ServiceName>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganization"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">jucc.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Joint Universities Computer Centre Ltd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jucc.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Joint Universities Computer Centre Ltd</md:Company>
      <md:GivenName>David</md:GivenName>
      <md:SurName>Choi</md:SurName>
      <md:EmailAddress>mailto:david.choi@jucc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sts.windows.net/200624f1-c33b-4e8c-b53f-8c7d55e7522f/">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-12-03T08:43:39Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Vocational Training Council (Alumni)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Vocational Training Council (Alumni)</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">alumni.vtc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Student Portal (Alumni Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQcjNiy6b9nKVBzEe9fRMlhTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMjYw
MzA5
MjBaFw0yNzExMjYwMzA4MzlaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuLGYzBXd
JmYy
egi/NVE83oG5XGO/rNi7Lzq7yXCdGGL7KK/Q456NfPCDEzihuaoPDU+GcMh0rsufvzK7Ky6w
MngC
y+lZuoM3bFVODEbxtaE0qhvtoPbsvEYMdjmRpPcGnqtU4xP6wtAAZb5BwdpMerF1T2TrL5r/
/jpR
KJqOXu/o8c7v+pgOht+w80iVnJxx+XoFiJjX5RaRKMtLDSn0z4kQhzKiQcSY2zNN2UqHBG6I
9gaL
yS0vw8bjXlWpkmmQCe6UcgaqZ5AEtvGM0Qs5Db5nl1e4fRjALQKlUEf/6vnF5gTCFiwPyRkA
i25d
rExS4IBqldUy4wFUKZOtwhGdEQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC0apYMTK37kEDB
MZJe
9odstYPIMnmSxPoG6Aj+EGUevFDAk4p9isxCtp9VYHXDYSwVi/W5QhQ+b76sFS23OQR2O0zO
WVdL
ehSa+igczmwb79+/30D+bU3ZK7Xf53TIbuo7XC9Gbq6819CCizLJx330KhXQ3Z4AY7zPyEpE
ylc+
TjHi5cEDmU5dNNe85KKtApdtGxH6VhZdIWfBK/b8ldtQ2xp+gkJXx4qaMrWSYzkZ/nPqMx4v
Rx62
ZjTKtSpxTelWnQ90qwYrLF50ZyuMw50fQdg+XQcM8gRWrLnMA5quanmEKzvFSz6Rw/8+Xb18
ic6G
KpU0+jIOEsxJVb+SbrXG</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP (Alumni Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQFggw9aOFwrdH1THEaYInXTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMDkw
MjI3
NDRaFw0yNjAxMDkwMjI3NDRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqhGryUDT
GLdZ
wBOJ1AmWtQxUeMxzOoLZa9gHJtB+3x71FYIXza/EDwBwspjlaD8QlHmadehmYwt63sKlERo1
ulZP
x//7qi0YLqLSfvAqOVPnfLeh95RuOZdxepMfDOkK96oGmXVdNpNXz+TQd87JhQIB4ZudvrKr
OBxh
gy9Fy8/XP20aU0F354FkX1pxRx4vKpH/CwtBNWaS8P4wG3uHFiKjgfrPv5cssGjce0pzxzYd
qi+B
4jshHGvybTAqv+X3/5W31Tn6aUflv2QV+dIo/wog1EZ6PgqXngvoVqFq8ITV/ujCbckSi2Ul
p3cT
yjSO4zFGQT4dB83ToN+i0j9yDQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAOKYyNnZVb5ZX/
aAtk
/EbFGdXwhmfXU8RAN4DHBKLrwfHIraX+XIOYpIIvEzf3AapS2OxbZ9x8lOV4d7l3Y802qJKN
iceK
w+4vms3D64h24Pb03UjkyUCe9GGs1NpX9CFTR2AVjqT84/RPxCCYfWfg27xF3WWPHQN6MAU9
/5nt
KK2sz/LDg7d1Mulw48LCf/DnH5eV+EobFUjOWN35X+QYT5ZVSh0aM6kY4kvSKBGUX/g1g966
LiSu
L4NNGiMLBD/UGoqB3+zb0cJIjJ6Ybj97iWXJvllK3LtvuRxInpxOQDGx2CWHNV6eePy8iQqW
YF+V
Q4pb7X2IqkCaZPhgIZj6</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQIuNmENmvjLFDk4RbfEeyCDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMTEyMDMw
ODM2
MjFaFw0yNDEyMDMwODM2MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxZkQ8Pkt
KyBK
oXSTAR4fw5DzEawc2bTS/QQc8pNtYOxZQLIu7hV2wfXNO79q5HeCzfMM3Z4HnXO9JVEodpge
dX5c
eiXY4Pd5AG0pZ2UUzPRkVpENmKljawFLJH/OzfBVeTI3IRYdOIH9XoMpnwP5xazNtQ9jn48n
dmV4
6glCesY8iU/Dst7a/CsiOeJ94p9dsRjlDxw6FpkBo0vA/mdl3erIBCHQek7gmzGkx7I2SAjN
EVe4
0c1AjiRk47xRIs1Bb7BiTqtUi8b2xFcGbmx1+ksPWxnx6TjoulS7Zwj5IYg2Gu5BLH9QYf5P
9eDC
kUbe569mRBC+p7clNzQOZI9DuQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQA+ejyATLR4QhvF
L9s8
5nKso8Wx8nZTacCvBChUdsduw+2QKzicF9Z1uvolJAS7YHeOqV8TIdZxnefxMXHbfMSIGyGm
vQyR
Vs0Lqa5JX3r/Pq0+HSaZV0tblyzjbszscfga0fyKHCxDIJLCjvg2EBIKYhyCWvl8p64J8zSt
Nn76
k5ADpX5nI4c3MXouFnh5HPyLGqiVUK3fsTegQ9BxMh6fZLEcr3e4WFOR6IE2jfTphOxvOPdb
lTUM
5KwVFjBwTuq0W0DaCgtnSCJ3xLGhuywVhqOx9OSpQfvUfggTpBzlLLhdht1CUfEukqwXVkqj
85Pp
n2+U1EXUleG9hDE/WXat</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Student Portal (Alumni Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQcjNiy6b9nKVBzEe9fRMlhTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMjYw
MzA5
MjBaFw0yNzExMjYwMzA4MzlaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuLGYzBXd
JmYy
egi/NVE83oG5XGO/rNi7Lzq7yXCdGGL7KK/Q456NfPCDEzihuaoPDU+GcMh0rsufvzK7Ky6w
MngC
y+lZuoM3bFVODEbxtaE0qhvtoPbsvEYMdjmRpPcGnqtU4xP6wtAAZb5BwdpMerF1T2TrL5r/
/jpR
KJqOXu/o8c7v+pgOht+w80iVnJxx+XoFiJjX5RaRKMtLDSn0z4kQhzKiQcSY2zNN2UqHBG6I
9gaL
yS0vw8bjXlWpkmmQCe6UcgaqZ5AEtvGM0Qs5Db5nl1e4fRjALQKlUEf/6vnF5gTCFiwPyRkA
i25d
rExS4IBqldUy4wFUKZOtwhGdEQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC0apYMTK37kEDB
MZJe
9odstYPIMnmSxPoG6Aj+EGUevFDAk4p9isxCtp9VYHXDYSwVi/W5QhQ+b76sFS23OQR2O0zO
WVdL
ehSa+igczmwb79+/30D+bU3ZK7Xf53TIbuo7XC9Gbq6819CCizLJx330KhXQ3Z4AY7zPyEpE
ylc+
TjHi5cEDmU5dNNe85KKtApdtGxH6VhZdIWfBK/b8ldtQ2xp+gkJXx4qaMrWSYzkZ/nPqMx4v
Rx62
ZjTKtSpxTelWnQ90qwYrLF50ZyuMw50fQdg+XQcM8gRWrLnMA5quanmEKzvFSz6Rw/8+Xb18
ic6G
KpU0+jIOEsxJVb+SbrXG</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP (Alumni Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQFggw9aOFwrdH1THEaYInXTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMDkw
MjI3
NDRaFw0yNjAxMDkwMjI3NDRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqhGryUDT
GLdZ
wBOJ1AmWtQxUeMxzOoLZa9gHJtB+3x71FYIXza/EDwBwspjlaD8QlHmadehmYwt63sKlERo1
ulZP
x//7qi0YLqLSfvAqOVPnfLeh95RuOZdxepMfDOkK96oGmXVdNpNXz+TQd87JhQIB4ZudvrKr
OBxh
gy9Fy8/XP20aU0F354FkX1pxRx4vKpH/CwtBNWaS8P4wG3uHFiKjgfrPv5cssGjce0pzxzYd
qi+B
4jshHGvybTAqv+X3/5W31Tn6aUflv2QV+dIo/wog1EZ6PgqXngvoVqFq8ITV/ujCbckSi2Ul
p3cT
yjSO4zFGQT4dB83ToN+i0j9yDQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAOKYyNnZVb5ZX/
aAtk
/EbFGdXwhmfXU8RAN4DHBKLrwfHIraX+XIOYpIIvEzf3AapS2OxbZ9x8lOV4d7l3Y802qJKN
iceK
w+4vms3D64h24Pb03UjkyUCe9GGs1NpX9CFTR2AVjqT84/RPxCCYfWfg27xF3WWPHQN6MAU9
/5nt
KK2sz/LDg7d1Mulw48LCf/DnH5eV+EobFUjOWN35X+QYT5ZVSh0aM6kY4kvSKBGUX/g1g966
LiSu
L4NNGiMLBD/UGoqB3+zb0cJIjJ6Ybj97iWXJvllK3LtvuRxInpxOQDGx2CWHNV6eePy8iQqW
YF+V
Q4pb7X2IqkCaZPhgIZj6</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQIuNmENmvjLFDk4RbfEeyCDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMTEyMDMw
ODM2
MjFaFw0yNDEyMDMwODM2MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxZkQ8Pkt
KyBK
oXSTAR4fw5DzEawc2bTS/QQc8pNtYOxZQLIu7hV2wfXNO79q5HeCzfMM3Z4HnXO9JVEodpge
dX5c
eiXY4Pd5AG0pZ2UUzPRkVpENmKljawFLJH/OzfBVeTI3IRYdOIH9XoMpnwP5xazNtQ9jn48n
dmV4
6glCesY8iU/Dst7a/CsiOeJ94p9dsRjlDxw6FpkBo0vA/mdl3erIBCHQek7gmzGkx7I2SAjN
EVe4
0c1AjiRk47xRIs1Bb7BiTqtUi8b2xFcGbmx1+ksPWxnx6TjoulS7Zwj5IYg2Gu5BLH9QYf5P
9eDC
kUbe569mRBC+p7clNzQOZI9DuQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQA+ejyATLR4QhvF
L9s8
5nKso8Wx8nZTacCvBChUdsduw+2QKzicF9Z1uvolJAS7YHeOqV8TIdZxnefxMXHbfMSIGyGm
vQyR
Vs0Lqa5JX3r/Pq0+HSaZV0tblyzjbszscfga0fyKHCxDIJLCjvg2EBIKYhyCWvl8p64J8zSt
Nn76
k5ADpX5nI4c3MXouFnh5HPyLGqiVUK3fsTegQ9BxMh6fZLEcr3e4WFOR6IE2jfTphOxvOPdb
lTUM
5KwVFjBwTuq0W0DaCgtnSCJ3xLGhuywVhqOx9OSpQfvUfggTpBzlLLhdht1CUfEukqwXVkqj
85Pp
n2+U1EXUleG9hDE/WXat</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQIuNmENmvjLFDk4RbfEeyCDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMTEyMDMw
ODM2
MjFaFw0yNDEyMDMwODM2MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxZkQ8Pkt
KyBK
oXSTAR4fw5DzEawc2bTS/QQc8pNtYOxZQLIu7hV2wfXNO79q5HeCzfMM3Z4HnXO9JVEodpge
dX5c
eiXY4Pd5AG0pZ2UUzPRkVpENmKljawFLJH/OzfBVeTI3IRYdOIH9XoMpnwP5xazNtQ9jn48n
dmV4
6glCesY8iU/Dst7a/CsiOeJ94p9dsRjlDxw6FpkBo0vA/mdl3erIBCHQek7gmzGkx7I2SAjN
EVe4
0c1AjiRk47xRIs1Bb7BiTqtUi8b2xFcGbmx1+ksPWxnx6TjoulS7Zwj5IYg2Gu5BLH9QYf5P
9eDC
kUbe569mRBC+p7clNzQOZI9DuQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQA+ejyATLR4QhvF
L9s8
5nKso8Wx8nZTacCvBChUdsduw+2QKzicF9Z1uvolJAS7YHeOqV8TIdZxnefxMXHbfMSIGyGm
vQyR
Vs0Lqa5JX3r/Pq0+HSaZV0tblyzjbszscfga0fyKHCxDIJLCjvg2EBIKYhyCWvl8p64J8zSt
Nn76
k5ADpX5nI4c3MXouFnh5HPyLGqiVUK3fsTegQ9BxMh6fZLEcr3e4WFOR6IE2jfTphOxvOPdb
lTUM
5KwVFjBwTuq0W0DaCgtnSCJ3xLGhuywVhqOx9OSpQfvUfggTpBzlLLhdht1CUfEukqwXVkqj
85Pp
n2+U1EXUleG9hDE/WXat</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/200624f1-c33b-4e8c-b53f-8c7d55e7522f/saml2"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/200624f1-c33b-4e8c-b53f-8c7d55e7522f/saml2"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/200624f1-c33b-4e8c-b53f-8c7d55e7522f/saml2"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/200624f1-c33b-4e8c-b53f-8c7d55e7522f/saml2"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">alumni.vtc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Student Portal (Alumni Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQcjNiy6b9nKVBzEe9fRMlhTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMjYw
MzA5
MjBaFw0yNzExMjYwMzA4MzlaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuLGYzBXd
JmYy
egi/NVE83oG5XGO/rNi7Lzq7yXCdGGL7KK/Q456NfPCDEzihuaoPDU+GcMh0rsufvzK7Ky6w
MngC
y+lZuoM3bFVODEbxtaE0qhvtoPbsvEYMdjmRpPcGnqtU4xP6wtAAZb5BwdpMerF1T2TrL5r/
/jpR
KJqOXu/o8c7v+pgOht+w80iVnJxx+XoFiJjX5RaRKMtLDSn0z4kQhzKiQcSY2zNN2UqHBG6I
9gaL
yS0vw8bjXlWpkmmQCe6UcgaqZ5AEtvGM0Qs5Db5nl1e4fRjALQKlUEf/6vnF5gTCFiwPyRkA
i25d
rExS4IBqldUy4wFUKZOtwhGdEQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC0apYMTK37kEDB
MZJe
9odstYPIMnmSxPoG6Aj+EGUevFDAk4p9isxCtp9VYHXDYSwVi/W5QhQ+b76sFS23OQR2O0zO
WVdL
ehSa+igczmwb79+/30D+bU3ZK7Xf53TIbuo7XC9Gbq6819CCizLJx330KhXQ3Z4AY7zPyEpE
ylc+
TjHi5cEDmU5dNNe85KKtApdtGxH6VhZdIWfBK/b8ldtQ2xp+gkJXx4qaMrWSYzkZ/nPqMx4v
Rx62
ZjTKtSpxTelWnQ90qwYrLF50ZyuMw50fQdg+XQcM8gRWrLnMA5quanmEKzvFSz6Rw/8+Xb18
ic6G
KpU0+jIOEsxJVb+SbrXG</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP (Alumni Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQFggw9aOFwrdH1THEaYInXTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMDkw
MjI3
NDRaFw0yNjAxMDkwMjI3NDRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqhGryUDT
GLdZ
wBOJ1AmWtQxUeMxzOoLZa9gHJtB+3x71FYIXza/EDwBwspjlaD8QlHmadehmYwt63sKlERo1
ulZP
x//7qi0YLqLSfvAqOVPnfLeh95RuOZdxepMfDOkK96oGmXVdNpNXz+TQd87JhQIB4ZudvrKr
OBxh
gy9Fy8/XP20aU0F354FkX1pxRx4vKpH/CwtBNWaS8P4wG3uHFiKjgfrPv5cssGjce0pzxzYd
qi+B
4jshHGvybTAqv+X3/5W31Tn6aUflv2QV+dIo/wog1EZ6PgqXngvoVqFq8ITV/ujCbckSi2Ul
p3cT
yjSO4zFGQT4dB83ToN+i0j9yDQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAOKYyNnZVb5ZX/
aAtk
/EbFGdXwhmfXU8RAN4DHBKLrwfHIraX+XIOYpIIvEzf3AapS2OxbZ9x8lOV4d7l3Y802qJKN
iceK
w+4vms3D64h24Pb03UjkyUCe9GGs1NpX9CFTR2AVjqT84/RPxCCYfWfg27xF3WWPHQN6MAU9
/5nt
KK2sz/LDg7d1Mulw48LCf/DnH5eV+EobFUjOWN35X+QYT5ZVSh0aM6kY4kvSKBGUX/g1g966
LiSu
L4NNGiMLBD/UGoqB3+zb0cJIjJ6Ybj97iWXJvllK3LtvuRxInpxOQDGx2CWHNV6eePy8iQqW
YF+V
Q4pb7X2IqkCaZPhgIZj6</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQIuNmENmvjLFDk4RbfEeyCDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMTEyMDMw
ODM2
MjFaFw0yNDEyMDMwODM2MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxZkQ8Pkt
KyBK
oXSTAR4fw5DzEawc2bTS/QQc8pNtYOxZQLIu7hV2wfXNO79q5HeCzfMM3Z4HnXO9JVEodpge
dX5c
eiXY4Pd5AG0pZ2UUzPRkVpENmKljawFLJH/OzfBVeTI3IRYdOIH9XoMpnwP5xazNtQ9jn48n
dmV4
6glCesY8iU/Dst7a/CsiOeJ94p9dsRjlDxw6FpkBo0vA/mdl3erIBCHQek7gmzGkx7I2SAjN
EVe4
0c1AjiRk47xRIs1Bb7BiTqtUi8b2xFcGbmx1+ksPWxnx6TjoulS7Zwj5IYg2Gu5BLH9QYf5P
9eDC
kUbe569mRBC+p7clNzQOZI9DuQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQA+ejyATLR4QhvF
L9s8
5nKso8Wx8nZTacCvBChUdsduw+2QKzicF9Z1uvolJAS7YHeOqV8TIdZxnefxMXHbfMSIGyGm
vQyR
Vs0Lqa5JX3r/Pq0+HSaZV0tblyzjbszscfga0fyKHCxDIJLCjvg2EBIKYhyCWvl8p64J8zSt
Nn76
k5ADpX5nI4c3MXouFnh5HPyLGqiVUK3fsTegQ9BxMh6fZLEcr3e4WFOR6IE2jfTphOxvOPdb
lTUM
5KwVFjBwTuq0W0DaCgtnSCJ3xLGhuywVhqOx9OSpQfvUfggTpBzlLLhdht1CUfEukqwXVkqj
85Pp
n2+U1EXUleG9hDE/WXat</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Student Portal (Alumni Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQcjNiy6b9nKVBzEe9fRMlhTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMjYw
MzA5
MjBaFw0yNzExMjYwMzA4MzlaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuLGYzBXd
JmYy
egi/NVE83oG5XGO/rNi7Lzq7yXCdGGL7KK/Q456NfPCDEzihuaoPDU+GcMh0rsufvzK7Ky6w
MngC
y+lZuoM3bFVODEbxtaE0qhvtoPbsvEYMdjmRpPcGnqtU4xP6wtAAZb5BwdpMerF1T2TrL5r/
/jpR
KJqOXu/o8c7v+pgOht+w80iVnJxx+XoFiJjX5RaRKMtLDSn0z4kQhzKiQcSY2zNN2UqHBG6I
9gaL
yS0vw8bjXlWpkmmQCe6UcgaqZ5AEtvGM0Qs5Db5nl1e4fRjALQKlUEf/6vnF5gTCFiwPyRkA
i25d
rExS4IBqldUy4wFUKZOtwhGdEQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC0apYMTK37kEDB
MZJe
9odstYPIMnmSxPoG6Aj+EGUevFDAk4p9isxCtp9VYHXDYSwVi/W5QhQ+b76sFS23OQR2O0zO
WVdL
ehSa+igczmwb79+/30D+bU3ZK7Xf53TIbuo7XC9Gbq6819CCizLJx330KhXQ3Z4AY7zPyEpE
ylc+
TjHi5cEDmU5dNNe85KKtApdtGxH6VhZdIWfBK/b8ldtQ2xp+gkJXx4qaMrWSYzkZ/nPqMx4v
Rx62
ZjTKtSpxTelWnQ90qwYrLF50ZyuMw50fQdg+XQcM8gRWrLnMA5quanmEKzvFSz6Rw/8+Xb18
ic6G
KpU0+jIOEsxJVb+SbrXG</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP (Alumni Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQFggw9aOFwrdH1THEaYInXTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMDkw
MjI3
NDRaFw0yNjAxMDkwMjI3NDRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqhGryUDT
GLdZ
wBOJ1AmWtQxUeMxzOoLZa9gHJtB+3x71FYIXza/EDwBwspjlaD8QlHmadehmYwt63sKlERo1
ulZP
x//7qi0YLqLSfvAqOVPnfLeh95RuOZdxepMfDOkK96oGmXVdNpNXz+TQd87JhQIB4ZudvrKr
OBxh
gy9Fy8/XP20aU0F354FkX1pxRx4vKpH/CwtBNWaS8P4wG3uHFiKjgfrPv5cssGjce0pzxzYd
qi+B
4jshHGvybTAqv+X3/5W31Tn6aUflv2QV+dIo/wog1EZ6PgqXngvoVqFq8ITV/ujCbckSi2Ul
p3cT
yjSO4zFGQT4dB83ToN+i0j9yDQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAOKYyNnZVb5ZX/
aAtk
/EbFGdXwhmfXU8RAN4DHBKLrwfHIraX+XIOYpIIvEzf3AapS2OxbZ9x8lOV4d7l3Y802qJKN
iceK
w+4vms3D64h24Pb03UjkyUCe9GGs1NpX9CFTR2AVjqT84/RPxCCYfWfg27xF3WWPHQN6MAU9
/5nt
KK2sz/LDg7d1Mulw48LCf/DnH5eV+EobFUjOWN35X+QYT5ZVSh0aM6kY4kvSKBGUX/g1g966
LiSu
L4NNGiMLBD/UGoqB3+zb0cJIjJ6Ybj97iWXJvllK3LtvuRxInpxOQDGx2CWHNV6eePy8iQqW
YF+V
Q4pb7X2IqkCaZPhgIZj6</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQIuNmENmvjLFDk4RbfEeyCDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMTEyMDMw
ODM2
MjFaFw0yNDEyMDMwODM2MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxZkQ8Pkt
KyBK
oXSTAR4fw5DzEawc2bTS/QQc8pNtYOxZQLIu7hV2wfXNO79q5HeCzfMM3Z4HnXO9JVEodpge
dX5c
eiXY4Pd5AG0pZ2UUzPRkVpENmKljawFLJH/OzfBVeTI3IRYdOIH9XoMpnwP5xazNtQ9jn48n
dmV4
6glCesY8iU/Dst7a/CsiOeJ94p9dsRjlDxw6FpkBo0vA/mdl3erIBCHQek7gmzGkx7I2SAjN
EVe4
0c1AjiRk47xRIs1Bb7BiTqtUi8b2xFcGbmx1+ksPWxnx6TjoulS7Zwj5IYg2Gu5BLH9QYf5P
9eDC
kUbe569mRBC+p7clNzQOZI9DuQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQA+ejyATLR4QhvF
L9s8
5nKso8Wx8nZTacCvBChUdsduw+2QKzicF9Z1uvolJAS7YHeOqV8TIdZxnefxMXHbfMSIGyGm
vQyR
Vs0Lqa5JX3r/Pq0+HSaZV0tblyzjbszscfga0fyKHCxDIJLCjvg2EBIKYhyCWvl8p64J8zSt
Nn76
k5ADpX5nI4c3MXouFnh5HPyLGqiVUK3fsTegQ9BxMh6fZLEcr3e4WFOR6IE2jfTphOxvOPdb
lTUM
5KwVFjBwTuq0W0DaCgtnSCJ3xLGhuywVhqOx9OSpQfvUfggTpBzlLLhdht1CUfEukqwXVkqj
85Pp
n2+U1EXUleG9hDE/WXat</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQIuNmENmvjLFDk4RbfEeyCDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMTEyMDMw
ODM2
MjFaFw0yNDEyMDMwODM2MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxZkQ8Pkt
KyBK
oXSTAR4fw5DzEawc2bTS/QQc8pNtYOxZQLIu7hV2wfXNO79q5HeCzfMM3Z4HnXO9JVEodpge
dX5c
eiXY4Pd5AG0pZ2UUzPRkVpENmKljawFLJH/OzfBVeTI3IRYdOIH9XoMpnwP5xazNtQ9jn48n
dmV4
6glCesY8iU/Dst7a/CsiOeJ94p9dsRjlDxw6FpkBo0vA/mdl3erIBCHQek7gmzGkx7I2SAjN
EVe4
0c1AjiRk47xRIs1Bb7BiTqtUi8b2xFcGbmx1+ksPWxnx6TjoulS7Zwj5IYg2Gu5BLH9QYf5P
9eDC
kUbe569mRBC+p7clNzQOZI9DuQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQA+ejyATLR4QhvF
L9s8
5nKso8Wx8nZTacCvBChUdsduw+2QKzicF9Z1uvolJAS7YHeOqV8TIdZxnefxMXHbfMSIGyGm
vQyR
Vs0Lqa5JX3r/Pq0+HSaZV0tblyzjbszscfga0fyKHCxDIJLCjvg2EBIKYhyCWvl8p64J8zSt
Nn76
k5ADpX5nI4c3MXouFnh5HPyLGqiVUK3fsTegQ9BxMh6fZLEcr3e4WFOR6IE2jfTphOxvOPdb
lTUM
5KwVFjBwTuq0W0DaCgtnSCJ3xLGhuywVhqOx9OSpQfvUfggTpBzlLLhdht1CUfEukqwXVkqj
85Pp
n2+U1EXUleG9hDE/WXat</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/200624f1-c33b-4e8c-b53f-8c7d55e7522f/saml2"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">vtc.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Vocational Training Council</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vtc.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Vocational Training Council</md:Company>
      <md:GivenName>Stephen</md:GivenName>
      <md:SurName>Chan</md:SurName>
      <md:EmailAddress>mailto:stephen.chan@vtc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>Vocational Training Council</md:Company>
      <md:GivenName>mkwongad@vtc.edu.hk</md:GivenName>
      <md:SurName>INVALID_CN_FORMAT</md:SurName>
      <md:EmailAddress>mailto:mkwongad@vtc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sts.windows.net/7edb05ab-42e9-4348-b893-2ba625a350c6/">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-12-03T09:06:25Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Vocational Training Council (Staff)</mdui:DisplayName>
          <mdui:Description xml:lang="en">Vocational Training Council (Staff)</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">vtc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQM0npIrlY0bBKmJesqRnaTDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMTAw
NzUz
MTRaFw0yNjAxMTAwNzUzMTRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwtIbYySE
cuN+
LBmsafNNrISmGBc3FcwQLo27aCrYs1IqUzeRTZzQRltYKOB1xSQCJAFgL5KrFURh8e6gTKK0
WH78
Ie+V+6TxG6A8T9GnyQH1eaVrYVIC+3GYHOTMfF2o5VlaqLkubTth8InSunQj1c/xVcjNcZUp
mXmP
8JLJyoS8xZyj+HQRMnbKRoYUa73wJqk8dA6tQhr4qoi2hcg90KPOCPSvCqszqggO5dxUYS+4
RwMF
Fs0jqM+1Pb1epbxNCuwDwT+7IrvUyMNpJSJP2eY2JPHAyKF8EzdBdo+lWmzN1O6qvV9MkJRC
gTjD
7Jhzm9F7JbJhbl9Ktwn1EsZ0FQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC83JaWNG8/5XkC
wqiK
STVkMWOeT+VJXPUpv3cQt8jLTXKYAr7CGyc/fmpBfWtkdBg9uH4kpu133hAT8u+4OPwChSFI
JIin
YRutNP1scIgSVDeDrX9fgagLyBhP3PvC/VLMgt8XQr+Sv66N6ytJKOSnIQKJjqwmmByVY82E
NfMR
o/H13hahEB6MlOZNZzc1n63MlxiJjduqwVGJdgJSLfRtF8WVmZv3rYJWImsoK/f4FBvcGBoA
SNBV
ExFNFJrj2oJwQWfMz1CQEKKVNNhqhO7rVh+7BG3CA+QeJsUcUTAdSZoQ/P4t6PA/GiSVhH0F
EkuU
FlvOoyaPt5b6S5irsTH1</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant) 2025</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQN0b47Rd4MrRNoBYixU60rzANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTExMTEw
OTE3
MzJaFw0yODExMTEwOTE3MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0OwoWwLR
DBmG
KJEVtvvn+dyIBbD3e0jn655z3JHEhp2K/1MkhEB/YCJtCA1l8TBtA61R9eVEZo1VHxVU4scc
HhQp
HiDh6f8/Opz8GLNFxwTIpJvad4FTffEU+EcAovOk6jdC1pPrS+s5lQAIvmtqRrcTh+a1UNsX
gse5
ZwCV/Za+/CzVoQh0mSJu0l8r0FYiBhBrS0le7x4At5cp9ugrbVw3mdRWakppWyG7TEypS5um
RB9r
8B1rY3h7JbMLqLe9G3FiQsaLxrSa31U6E9ZrNwsrUyk0gFN7NrUHDGxjLe2kDsZj8KwWtqPE
Ojio
eAcRcWvKTbS4cfp1Esc24TmLSQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAnrlM3Z4WODdes
YF/C
o4r2fVXbvpXXNa+cfByByx6liHlCG1lE7cZ9ByLQDiyBvcgqpp2ev/Ne2WGICte5RDAL480J
3gJA
FoocZgeDRubBN0SMWNjhU4sOh7fZBIPtxckkr6/gWGm+OMWRGvkSlOu6/YvkbuRBQ0eE6JuU
JuBk
VaJf7jQCsPvzbXtebuhtJg6FV7VQV6E0BEPeKDdnD76S828hngY3sXfqCe9V4QNp4YbotnhY
XGVx
XAuj1ml+6zppMJ8PbRgNvOUB1FTE7yuYJI3PsOjbC3VlbGU7Hw1ezkHlR01h/Xvhkk5xgLPD
RDQL
vOsTJv1EaSyKGUl18KqZ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant) 2025</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQN0b47Rd4MrRNoBYixU60rzANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTExMTEw
OTE3
MzJaFw0yODExMTEwOTE3MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0OwoWwLR
DBmG
KJEVtvvn+dyIBbD3e0jn655z3JHEhp2K/1MkhEB/YCJtCA1l8TBtA61R9eVEZo1VHxVU4scc
HhQp
HiDh6f8/Opz8GLNFxwTIpJvad4FTffEU+EcAovOk6jdC1pPrS+s5lQAIvmtqRrcTh+a1UNsX
gse5
ZwCV/Za+/CzVoQh0mSJu0l8r0FYiBhBrS0le7x4At5cp9ugrbVw3mdRWakppWyG7TEypS5um
RB9r
8B1rY3h7JbMLqLe9G3FiQsaLxrSa31U6E9ZrNwsrUyk0gFN7NrUHDGxjLe2kDsZj8KwWtqPE
Ojio
eAcRcWvKTbS4cfp1Esc24TmLSQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAnrlM3Z4WODdes
YF/C
o4r2fVXbvpXXNa+cfByByx6liHlCG1lE7cZ9ByLQDiyBvcgqpp2ev/Ne2WGICte5RDAL480J
3gJA
FoocZgeDRubBN0SMWNjhU4sOh7fZBIPtxckkr6/gWGm+OMWRGvkSlOu6/YvkbuRBQ0eE6JuU
JuBk
VaJf7jQCsPvzbXtebuhtJg6FV7VQV6E0BEPeKDdnD76S828hngY3sXfqCe9V4QNp4YbotnhY
XGVx
XAuj1ml+6zppMJ8PbRgNvOUB1FTE7yuYJI3PsOjbC3VlbGU7Hw1ezkHlR01h/Xvhkk5xgLPD
RDQL
vOsTJv1EaSyKGUl18KqZ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>	AVCP Admin Portal (Staff Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQGNOujD9Lnq1IPvg4Ek1MiTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMDgw
ODM1
MzZaFw0yNzExMDgwODM1MjBaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxa/wUfez
VNE3
9sLkGYXZ/GOZnevraRVuf9Fuu9wGA/fLxM+pGxNu4XB39+bhbxF1yMlpPCVSHLGYgfz5IYa/
gwUe
rokRlK7wOVz/tfFu5UG13zxcecoTpgaUxMxslq5Op09Or1ZAnv3Ww7oJINAqs3usqKNU+LjR
ufoX
f1J9h10XZ4ssuTWgwYT8tKndW0Iyw3N3cxGIOcrSsXiHPZkNS3KH7SbgTDc0eHwJMqvKUpZq
9Abb
5gGLnQXJtFWA3YRvaATNOLWhbV1DGSL+foL7H6+tF2h46DjptRKFuasCiqke5N21LgKTEBLL
KE0s
/izJOXZsB1RU4Fp6lFaqBrr/EQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCoak55LVnxBKt8
70jw
H38tOXXHa4Vuy+NN0tCQy0KCs9gXLmcy3L3m7bEuSSLomJZjkXQN+C8PytMDw7kchJz0uLNg
KRvx
YZt24djlIxzKRhzK59AC55+8TXigz6rEJs/RR5NbsU7+6JTvQNGt5CsGqAaemzPwBabThvkg
Ro+/
xkO5qUhH/mFvaM6inm1xccoart4LpjTOzmWcuIXnWdm7cR2awEBbdrjneFuY7ESAmvEeKVu8
tlYw
1lWz1EsD22UOcwp5ntDN4ETQgcnzD7eB7qDJCFW0x1hbJoGwP6hrBexEHIc/UHZC4uFN15wB
BkP3
dbPbfuzaqXPAGkNTInsX</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQM0npIrlY0bBKmJesqRnaTDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMTAw
NzUz
MTRaFw0yNjAxMTAwNzUzMTRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwtIbYySE
cuN+
LBmsafNNrISmGBc3FcwQLo27aCrYs1IqUzeRTZzQRltYKOB1xSQCJAFgL5KrFURh8e6gTKK0
WH78
Ie+V+6TxG6A8T9GnyQH1eaVrYVIC+3GYHOTMfF2o5VlaqLkubTth8InSunQj1c/xVcjNcZUp
mXmP
8JLJyoS8xZyj+HQRMnbKRoYUa73wJqk8dA6tQhr4qoi2hcg90KPOCPSvCqszqggO5dxUYS+4
RwMF
Fs0jqM+1Pb1epbxNCuwDwT+7IrvUyMNpJSJP2eY2JPHAyKF8EzdBdo+lWmzN1O6qvV9MkJRC
gTjD
7Jhzm9F7JbJhbl9Ktwn1EsZ0FQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC83JaWNG8/5XkC
wqiK
STVkMWOeT+VJXPUpv3cQt8jLTXKYAr7CGyc/fmpBfWtkdBg9uH4kpu133hAT8u+4OPwChSFI
JIin
YRutNP1scIgSVDeDrX9fgagLyBhP3PvC/VLMgt8XQr+Sv66N6ytJKOSnIQKJjqwmmByVY82E
NfMR
o/H13hahEB6MlOZNZzc1n63MlxiJjduqwVGJdgJSLfRtF8WVmZv3rYJWImsoK/f4FBvcGBoA
SNBV
ExFNFJrj2oJwQWfMz1CQEKKVNNhqhO7rVh+7BG3CA+QeJsUcUTAdSZoQ/P4t6PA/GiSVhH0F
EkuU
FlvOoyaPt5b6S5irsTH1</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>	AVCP Admin Portal (Staff Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQGNOujD9Lnq1IPvg4Ek1MiTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMDgw
ODM1
MzZaFw0yNzExMDgwODM1MjBaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxa/wUfez
VNE3
9sLkGYXZ/GOZnevraRVuf9Fuu9wGA/fLxM+pGxNu4XB39+bhbxF1yMlpPCVSHLGYgfz5IYa/
gwUe
rokRlK7wOVz/tfFu5UG13zxcecoTpgaUxMxslq5Op09Or1ZAnv3Ww7oJINAqs3usqKNU+LjR
ufoX
f1J9h10XZ4ssuTWgwYT8tKndW0Iyw3N3cxGIOcrSsXiHPZkNS3KH7SbgTDc0eHwJMqvKUpZq
9Abb
5gGLnQXJtFWA3YRvaATNOLWhbV1DGSL+foL7H6+tF2h46DjptRKFuasCiqke5N21LgKTEBLL
KE0s
/izJOXZsB1RU4Fp6lFaqBrr/EQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCoak55LVnxBKt8
70jw
H38tOXXHa4Vuy+NN0tCQy0KCs9gXLmcy3L3m7bEuSSLomJZjkXQN+C8PytMDw7kchJz0uLNg
KRvx
YZt24djlIxzKRhzK59AC55+8TXigz6rEJs/RR5NbsU7+6JTvQNGt5CsGqAaemzPwBabThvkg
Ro+/
xkO5qUhH/mFvaM6inm1xccoart4LpjTOzmWcuIXnWdm7cR2awEBbdrjneFuY7ESAmvEeKVu8
tlYw
1lWz1EsD22UOcwp5ntDN4ETQgcnzD7eB7qDJCFW0x1hbJoGwP6hrBexEHIc/UHZC4uFN15wB
BkP3
dbPbfuzaqXPAGkNTInsX</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/7edb05ab-42e9-4348-b893-2ba625a350c6/saml2"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/7edb05ab-42e9-4348-b893-2ba625a350c6/saml2"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/7edb05ab-42e9-4348-b893-2ba625a350c6/saml2"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/7edb05ab-42e9-4348-b893-2ba625a350c6/saml2"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">vtc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQM0npIrlY0bBKmJesqRnaTDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMTAw
NzUz
MTRaFw0yNjAxMTAwNzUzMTRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwtIbYySE
cuN+
LBmsafNNrISmGBc3FcwQLo27aCrYs1IqUzeRTZzQRltYKOB1xSQCJAFgL5KrFURh8e6gTKK0
WH78
Ie+V+6TxG6A8T9GnyQH1eaVrYVIC+3GYHOTMfF2o5VlaqLkubTth8InSunQj1c/xVcjNcZUp
mXmP
8JLJyoS8xZyj+HQRMnbKRoYUa73wJqk8dA6tQhr4qoi2hcg90KPOCPSvCqszqggO5dxUYS+4
RwMF
Fs0jqM+1Pb1epbxNCuwDwT+7IrvUyMNpJSJP2eY2JPHAyKF8EzdBdo+lWmzN1O6qvV9MkJRC
gTjD
7Jhzm9F7JbJhbl9Ktwn1EsZ0FQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC83JaWNG8/5XkC
wqiK
STVkMWOeT+VJXPUpv3cQt8jLTXKYAr7CGyc/fmpBfWtkdBg9uH4kpu133hAT8u+4OPwChSFI
JIin
YRutNP1scIgSVDeDrX9fgagLyBhP3PvC/VLMgt8XQr+Sv66N6ytJKOSnIQKJjqwmmByVY82E
NfMR
o/H13hahEB6MlOZNZzc1n63MlxiJjduqwVGJdgJSLfRtF8WVmZv3rYJWImsoK/f4FBvcGBoA
SNBV
ExFNFJrj2oJwQWfMz1CQEKKVNNhqhO7rVh+7BG3CA+QeJsUcUTAdSZoQ/P4t6PA/GiSVhH0F
EkuU
FlvOoyaPt5b6S5irsTH1</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant) 2025</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQN0b47Rd4MrRNoBYixU60rzANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTExMTEw
OTE3
MzJaFw0yODExMTEwOTE3MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0OwoWwLR
DBmG
KJEVtvvn+dyIBbD3e0jn655z3JHEhp2K/1MkhEB/YCJtCA1l8TBtA61R9eVEZo1VHxVU4scc
HhQp
HiDh6f8/Opz8GLNFxwTIpJvad4FTffEU+EcAovOk6jdC1pPrS+s5lQAIvmtqRrcTh+a1UNsX
gse5
ZwCV/Za+/CzVoQh0mSJu0l8r0FYiBhBrS0le7x4At5cp9ugrbVw3mdRWakppWyG7TEypS5um
RB9r
8B1rY3h7JbMLqLe9G3FiQsaLxrSa31U6E9ZrNwsrUyk0gFN7NrUHDGxjLe2kDsZj8KwWtqPE
Ojio
eAcRcWvKTbS4cfp1Esc24TmLSQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAnrlM3Z4WODdes
YF/C
o4r2fVXbvpXXNa+cfByByx6liHlCG1lE7cZ9ByLQDiyBvcgqpp2ev/Ne2WGICte5RDAL480J
3gJA
FoocZgeDRubBN0SMWNjhU4sOh7fZBIPtxckkr6/gWGm+OMWRGvkSlOu6/YvkbuRBQ0eE6JuU
JuBk
VaJf7jQCsPvzbXtebuhtJg6FV7VQV6E0BEPeKDdnD76S828hngY3sXfqCe9V4QNp4YbotnhY
XGVx
XAuj1ml+6zppMJ8PbRgNvOUB1FTE7yuYJI3PsOjbC3VlbGU7Hw1ezkHlR01h/Xvhkk5xgLPD
RDQL
vOsTJv1EaSyKGUl18KqZ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant) 2025</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQN0b47Rd4MrRNoBYixU60rzANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTExMTEw
OTE3
MzJaFw0yODExMTEwOTE3MjFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0OwoWwLR
DBmG
KJEVtvvn+dyIBbD3e0jn655z3JHEhp2K/1MkhEB/YCJtCA1l8TBtA61R9eVEZo1VHxVU4scc
HhQp
HiDh6f8/Opz8GLNFxwTIpJvad4FTffEU+EcAovOk6jdC1pPrS+s5lQAIvmtqRrcTh+a1UNsX
gse5
ZwCV/Za+/CzVoQh0mSJu0l8r0FYiBhBrS0le7x4At5cp9ugrbVw3mdRWakppWyG7TEypS5um
RB9r
8B1rY3h7JbMLqLe9G3FiQsaLxrSa31U6E9ZrNwsrUyk0gFN7NrUHDGxjLe2kDsZj8KwWtqPE
Ojio
eAcRcWvKTbS4cfp1Esc24TmLSQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAnrlM3Z4WODdes
YF/C
o4r2fVXbvpXXNa+cfByByx6liHlCG1lE7cZ9ByLQDiyBvcgqpp2ev/Ne2WGICte5RDAL480J
3gJA
FoocZgeDRubBN0SMWNjhU4sOh7fZBIPtxckkr6/gWGm+OMWRGvkSlOu6/YvkbuRBQ0eE6JuU
JuBk
VaJf7jQCsPvzbXtebuhtJg6FV7VQV6E0BEPeKDdnD76S828hngY3sXfqCe9V4QNp4YbotnhY
XGVx
XAuj1ml+6zppMJ8PbRgNvOUB1FTE7yuYJI3PsOjbC3VlbGU7Hw1ezkHlR01h/Xvhkk5xgLPD
RDQL
vOsTJv1EaSyKGUl18KqZ</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>	AVCP Admin Portal (Staff Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQGNOujD9Lnq1IPvg4Ek1MiTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMDgw
ODM1
MzZaFw0yNzExMDgwODM1MjBaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxa/wUfez
VNE3
9sLkGYXZ/GOZnevraRVuf9Fuu9wGA/fLxM+pGxNu4XB39+bhbxF1yMlpPCVSHLGYgfz5IYa/
gwUe
rokRlK7wOVz/tfFu5UG13zxcecoTpgaUxMxslq5Op09Or1ZAnv3Ww7oJINAqs3usqKNU+LjR
ufoX
f1J9h10XZ4ssuTWgwYT8tKndW0Iyw3N3cxGIOcrSsXiHPZkNS3KH7SbgTDc0eHwJMqvKUpZq
9Abb
5gGLnQXJtFWA3YRvaATNOLWhbV1DGSL+foL7H6+tF2h46DjptRKFuasCiqke5N21LgKTEBLL
KE0s
/izJOXZsB1RU4Fp6lFaqBrr/EQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCoak55LVnxBKt8
70jw
H38tOXXHa4Vuy+NN0tCQy0KCs9gXLmcy3L3m7bEuSSLomJZjkXQN+C8PytMDw7kchJz0uLNg
KRvx
YZt24djlIxzKRhzK59AC55+8TXigz6rEJs/RR5NbsU7+6JTvQNGt5CsGqAaemzPwBabThvkg
Ro+/
xkO5qUhH/mFvaM6inm1xccoart4LpjTOzmWcuIXnWdm7cR2awEBbdrjneFuY7ESAmvEeKVu8
tlYw
1lWz1EsD22UOcwp5ntDN4ETQgcnzD7eB7qDJCFW0x1hbJoGwP6hrBexEHIc/UHZC4uFN15wB
BkP3
dbPbfuzaqXPAGkNTInsX</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>AVCP Admin Portal (Staff Tenant)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQM0npIrlY0bBKmJesqRnaTDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yMzAxMTAw
NzUz
MTRaFw0yNjAxMTAwNzUzMTRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwtIbYySE
cuN+
LBmsafNNrISmGBc3FcwQLo27aCrYs1IqUzeRTZzQRltYKOB1xSQCJAFgL5KrFURh8e6gTKK0
WH78
Ie+V+6TxG6A8T9GnyQH1eaVrYVIC+3GYHOTMfF2o5VlaqLkubTth8InSunQj1c/xVcjNcZUp
mXmP
8JLJyoS8xZyj+HQRMnbKRoYUa73wJqk8dA6tQhr4qoi2hcg90KPOCPSvCqszqggO5dxUYS+4
RwMF
Fs0jqM+1Pb1epbxNCuwDwT+7IrvUyMNpJSJP2eY2JPHAyKF8EzdBdo+lWmzN1O6qvV9MkJRC
gTjD
7Jhzm9F7JbJhbl9Ktwn1EsZ0FQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQC83JaWNG8/5XkC
wqiK
STVkMWOeT+VJXPUpv3cQt8jLTXKYAr7CGyc/fmpBfWtkdBg9uH4kpu133hAT8u+4OPwChSFI
JIin
YRutNP1scIgSVDeDrX9fgagLyBhP3PvC/VLMgt8XQr+Sv66N6ytJKOSnIQKJjqwmmByVY82E
NfMR
o/H13hahEB6MlOZNZzc1n63MlxiJjduqwVGJdgJSLfRtF8WVmZv3rYJWImsoK/f4FBvcGBoA
SNBV
ExFNFJrj2oJwQWfMz1CQEKKVNNhqhO7rVh+7BG3CA+QeJsUcUTAdSZoQ/P4t6PA/GiSVhH0F
EkuU
FlvOoyaPt5b6S5irsTH1</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>	AVCP Admin Portal (Staff Tenant) 2024</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQGNOujD9Lnq1IPvg4Ek1MiTANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNDExMDgw
ODM1
MzZaFw0yNzExMDgwODM1MjBaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxa/wUfez
VNE3
9sLkGYXZ/GOZnevraRVuf9Fuu9wGA/fLxM+pGxNu4XB39+bhbxF1yMlpPCVSHLGYgfz5IYa/
gwUe
rokRlK7wOVz/tfFu5UG13zxcecoTpgaUxMxslq5Op09Or1ZAnv3Ww7oJINAqs3usqKNU+LjR
ufoX
f1J9h10XZ4ssuTWgwYT8tKndW0Iyw3N3cxGIOcrSsXiHPZkNS3KH7SbgTDc0eHwJMqvKUpZq
9Abb
5gGLnQXJtFWA3YRvaATNOLWhbV1DGSL+foL7H6+tF2h46DjptRKFuasCiqke5N21LgKTEBLL
KE0s
/izJOXZsB1RU4Fp6lFaqBrr/EQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCoak55LVnxBKt8
70jw
H38tOXXHa4Vuy+NN0tCQy0KCs9gXLmcy3L3m7bEuSSLomJZjkXQN+C8PytMDw7kchJz0uLNg
KRvx
YZt24djlIxzKRhzK59AC55+8TXigz6rEJs/RR5NbsU7+6JTvQNGt5CsGqAaemzPwBabThvkg
Ro+/
xkO5qUhH/mFvaM6inm1xccoart4LpjTOzmWcuIXnWdm7cR2awEBbdrjneFuY7ESAmvEeKVu8
tlYw
1lWz1EsD22UOcwp5ntDN4ETQgcnzD7eB7qDJCFW0x1hbJoGwP6hrBexEHIc/UHZC4uFN15wB
BkP3
dbPbfuzaqXPAGkNTInsX</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/7edb05ab-42e9-4348-b893-2ba625a350c6/saml2"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">vtc.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Vocational Training Council</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.vtc.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Vocational Training Council</md:Company>
      <md:GivenName>Stephen</md:GivenName>
      <md:SurName>Chan</md:SurName>
      <md:EmailAddress>mailto:stephen.chan@vtc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>Vocational Training Council</md:Company>
      <md:GivenName>mkwongad@vtc.edu.hk</md:GivenName>
      <md:SurName>INVALID_CN_FORMAT</md:SurName>
      <md:EmailAddress>mailto:mkwongad@vtc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://ec2-52-6-26-82.compute-1.amazonaws.com/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2022-11-04T02:03:34Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">JUCC Institution </mdui:DisplayName>
          <mdui:Description xml:lang="en">JUCC Institution for ACVP Project</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">jucc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ec2-52-6-26-82.compute-1.amazonaws.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhjCCAu6gAwIBAgIVAJdqZbCsNnBQr9yu4bM75KKp0dz2MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ec2-52-6-26-82.compute-1.amazonaws.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhjCCAu6gAwIBAgIVAM5bDH4U9GxH1XtKYlzOMFQNcTtkMA0GCSqGSIb3DQEB
CwUAMDExLzAtBgNVBAMMJmVjMi01Mi02LTI2LTgyLmNvbXB1dGUtMS5hbWF6b25h
d3MuY29tMB4XDTIyMTEwMzE2MDAzM1oXDTQyMTEwMzE2MDAzM1owMTEvMC0GA1UE
AwwmZWMyLTUyLTYtMjYtODIuY29tcHV0ZS0xLmFtYXpvbmF3cy5jb20wggGiMA0G
CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCn7yoEnvUr0/aIr2CXY5ixl6VS75rn
9asGmz9WDmGyqBOCJV6uwXIzqOaujFOsjWSsK+eY1hd/lm+ifGkXFOIoqPwEE+cy
i5mHnShyyOMXJaVZgwIMxszwnw7RyXoUVrIbF7O578LcerrtGjKQGpEKlgQyvgfP
2htCOhZbXTtSSoYpWjrEAtTCeC31Ypd+l3INyim23J0lXAZNRh+8r4+IKz+rCYGF
3dTcpdI6iUH5oPJjBUrh3fNpUpKO97FIyJP6simdXEqpjR+Pk9EtfOXak8HM16ko
qod4yu4KL2IMoHWzMzZIxC9BcIG+jK8qHrbdlH23Hc5++okqpzOzfaEEjmjwTAvv
1YUTlUwvqvOegNSMzV2gl//86i+519INoT4VavcVtk7BfuQs+Agf+jYqnMsd4K0U
OLOvKyotj5nTQ0LlqKxaCDyrZgSYm7nZQ0+ATUhNOBHSCk7MftLxL9dCTUx9mMEG
oSoF0fuC7IoOLWkahYkg1GOwWLLjXlY0MKcCAwEAAaOBlDCBkTAdBgNVHQ4EFgQU
k5/KfhvN/2Koj+izl5DWyC4/q4kwcAYDVR0RBGkwZ4ImZWMyLTUyLTYtMjYtODIu
Y29tcHV0ZS0xLmFtYXpvbmF3cy5jb22GPWh0dHBzOi8vZWMyLTUyLTYtMjYtODIu
Y29tcHV0ZS0xLmFtYXpvbmF3cy5jb20vaWRwL3NoaWJib2xldGgwDQYJKoZIhvcN
AQELBQADggGBACKaSgfT26yA+Nx0lbhYXSQWvAm2RVjCikzxRdN8MOVR0nA618rA
3uDo5wQ868l406VW0kaFl5QfIGaSKqAngI4G7ZBJHd9RLmI/xCJlqD1zfQpNj+Wk
agRW9G2lg1o5HW5ckxQAB6H3abY0dtrLDq4+QGjjegHs60q7LlddzGYOdZT0fLpj
AmMWKfql/iPFsRtP4mfNi8XTH82zzVg6DMKVkB7bi3OvjeBfQXcgzJ9yH3qroXjI
1cQlnkFb/fWlr/YGRd9XxqdZgDTIqAm5FBlvNS9llbF1N5hjuFkZAU/3zPvVPRkX
BFkpCoO4GKe7dkpyhmHXBozzRPd79hkDKZOgchY4hsd9quZPpDhKwbGMkl7NV6oi
XbCjeibycunHRr31UVaNrH2Wocz/K5trm86/wpnywfIxLMt1aKFypwzhSTt09jSU
d5kIa0KL8jeB/oFCO1AL0w8xDEhpE4J4W8uQ5otHi9SXYiNyTBOsLvuSmLwpp7nW
XGAsxEuzqk4d2w==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ec2-52-6-26-82.compute-1.amazonaws.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhjCCAu6gAwIBAgIVAMr8qIVqzaqVf/Teu1TgB6+ZZCX7MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ec2-52-6-26-82.compute-1.amazonaws.com:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ec2-52-6-26-82.compute-1.amazonaws.com/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ec2-52-6-26-82.compute-1.amazonaws.com/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ec2-52-6-26-82.compute-1.amazonaws.com/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">jucc.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ec2-52-6-26-82.compute-1.amazonaws.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhjCCAu6gAwIBAgIVAJdqZbCsNnBQr9yu4bM75KKp0dz2MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ec2-52-6-26-82.compute-1.amazonaws.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhjCCAu6gAwIBAgIVAM5bDH4U9GxH1XtKYlzOMFQNcTtkMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=ec2-52-6-26-82.compute-1.amazonaws.com</ds:X509SubjectName>
            <ds:X509Certificate>MIIEhjCCAu6gAwIBAgIVAMr8qIVqzaqVf/Teu1TgB6+ZZCX7MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ec2-52-6-26-82.compute-1.amazonaws.com:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">jucc.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Joint Universities Computer Centre Ltd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jucc.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Vocational Training Council</md:Company>
      <md:GivenName>mkwongad@vtc.edu.hk</md:GivenName>
      <md:SurName>INVALID_CN_FORMAT</md:SurName>
      <md:EmailAddress>mailto:mkwongad@vtc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp2.cityu.edu.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2024-03-20T02:25:26Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">City University of Hong Kong</mdui:DisplayName>
          <mdui:Description xml:lang="en">City University of Hong Kong</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">cityu.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>front channel signing (01)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUMzObN9kXEIO2/Q7zSHgtu0odKdcwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAwwRaWRwMi5jaXR5dS5lZHUuaGswHhcNMjQwNzA5MDE1MzUx
WhcNNDQwNzA5MDE1MzUxWjAcMRowGAYDVQQDDBFpZHAyLmNpdHl1LmVkdS5oazCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKVIT1YXHIWYENbrHq9+TUFp
sqv1IVjuS8qG7fHSW/IsGzjEaoTK1PCqwgJN0yGsk6Iezrjp9HAMLq9wkE6M32dJ
CdXx7kW45ZEUeCCtES+0NAzJP/kMleeFwd91feBLoG+c0gT92Y59aoLxHM9ldAl4
ufrO5rTj690VoihZbnGTts17uJ+E6ScWBhtTsBRiIwwlvkgnix9bO0/S6pX8RYwA
Zzcz12fiSmjs7zxuXniH+5izz747gJe70omhm1Ee+oCF8XVDSEqFW40gszblrV/C
mZD75xvIpw5MiMznMA5JOnUhZJwjAPqgPTViDwbp6G3Kh5P4GnEtsNw8KJKIlp06
HfTLqfZ1LFSWFaBt8kRsitYQFY/YAAXCVjzYsXRm7mTJibZmvwEeC3J3/X7d1VxZ
S7JR8i4gWB7W0inVRcV7FLolRosR4ktkV6s/VkdDRB0DVvl2qPHw0572dMK91PQc
OArTz4TQrK385AaGcAxRxO67fAYNzdVgfbwsJGwn7wIDAQABo14wXDAdBgNVHQ4E
FgQUIT3obN0lxEMjtM2vPBgODvajaB4wOwYDVR0RBDQwMoIRaWRwMi5jaXR5dS5l
ZHUuaGuGHWh0dHBzOi8vaWRwMi5jaXR5dS5lZHUuaGsvaWRwMA0GCSqGSIb3DQEB
CwUAA4IBgQBJh5jx4L9STgANDbSCpfTE68ZtVbUPNKyWAJoTsGdlTanldU5BGU1k
ZGDGRe7UxEzDsozsR6FJvjAt25/XatmSm0O6JRWOzKCyYSDe/nSHxSPDTxQra91q
2aQJeQI1VAJ2fc0+jkIr08wkPBOl4Vvt74S6wRIcpkcXK1jrYFAeBRzLAQ0ef5GY
17khhO8EeiO0cm7iCE89tON/tb/PYyE7VHRsyMGl+oJ5fYW+vrPO1tAAEhmTvB3U
cJPpBiGpCIHPjgpVWIdK2Rlxuzx9zbznAESvgteImO8HwvCLXh/ELZy3l+zxUUzE
VkV344MdHSKvVZgFLsPxkIHGVWGMG8TE9egeWYYVq5UYf9H+k3R1kSscIlVCeY2j
7aiMw4e2eiaQNcNf+FnSswl9AN+q7YbFykpeYwGzNFFjaNys1ERHiK6k1TxwYhUL
bo20ayr+s9QEWc7cCpbn4Pf8F5wadYWcmS6GxVSsMctTO7rCOZ//NEtODn6d/9TT
pKb5nz80DLw=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>encryption (02)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUTu5tqjhMmkTvtiECcpSDx8sP9EswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>front channel signing (02)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUYubfPWEbi7jTsPbUVrezfMoFubswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>encryption (01)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUJJQCb0mre1ItuL0R5gZqciglYG0wDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAwwRaWRwMi5jaXR5dS5lZHUuaGswHhcNMjQwNzA5MDE1MzUy
WhcNNDQwNzA5MDE1MzUyWjAcMRowGAYDVQQDDBFpZHAyLmNpdHl1LmVkdS5oazCC
AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIovE6jFFc5kHGswfnQZs+qX
mFaVw8RFB3fiQcdkjdmxr7LiMZmg1DWSbQVA4mmuAMnFlPvZGOHV+mb9uTDhkmr7
/syBuM1X4F4KnaJHgD6DBXvTl8yoTjUwiepw2O6mTBbak/kGjHIdunQOZD7w2qmt
h35/uVLrve4tnrnrWjtcdiLxDPA9z+xX0PO97/buvu1HV6Nadmy4cx3v6qnn4rn1
vlQZmTAJrTifVjuvKv2rPyNuNXui7H9eoerymijTZdx9PNOhUXmuCNWebLVlXbqo
/tAZUFCoEKhKUp+ZeNtthV3TiYQvtx3Blod5jVJiR0H4EFNdsv8eVWYYVI/7Kn41
CyrN54DFfWxZRUJMp4H3kjErQLRRRwNFrfXDMWQqSEIAY1wgh7d3b49hMUBE1Z5i
/NIrIq8vn8V5o2nYz6jj/SpBRKmSmaZp/7gqxs2yWWphrlrbG96jH+Aoz5JHzTs+
gEv+giOBZfPDB6kbSd9Zdj7IOMVxak6CwfrUt3TW0QIDAQABo14wXDAdBgNVHQ4E
FgQULWJNho4+fp/YeG0QLeteGQbJX7QwOwYDVR0RBDQwMoIRaWRwMi5jaXR5dS5l
ZHUuaGuGHWh0dHBzOi8vaWRwMi5jaXR5dS5lZHUuaGsvaWRwMA0GCSqGSIb3DQEB
CwUAA4IBgQAXo9fW4MbGT3drB+zg3LS96qI9F8fNwgIWLyc8GKbjkRwwJKbVxCBB
loGTC2p4nw/3+1vMPe9QCSHVxu/IzsYEHs3fXvHjwYJ2+tCK6zM/LwXZdb4fX7VL
EpCQgjraPfBPGqX25XyfQPpX+yOUN46exx218I7EqQaElX/F8XqfPVRk3DBWKeW9
yiDgNjfIS8IBIcGS3Hr8hxHoCJcpYT5BypU/8CbUtcUcycv90sIUjGHhwtWNppDD
Qt0z3dUxyVj5xKoPPlQx40s8Vf4xq9d1CseGjkoktn5i65WukmDTy57vDahVg5eR
vmt3AW8uHU+SOaDOLLBs9dhTH7CVLZSMp7ciLkgLwCv0SreOB5W0oI7dkATg6Fg9
rI4+/G/mtjCRZg+ltpBvenWwk/U7NB/+DJmCs8UDG3LMTx4/a5KtNxd9J0RZJ2WH
p6MxNawR3X913yIw+BHwKlC07Oo+O5nf7Za/0Zqdx7hLG0Nyg8D33zGlA92n2Ok+
NnijyRnPXOs=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.cityu.edu.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp2.cityu.edu.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp2.cityu.edu.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.cityu.edu.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">cityu.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>front channel signing (01)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUMzObN9kXEIO2/Q7zSHgtu0odKdcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>encryption (02)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUTu5tqjhMmkTvtiECcpSDx8sP9EswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>front channel signing (02)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUYubfPWEbi7jTsPbUVrezfMoFubswDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>encryption (01)</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp2.cityu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIEJDCCAoygAwIBAgIUJJQCb0mre1ItuL0R5gZqciglYG0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.cityu.edu.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">cityu.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">City University of Hong Kong</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cityu.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Hong Kong Access Federation</md:Company>
      <md:GivenName>Joe</md:GivenName>
      <md:SurName>Lee</md:SurName>
      <md:EmailAddress>mailto:joe.lee@cityu.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" entityID="https://oasishpc.hk/metadata.xml">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2022-10-17T06:16:16Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">JUCC HPC-as-a-Service Web Portal</mdui:DisplayName>
          <mdui:Description xml:lang="en">JUCC-wide HPC-as-a-Service Platform</mdui:Description>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://oasishpc.hk/saml/discovered"/>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=oasis-saml-sp,O=Oneasia Network Limited,L=Hong Kong,ST=Hong Kong,C=HK</ds:X509SubjectName>
            <ds:X509Certificate>MIIFvzCCA6egAwIBAgIUBtTibocx+E2vawYHBHnUrLepAZwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=oasis-saml-sp,O=Oneasia Network Limited,L=Hong Kong,ST=Hong Kong,C=HK</ds:X509SubjectName>
            <ds:X509Certificate>MIIFvzCCA6egAwIBAgIUBtTibocx+E2vawYHBHnUrLepAZwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oasishpc.hk/logout"/>
      <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oasishpc.hk/saml/deprovision"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService index="2" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://oasishpc.hk/assert"/>
      <md:AssertionConsumerService index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oasishpc.hk/assert"/>
      <md:AttributeConsumingService index="1" isDefault="false">
        <md:ServiceName xml:lang="en">JUCC HPC-as-a-Service Web Portal</md:ServiceName>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">jucc.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Joint Universities Computer Centre Ltd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jucc.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>The University of Hong Kong </md:Company>
      <md:GivenName>Chan</md:GivenName>
      <md:SurName>Lilian</md:SurName>
      <md:EmailAddress>mailto:lilianyl@hku.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://afidp.eduhk.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2016-11-18T03:48:20Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Education University of Hong Kong</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Education University of Hong Kong is a publicly funded tertiary institution dedicated to the advancement of teaching and learning, through a diverse offering of academic and research programmes on teacher education and complementary social sciences an</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">eduhk.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>afidp.eduhk.hk</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=afidp.eduhk.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANeaEbP11fm4WAjxvN/kYQRJTRVMMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmFmaWRwLmVkdWhrLmhrMB4XDTE2MTEyMTAyMjExNVoX
DTM2MTEyMTAyMjExNVowGTEXMBUGA1UEAwwOYWZpZHAuZWR1aGsuaGswggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCBjH9h45DUYLHH4Fk60mSvmYVd/ite
BBO3uepAicP+iK89YUQdrZpyonmYNidf9P4Idn9fOI5bWiPziZrcQLyogDS94Cm8
lVfxepAJDzmeHU82P+VXYDgD5s1G3Q7QpKbohxVRJIAxtQ8Z1XzReuCZdESYPvuv
ZH6DkM1XqxFJOrTXWrugor84Xp9Bqg46tQn2wwdamj6H03vRncplkBZsQ3p+WuQu
Y9GZx7qrql2V0EyrajZWOJEprl7bZhrDh62nq4goUBgDTxIkKeEZCrsfwBhDHcBm
ILc3w9y6zKBegpGEMxQFe12jWR1ISEktqXc+XS/ZI03He5Rsidj0VAelAgMBAAGj
YzBhMB0GA1UdDgQWBBQtCEFepB5BT74OIVRppVJtBqkwjjBABgNVHREEOTA3gg5h
ZmlkcC5lZHVoay5oa4YlaHR0cHM6Ly9hZmlkcC5lZHVoay5oay9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAC2C3Du3SGyxSOpS7ObQtawrMxeT97vE4
XPpumQ8uUyB4gkE0eSxyXPC+BHdY3eYkuhWsHEAd/yQtNvVGITsmdkE8wHen2RYU
T9sBvd9kgKNbC8Gz0D0e/CcAs2c9R2y6gDQM/liXMplUYDcmfrMLj7mqCqdbVqfv
phGUWf2f+ppZJGU1pNHZkL4U43fD1xdSyQer2SuLA/rH/100THrS+naXtL89QDjT
mo6ysUE7J9LVye0UiRCf/zSUeqrPK/Bm1t/divrwAM8VAJyHSA9/oxgYeJHvMaOl
bO9wOYvkC9RD5Nh1p2kMBM9lViXIIsCAKyFeHQMOeNKMQxDHsPdwCQ==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>afidp.eduhk.hk</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=afidp.eduhk.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUAecWE60nyejU92/SkZhoOiDSUEcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>afidp.eduhk.hk</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=afidp.eduhk.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIAFe/SzhV7Umfu68waV5ncu44NOMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://afidp.eduhk.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://afidp.eduhk.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://afidp.eduhk.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://afidp.eduhk.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">eduhk.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>afidp.eduhk.hk</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=afidp.eduhk.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVANeaEbP11fm4WAjxvN/kYQRJTRVMMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>afidp.eduhk.hk</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=afidp.eduhk.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDIzCCAgugAwIBAgIUAecWE60nyejU92/SkZhoOiDSUEcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>afidp.eduhk.hk</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=afidp.eduhk.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDJDCCAgygAwIBAgIVAIAFe/SzhV7Umfu68waV5ncu44NOMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://afidp.eduhk.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">eduhk.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Education University of Hong Kong</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.eduhk.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>The Education University of Hong Kong</md:Company>
      <md:GivenName>Chi</md:GivenName>
      <md:SurName>Kwong,</md:SurName>
      <md:EmailAddress>mailto:ffong@eduhk.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>The Education University of Hong Kong</md:Company>
      <md:GivenName>TK</md:GivenName>
      <md:SurName>Kwan</md:SurName>
      <md:EmailAddress>mailto:tkkwan@eduhk.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>The Education University of Hong Kong</md:Company>
      <md:GivenName>Tin</md:GivenName>
      <md:SurName>Chi,</md:SurName>
      <md:EmailAddress>mailto:tcpang@eduhk.hk</md:EmailAddress>
      <md:TelephoneNumber>+85229488250</md:TelephoneNumber>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>The Education University of Hong Kong</md:Company>
      <md:GivenName>Agnes</md:GivenName>
      <md:SurName>Yeung</md:SurName>
      <md:EmailAddress>mailto:ayeung@eduhk.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sts.windows.net/03edabb0-8a31-453e-a507-fdd0287b118d/">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2025-10-12T16:01:53Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">HKU SPACE</mdui:DisplayName>
          <mdui:Description xml:lang="en">HKU SPACE Environment</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">hkuspace.hku.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Admin Portal</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQGOTcuba/EbhIKRIyD7Q7LjANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTEwMDIw
MzMx
NDBaFw0yODEwMDIwMzMxNDFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA06D9oHm1
MXje
siFRgWxETbx68hqA8GB2GZYLT1a3AD5CiBBEf1PqkH6j/lP03/WIEk14KH2yAyd5O+e8V4Ld
1/Le
zIGJj/X8PQ+NV8bg+yXKGH6ZEv9WnSyONIW1uYeQ+ygbAXfiaM6jNmYhI1deYeL3ujAbf/0h
xDK8
ZKTMxxEEOt1hjda/edYnmA0wrtlAq913a8e8PEX1ssCTCHlEXSp99ol4TZwOASpJ3COIw0Hk
wcMo
KvhRZVS30WPH24wouRSs1WGQHimLF1d0SLTegR8vQvulzZr5p3uFPjy7EQKbj+aDLhzYL76N
nYky
fELyFug3rq40uv2cRELhwDdQyQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAt7UUBvOxgVGOs
Y1On
b9hmK88XSBrDGvWfazt5A8bB5PuFrCG/5JcBK61p5C+2owM+2iP9PRHI6Awmw9eNjUVR4RVg
LM/a
B+AGvjAkmkkZFmxkjxfsjXj/sL2OrIfiYuw+SpBQDT0qTkFDQo/I8T6VJQDHCUklvbJ9ZpJh
g86D
hCERhveg06KmiXaYT2joStNEEwOcFOJQEX4KqKPcIrKGPJBRZCgfFZ694OXzoSjiCjIYRODD
rfYG
17mqK63TkzyHw+yplcdhkcJQ2wF2J5DeLeGj8Z4gTGhPbbsi2fAIq6ejF9B2AQGj+d8oWV1M
b0nn
31jfC9S2XF+jzgfWgeAH</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQPuxrvCeYrZFCju0+d6+XdDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTEwMDIw
MjQ3
NDlaFw0yODEwMDIwMjQ3NDlaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAobfuAZ7i
XMyM
O4CgPOL12WjoPlDafQh/f9LcjY4nLx1NxC+h2lK4BogVZTY/0YAzGHSLbj7NhnrIxjqkgYdi
+l2W
fiiddFF4xhrHQc0dTyaiUZFCguo9a6bQCy1tBUrGNjmeYI4odYcGtIC9ixJU5T8GHsUAJXQ6
+9Le
uPrSpwzeBLlRga+IsjBGvpes4AAuNVuKrqQGRZKuY+OWF9Xn/J5TIB7u1JkjLhvXmXgY12g3
d0RJ
fGtlKkkQWIkJNInA1d68xaNlETYiyke5SOTskRqlfaHYCcc5KWsGvRERuAomGLH96UlhCp3J
mjKR
YNxKzGCPrS/yax16+sxpwjrlGQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCV9k/4O+2XbBou
vpZS
IWMGUB03q/6xyL4CE1YYlFUB5dKodhx8kwMhdyHFCNhoHnR5BFAb7LwoWjQbUlBQ3LcyHqYY
Ft6x
VSTsoO50Yaz2e48PwC+UwhjQRnopDTF/SEIA9w9zXZxyletq/r2EuQDSein2uo0ficM+j3sb
xZ3k
aOZR04NWNYNN5ohYQ9dR/sGNJBNF3fpTiY/WdHjA9Q22HK1W1rRmYt1XVaDwdw7KWtlr5/hU
yFpg
4AnK3IWup+bLEXqTbtxeHI+JnUW0IpEfSHRIAq5vKOuLg8FIb3/haUdiR1I3ykhnkxFlT0Rt
8/2p
FaGV4/VfWc5ackYEZZc3</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Student Portal</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQEXtWyw8dy4pJlNh0chKNDzANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTEwMTQw
MzI0
MjRaFw0yODEwMTQwMzI0MjRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwcNGoFyG
wI62
eND86yvHXfSTBWBOarEbGT1Nre9fkDZ7I0SlqgjxUk6n4GswRRsu5OMq5ke2p48SEC1eqYzH
ehT0
L0/Ht32kj6Ka30mYv5rA7tuMQK62riCtPoewjOn1JEnlToMpAewI2WfZLdRwiAXseHhleQjV
Ecrn
MaC2uyPU8uHxVTkmrNS83vjxJrWnGWC+VFmAMEiWwP2wDerEK1pNhBdQpnooCG4kEKr3k+Hv
3fW9
bvTBaLkJDotUMJP+gljShAfEmkaSRZMYfOGnmgY8ZotxXKQbbDt6jSYdOa2Thxzpo9sY63ZR
7bXq
h5Nx3RjzWa36PYL8iWQX4N5RKQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCgDh7UQrG7XRwL
LA9Q
7LhLSt/DRyYPxPqB/6w7EGHBvpP1Mu6rl+lWoVX1A5UVkA3Yh3NeoOguFfm/Y8Z0kjZwsRiQ
5Df2
0aMXaYoL8H2LIWrHKv+Z7GdmZjllWJXRfGxPxAGhDqbMxPxXgmlmGHwq/GeGb5xLDMQZbC5n
e40y
ZRoemvA31aEE99eP/vb9SJZv8vrTJk7Ix7J8eOEIZnWwfbzQavYshd1/YtCuRFZ56LCQN2n2
i/xp
Y4yTmhRlGJE494njHTC7tknvwsozK8zuFqxDamDDQEK2GwToy6qcuf71JTIVEGcjJ18m4UDg
hkI5
f5/0GZLdzZTa5N3+WDwW</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/03edabb0-8a31-453e-a507-fdd0287b118d/saml2"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/03edabb0-8a31-453e-a507-fdd0287b118d/saml2"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/03edabb0-8a31-453e-a507-fdd0287b118d/saml2"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/03edabb0-8a31-453e-a507-fdd0287b118d/saml2"/>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">hkuspace.hku.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Admin Portal</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQGOTcuba/EbhIKRIyD7Q7LjANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTEwMDIw
MzMx
NDBaFw0yODEwMDIwMzMxNDFaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA06D9oHm1
MXje
siFRgWxETbx68hqA8GB2GZYLT1a3AD5CiBBEf1PqkH6j/lP03/WIEk14KH2yAyd5O+e8V4Ld
1/Le
zIGJj/X8PQ+NV8bg+yXKGH6ZEv9WnSyONIW1uYeQ+ygbAXfiaM6jNmYhI1deYeL3ujAbf/0h
xDK8
ZKTMxxEEOt1hjda/edYnmA0wrtlAq913a8e8PEX1ssCTCHlEXSp99ol4TZwOASpJ3COIw0Hk
wcMo
KvhRZVS30WPH24wouRSs1WGQHimLF1d0SLTegR8vQvulzZr5p3uFPjy7EQKbj+aDLhzYL76N
nYky
fELyFug3rq40uv2cRELhwDdQyQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAt7UUBvOxgVGOs
Y1On
b9hmK88XSBrDGvWfazt5A8bB5PuFrCG/5JcBK61p5C+2owM+2iP9PRHI6Awmw9eNjUVR4RVg
LM/a
B+AGvjAkmkkZFmxkjxfsjXj/sL2OrIfiYuw+SpBQDT0qTkFDQo/I8T6VJQDHCUklvbJ9ZpJh
g86D
hCERhveg06KmiXaYT2joStNEEwOcFOJQEX4KqKPcIrKGPJBRZCgfFZ694OXzoSjiCjIYRODD
rfYG
17mqK63TkzyHw+yplcdhkcJQ2wF2J5DeLeGj8Z4gTGhPbbsi2fAIq6ejF9B2AQGj+d8oWV1M
b0nn
31jfC9S2XF+jzgfWgeAH</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQPuxrvCeYrZFCju0+d6+XdDANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTEwMDIw
MjQ3
NDlaFw0yODEwMDIwMjQ3NDlaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAobfuAZ7i
XMyM
O4CgPOL12WjoPlDafQh/f9LcjY4nLx1NxC+h2lK4BogVZTY/0YAzGHSLbj7NhnrIxjqkgYdi
+l2W
fiiddFF4xhrHQc0dTyaiUZFCguo9a6bQCy1tBUrGNjmeYI4odYcGtIC9ixJU5T8GHsUAJXQ6
+9Le
uPrSpwzeBLlRga+IsjBGvpes4AAuNVuKrqQGRZKuY+OWF9Xn/J5TIB7u1JkjLhvXmXgY12g3
d0RJ
fGtlKkkQWIkJNInA1d68xaNlETYiyke5SOTskRqlfaHYCcc5KWsGvRERuAomGLH96UlhCp3J
mjKR
YNxKzGCPrS/yax16+sxpwjrlGQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCV9k/4O+2XbBou
vpZS
IWMGUB03q/6xyL4CE1YYlFUB5dKodhx8kwMhdyHFCNhoHnR5BFAb7LwoWjQbUlBQ3LcyHqYY
Ft6x
VSTsoO50Yaz2e48PwC+UwhjQRnopDTF/SEIA9w9zXZxyletq/r2EuQDSein2uo0ficM+j3sb
xZ3k
aOZR04NWNYNN5ohYQ9dR/sGNJBNF3fpTiY/WdHjA9Q22HK1W1rRmYt1XVaDwdw7KWtlr5/hU
yFpg
4AnK3IWup+bLEXqTbtxeHI+JnUW0IpEfSHRIAq5vKOuLg8FIb3/haUdiR1I3ykhnkxFlT0Rt
8/2p
FaGV4/VfWc5ackYEZZc3</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>Student Portal</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=Microsoft Azure Federated SSO Certificate</ds:X509SubjectName>
            <ds:X509Certificate>MIIC8DCCAdigAwIBAgIQEXtWyw8dy4pJlNh0chKNDzANBgkqhkiG9w0BAQsFADA0MTIwMAYD
VQQD
EylNaWNyb3NvZnQgQXp1cmUgRmVkZXJhdGVkIFNTTyBDZXJ0aWZpY2F0ZTAeFw0yNTEwMTQw
MzI0
MjRaFw0yODEwMTQwMzI0MjRaMDQxMjAwBgNVBAMTKU1pY3Jvc29mdCBBenVyZSBGZWRlcmF0
ZWQg
U1NPIENlcnRpZmljYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwcNGoFyG
wI62
eND86yvHXfSTBWBOarEbGT1Nre9fkDZ7I0SlqgjxUk6n4GswRRsu5OMq5ke2p48SEC1eqYzH
ehT0
L0/Ht32kj6Ka30mYv5rA7tuMQK62riCtPoewjOn1JEnlToMpAewI2WfZLdRwiAXseHhleQjV
Ecrn
MaC2uyPU8uHxVTkmrNS83vjxJrWnGWC+VFmAMEiWwP2wDerEK1pNhBdQpnooCG4kEKr3k+Hv
3fW9
bvTBaLkJDotUMJP+gljShAfEmkaSRZMYfOGnmgY8ZotxXKQbbDt6jSYdOa2Thxzpo9sY63ZR
7bXq
h5Nx3RjzWa36PYL8iWQX4N5RKQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCgDh7UQrG7XRwL
LA9Q
7LhLSt/DRyYPxPqB/6w7EGHBvpP1Mu6rl+lWoVX1A5UVkA3Yh3NeoOguFfm/Y8Z0kjZwsRiQ
5Df2
0aMXaYoL8H2LIWrHKv+Z7GdmZjllWJXRfGxPxAGhDqbMxPxXgmlmGHwq/GeGb5xLDMQZbC5n
e40y
ZRoemvA31aEE99eP/vb9SJZv8vrTJk7Ix7J8eOEIZnWwfbzQavYshd1/YtCuRFZ56LCQN2n2
i/xp
Y4yTmhRlGJE494njHTC7tknvwsozK8zuFqxDamDDQEK2GwToy6qcuf71JTIVEGcjJ18m4UDg
hkI5
f5/0GZLdzZTa5N3+WDwW</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.microsoftonline.com/03edabb0-8a31-453e-a507-fdd0287b118d/saml2"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">hkuspace.hku.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">HKU SPACE</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://hkuspace.hku.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>HKU SPACE</md:Company>
      <md:GivenName>Admin</md:GivenName>
      <md:SurName>ACVP</md:SurName>
      <md:EmailAddress>mailto:acvpadmin@hkuspace.hku.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor entityID="https://www.acvp.hk/saml2/service-provider-metadata-all">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2021-11-05T04:38:22Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">ACVP Student Portal</mdui:DisplayName>
          <mdui:Description xml:lang="en">ACVP Student Portal</mdui:Description>
        </mdui:UIInfo>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.acvp.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIICqDCCAZACCQCUF+lXjVEt+jANBgkqhkiG9w0BAQsFADAWMRQwEgYDVQQDDAt3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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=www.acvp.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIICqDCCAZACCQCUF+lXjVEt+jANBgkqhkiG9w0BAQsFADAWMRQwEgYDVQQDDAt3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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService index="3" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.acvp.hk/login/saml2/sso-all/artifact"/>
      <md:AssertionConsumerService index="1" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.acvp.hk/login/saml2/sso-all"/>
      <md:AttributeConsumingService index="1" isDefault="false">
        <md:ServiceName xml:lang="en">ACVP Student Portal</md:ServiceName>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
        <md:RequestedAttribute isRequired="false" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganization"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">jucc.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Joint Universities Computer Centre Ltd</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">https://www.jucc.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Joint Universities Computer Centre Ltd</md:Company>
      <md:GivenName>David</md:GivenName>
      <md:SurName>Choi</md:SurName>
      <md:EmailAddress>mailto:david.choi@jucc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.polyu.edu.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2016-10-04T02:50:36Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Hong Kong Polytechnic University</mdui:DisplayName>
          <mdui:Description xml:lang="en">The Hong Kong Polytechnic University</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">polyu.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.polyu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIUbwg8GaXeyEUkG1IYSdP/IzRoONQwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.polyu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLDCCAhSgAwIBAgIVAM7Vm7TKaejdScwhpOvSdaDF2FaLMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.polyu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIUIas6QU0srEyPYYi3hG8Aj6HPr8UwDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAwwQaWRwLnBvbHl1LmVkdS5oazAeFw0xNjEwMDMwOTIwMDZa
Fw0zNjEwMDMwOTIwMDZaMBsxGTAXBgNVBAMMEGlkcC5wb2x5dS5lZHUuaGswggEi
MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCUXk5Ow14VuC9Tw/C2s10FEkfK
27pv1+jZT7Tp2MK2mxLpOY/29X9cVjMy6OwkhafV2SjU1zROuekLxkRRkkmGZLKx
4aGFH64ZimAwx8+oqEs/2kzqdfWrqhsWRUQcIDIYgnZ40Ebr2g9U0fxYnw7XwdXr
kopSp3GB4b+1OjYPigGdjTT93/7/8VMDco81cF5wKyBzmndfbq2yvidY1dpECo+E
+dv5XCIozge5XF3jnRMIRwaF27/4WM4BXGpOHj/UFejAmOVyMgO9JV9EQvh16Y93
L8Uo/v6UqdkBTcbul266WKBGyadI11mOU+lh06lSeTCedj1gKHqAW1BzalOTAgMB
AAGjZzBlMB0GA1UdDgQWBBTi5ESTBODAZpYqiFdYDItH7ue2jDBEBgNVHREEPTA7
ghBpZHAucG9seXUuZWR1LmhrhidodHRwczovL2lkcC5wb2x5dS5lZHUuaGsvaWRw
L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAA6d5252qGQG/bMPEK/C1P79
1w03LYap1N2x6h8qNWXTNIuz9x1U80dAGo/I06YP9S7S2zGktaWj5GAIUg0w5TfP
+u37IPdMrF3VUXFtILE1i6Ch3EcpADKeFSyNgztGsBAIV9mcLMv8bqFg8agUNU31
gKPX9e4PQq4z7K69SOhgvGnhyNdHcjLXsWuk8g3DlhiU9D2RjvXXlGEZfVmQdBiC
f27Rzui5KN9vT5KLaxiBj3X/jTqmSgdp/j5mh8Zv6zh/MH6kZ54l2EZippNOGZHU
4/9oHAPDNTU0nVFDmMdjpaSWg9XZ6cYoBCDt+kal3szno+III9eUpoEr15/hx0A=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.polyu.edu.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.polyu.edu.hk/idp/profile/Logout"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.polyu.edu.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.polyu.edu.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.polyu.edu.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">polyu.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.polyu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIUbwg8GaXeyEUkG1IYSdP/IzRoONQwDQYJKoZIhvcNAQEL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=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.polyu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLDCCAhSgAwIBAgIVAM7Vm7TKaejdScwhpOvSdaDF2FaLMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.polyu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKzCCAhOgAwIBAgIUIas6QU0srEyPYYi3hG8Aj6HPr8UwDQYJKoZIhvcNAQEL
BQAwGzEZMBcGA1UEAwwQaWRwLnBvbHl1LmVkdS5oazAeFw0xNjEwMDMwOTIwMDZa
Fw0zNjEwMDMwOTIwMDZaMBsxGTAXBgNVBAMMEGlkcC5wb2x5dS5lZHUuaGswggEi
MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCUXk5Ow14VuC9Tw/C2s10FEkfK
27pv1+jZT7Tp2MK2mxLpOY/29X9cVjMy6OwkhafV2SjU1zROuekLxkRRkkmGZLKx
4aGFH64ZimAwx8+oqEs/2kzqdfWrqhsWRUQcIDIYgnZ40Ebr2g9U0fxYnw7XwdXr
kopSp3GB4b+1OjYPigGdjTT93/7/8VMDco81cF5wKyBzmndfbq2yvidY1dpECo+E
+dv5XCIozge5XF3jnRMIRwaF27/4WM4BXGpOHj/UFejAmOVyMgO9JV9EQvh16Y93
L8Uo/v6UqdkBTcbul266WKBGyadI11mOU+lh06lSeTCedj1gKHqAW1BzalOTAgMB
AAGjZzBlMB0GA1UdDgQWBBTi5ESTBODAZpYqiFdYDItH7ue2jDBEBgNVHREEPTA7
ghBpZHAucG9seXUuZWR1LmhrhidodHRwczovL2lkcC5wb2x5dS5lZHUuaGsvaWRw
L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAA6d5252qGQG/bMPEK/C1P79
1w03LYap1N2x6h8qNWXTNIuz9x1U80dAGo/I06YP9S7S2zGktaWj5GAIUg0w5TfP
+u37IPdMrF3VUXFtILE1i6Ch3EcpADKeFSyNgztGsBAIV9mcLMv8bqFg8agUNU31
gKPX9e4PQq4z7K69SOhgvGnhyNdHcjLXsWuk8g3DlhiU9D2RjvXXlGEZfVmQdBiC
f27Rzui5KN9vT5KLaxiBj3X/jTqmSgdp/j5mh8Zv6zh/MH6kZ54l2EZippNOGZHU
4/9oHAPDNTU0nVFDmMdjpaSWg9XZ6cYoBCDt+kal3szno+III9eUpoEr15/hx0A=</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.polyu.edu.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">polyu.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Hong Kong Polytechnic University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.polyu.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Hong Kong Access Federation</md:Company>
      <md:GivenName>Bill</md:GivenName>
      <md:SurName>Lam</md:SurName>
      <md:EmailAddress>mailto:itbill@polyu.edu.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>The Hong Kong Polytechnic University</md:Company>
      <md:GivenName>Fung</md:GivenName>
      <md:SurName>Ho</md:SurName>
      <md:EmailAddress>mailto:patrick.hk.fung@polyu.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://vh.hkaf.edu.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2016-06-04T21:48:45Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">HKAF Virtual Home</mdui:DisplayName>
          <mdui:Description xml:lang="en">HKAF Virtual Home</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">vh.hkaf.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>NEW</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vh.hkaf.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIJAKgRB9k1RMEyMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>NEW</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vh.hkaf.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIJAKgRB9k1RMEyMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vh.hkaf.edu.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vh.hkaf.edu.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vh.hkaf.edu.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vh.hkaf.edu.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganizationType"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationalUnit"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.27856.1.2.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="auEduPersonSharedToken"/>
      <saml:Attribute Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="postalAddress"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="telephoneNumber"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrimaryAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mobileNumber"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">vh.hkaf.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:KeyName>NEW</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vh.hkaf.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIJAKgRB9k1RMEyMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:KeyName>NEW</ds:KeyName>
          <ds:X509Data>
            <ds:X509SubjectName>CN=vh.hkaf.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDGDCCAgCgAwIBAgIJAKgRB9k1RMEyMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vh.hkaf.edu.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganizationType"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationalUnit"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.27856.1.2.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="auEduPersonSharedToken"/>
      <saml:Attribute Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="postalAddress"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="telephoneNumber"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrimaryAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="homeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mobileNumber"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">hkaf.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Hong Kong Access Federation</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.hkaf.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Hong Kong Access Federation</md:Company>
      <md:GivenName>HKAF</md:GivenName>
      <md:SurName>Support</md:SurName>
      <md:EmailAddress>mailto:hkaf-support@jucc.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://luidp01.ln.edu.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2016-11-10T02:28:36Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
      <mdattr:EntityAttributes>
        <!-- Attribute for REFEDS Research & Scholarship -->
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category-support">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Lingnan University</mdui:DisplayName>
          <mdui:Description xml:lang="en">Lingnan University</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">ln.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=luidp01.ln.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAMtC9nll2zEX/xMn7+X5r3g3XwvWMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWx1aWRwMDEubG4uZWR1LmhrMB4XDTE2MTEwOTEwMjM1
NFoXDTM2MTEwOTEwMjM1NFowHDEaMBgGA1UEAwwRbHVpZHAwMS5sbi5lZHUuaGsw
ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCCZKceZQOwf28IWmQPAMi5
LlAk+xlL9cabo8ofUuo+dmXsFI1wOymljSZ/09wvkK7NXIGgo0sHorLDgN6SWAVk
zrxhldYxAJm4l2WHxD4KDAnu4CK7pGW6JBRcfmiwRlSENT4jyzp8dFOfpfGs+pgW
CAiFfRkSjLvHQ5lkGe78g2awDLtPVJLa+8N45XfY1vJNG0vTjJZ2N/NbGzjeQDXI
3oVYxiC6vGCnSURyX32rlS5qbB0Yo2sSZjAE2y3Rz1QtmSUkVrupTBzXyg519l6a
KxtflOPN36ijbbLNG9LIkjVqlkyT/23VN1SXLKPqlsPewHpGwEr4L8bANJQ04M+B
AgMBAAGjaTBnMB0GA1UdDgQWBBTuz04ldVCRk1dQgxlttfDPFQchjzBGBgNVHREE
PzA9ghFsdWlkcDAxLmxuLmVkdS5oa4YoaHR0cHM6Ly9sdWlkcDAxLmxuLmVkdS5o
ay9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEANsAIfTdIQr1AIOHu
S9v+TVD42CUiSH3oZuEthheDJUTGCyarQ0iXlOkaDQ0I0QCla8TGFENm9kb6ua/d
u4eAkUJcJ5djSZJOqNCvdfO4lAsShKIv+zfL+VS4ASQrDk90W3UzS5LKIwrP/lMv
71ciLZKdazD0f4N0GFHLpzl3pPtfncLZpMh/aKkIQkvDRlvIw0LcZyTlDhEt3scG
pW3wL0OM0BObTMDlWidAMNpRmZQnClqEaM4wHRWiHp+XZ49fyuKGSz+EYbro1JSL
qen6nSfkoDP7h7UqwWK0BVeyoCwuqZTzjxKL2RGsaVDBjzRaqFF+7w4MNyD805K2
XkcXqg==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=luidp01.ln.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUZ9ZNtwyPxyd6sxUrpvxFfbyIcN8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=luidp01.ln.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAPr3Fi2vXetzGKJGT4c31eQnJxpkMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://luidp01.ln.edu.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://luidp01.ln.edu.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://luidp01.ln.edu.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://luidp01.ln.edu.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">ln.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=luidp01.ln.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAMtC9nll2zEX/xMn7+X5r3g3XwvWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=luidp01.ln.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUZ9ZNtwyPxyd6sxUrpvxFfbyIcN8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=luidp01.ln.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAPr3Fi2vXetzGKJGT4c31eQnJxpkMA0GCSqGSIb3DQEB
CwUAMBwxGjAYBgNVBAMMEWx1aWRwMDEubG4uZWR1LmhrMB4XDTE2MTEwOTEwMjM1
NFoXDTM2MTEwOTEwMjM1NFowHDEaMBgGA1UEAwwRbHVpZHAwMS5sbi5lZHUuaGsw
ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCYSU1ic6lvBPkUxpSI4JOK
oSmfMr9iwjl9de13xZxOfJahhuaaKFffg8zdKGIF5ZzSNqeC3XJl4HSzm9W0PuXV
SDsW9Q7RtVWdWN9t8ZPRuLS11iacY7RCBU9ZtHPWAlOu9fjQEDz/V5x27OP7TujT
hSAi7FRPzOtxKRp/gEbgfeuW+agX1tSjhB1QU/dJOPmEJ9hIgV3IShFqHyzDofxJ
fE7Wem1d142kPxaO0GMPdrH8HXviWkn6JjWHFmo92fsQy+X7HEwkiRhYWSiUYeJ3
Geit0M8LcvXMNHBHmRd9JYWPuhJoDuyM05LHzeYxkcS2yYId/Jl0Qj98l/QmmJwp
AgMBAAGjaTBnMB0GA1UdDgQWBBSPNy1fxK8q7ZqBXqxEsHQRlitcHjBGBgNVHREE
PzA9ghFsdWlkcDAxLmxuLmVkdS5oa4YoaHR0cHM6Ly9sdWlkcDAxLmxuLmVkdS5o
ay9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEACIJBqY7WDdQiCQKR
C35630/xbSoG49OaF6HcnX54QX5SE2Kj+cV7dmouybXynUEyQrVoaFXIrDJlGZpy
QRnZoXjquPyoMZjDX2lov55p97eRKqhmWy3Wbw05qKq3LaIvX6ZgJJHPVtBQXkMe
IMXGlQL0cRq+Apr2aJU8KZF8xu0rrBpX3af91xAHPA47FfrVnwttJyrajNLuBXRT
PFagOiwYNQ4ZAKBA/eFVuPO9zVr97s74AGvFNjpHZ74BN3MvYAW9o5CnbuGwLNTY
rrjlnKaBIfeuCmz87Sq1mOnvs3611GA5DAIRbtWwTrk2iVcNi/d+sxT/vhuuuE7z
d5RA/A==</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://luidp01.ln.edu.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">ln.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Lingnan University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ln.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Lingnan University</md:Company>
      <md:GivenName>Wai Man</md:GivenName>
      <md:SurName>Cheung</md:SurName>
      <md:EmailAddress>mailto:waiman@ln.edu.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson contactType="technical">
      <md:Company>Lingnan University</md:Company>
      <md:GivenName>Bennie</md:GivenName>
      <md:SurName>Wong</md:SurName>
      <md:EmailAddress>mailto:benniewong@ln.edu.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Bennie</md:GivenName>
      <md:EmailAddress>mailto:benniewong@ln.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://hkafidp.hku.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2016-12-15T07:04:40Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
      <mdattr:EntityAttributes>
        <!-- Attribute for REFEDS Research & Scholarship -->
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category-support">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <!-- Attribute for REFEDS SIRTFI -->
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The University of Hong Kong</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider of The University of Hong Kong</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">hku.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=juccaf-idp.hku.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAOronsiEDv12pgefTNSlco9EPj/cMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=juccaf-idp.hku.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUeWAofqPKd1x6+a0b9zVH0LD/ONowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=juccaf-idp.hku.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIURo+yUsLcqVobRFQKYXTkqtAGfZEwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hkafidp.hku.hk/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hkafidp.hku.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hkafidp.hku.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hkafidp.hku.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">hku.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=juccaf-idp.hku.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDMDCCAhigAwIBAgIVAOronsiEDv12pgefTNSlco9EPj/cMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=juccaf-idp.hku.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUeWAofqPKd1x6+a0b9zVH0LD/ONowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=juccaf-idp.hku.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDLzCCAhegAwIBAgIURo+yUsLcqVobRFQKYXTkqtAGfZEwDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAwwRanVjY2FmLWlkcC5oa3UuaGswHhcNMTYwNDA0MTQzNjM5
WhcNMzYwNDA0MTQzNjM5WjAcMRowGAYDVQQDDBFqdWNjYWYtaWRwLmhrdS5oazCC
ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ/MtINUNdAs7ZW6Llt1HsyG
u+mTyMD5X+HaGCcfiwsOmDGf7wVFjfgWgMHAT5YSM0idQu1bTAIc22fNcDRh/OKh
TNMwBfRUfnlPi0VvLaprn4YHVLduVI+O/XK6OWLzkRdbdPv71vEj01tUX+MzpywS
muAUmF4Tax4/psXLLLCk3si1SVEiRbYotQXJ/eO9KvuQjl8wF/MKqt2xzOMQM/Gq
pAxg9U8/5U2NiSNK32YgLud2DQy9DygmdMBfd5TiTtzxI1g7OVO/sslJTtzOk7AK
TAGKRXq71KQqtgJWE34ZGmOV9vs5HY3Ipdab+Sd9h1YVtPMjp/fpLQwkGiQVhhkC
AwEAAaNpMGcwHQYDVR0OBBYEFBxa3wSWJEzJkZIFaoMUpU9UNFEnMEYGA1UdEQQ/
MD2CEWp1Y2NhZi1pZHAuaGt1LmhrhihodHRwczovL2p1Y2NhZi1pZHAuaGt1Lmhr
L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCO+InZTnuvelsv+UQ5
9LyWYtSfZ/RiF59szZHfYbsh8hS8JaYVzfEyI0Ah2neXkREU+EepZWLXcvjF4ypG
Qfy43GyDF4MTVh3GAL36y2KEqQN43AxkPlq9UEpBdmpF0HDBuwAOW8OvEUI2CTj4
Z97wWp2/ZMJrxnmnr8vFgymhtb39xempor4j4qkWcIwEflpX5+H2oOKj2KCV9VGL
dRGKH7jyFPhXxce5OSg8xkwC4oU02+W99/F7iUIdR+T/HbLkn2whMugRr8sGiWEu
mzjKkCj+6+pj8CAaSAkXx+EM/5mDZgWUbCfJG6cb6F3GwBfYMf+s3m8sgauYXM2I
opfF</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hkafidp.hku.hk/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">hku.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The University of Hong Kong </md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.hku.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>The University of Hong Kong </md:Company>
      <md:GivenName>Lam</md:GivenName>
      <md:SurName>Siu</md:SurName>
      <md:EmailAddress>mailto:skleolam@hku.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>Kelvin Chan</md:GivenName>
      <md:EmailAddress>mailto:lhkchan@hku.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://buidp01.hkbu.edu.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2016-11-21T03:27:20Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">Hong Kong Baptist University</mdui:DisplayName>
          <mdui:Description xml:lang="en">Hong Kong Baptist University</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">hkbu.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=buidp01.hkbu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIUKJeRZFgl+NHq/BTKlevkOhg+DngwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=buidp01.hkbu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDODCCAiCgAwIBAgIVAMsZg71viXt/fDWY4eCQhmiuSe2tMA0GCSqGSIb3DQEB
CwUAMB4xHDAaBgNVBAMME2J1aWRwMDEuaGtidS5lZHUuaGswHhcNMTYxMTA3MDY0
NTE2WhcNMzYxMTA3MDY0NTE2WjAeMRwwGgYDVQQDDBNidWlkcDAxLmhrYnUuZWR1
LmhrMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAieUT23uxBGABFPIB
M4G3dNgPvlinVg0HkBfCLYG8Mv3cirOgOy7FsrPzWFx9adTBrAqcD+NRGTnZxL9V
Ci2d0/inRWxXYFlvxb6J1BJgzTdDqkL0Wd6nNc+0/CA1UC09Gw863tm8yvaZQvIM
iDdc6Nef1b6zbaHAnA1rby0XcoNStolzpkQm3ZP1qv3zz3mZBbQ+O5Q+8rZc8CEf
3hM8w0vJaUTQOhZOHo2kgUrPnpIyDK97gGRhpC3x47ZfKM70POz5YbX36GrkzJ7Z
eWLD3PmQLLPCCJPr9i9jPqpGUk6dXrwlfW3i76PptIqKEClOYSw5JYEcUJw7Tepq
NTTKxwIDAQABo20wazAdBgNVHQ4EFgQUpsXeJ6ZlMYI4MHWaEhwELvuMPgUwSgYD
VR0RBEMwQYITYnVpZHAwMS5oa2J1LmVkdS5oa4YqaHR0cHM6Ly9idWlkcDAxLmhr
YnUuZWR1LmhrL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQA/bbLk
Y7Cdz+yq5dHKqlpfgY9eHSlhpXas58qL/5TgMr6H93jVXxJjnQqxgrjtEOFCqXaM
BlQ7yDM++nxGhQ205/o98jmx4pRKUh65cS1RaJEUuSQ9UfO1KIr4shpEZs6Tshwt
BVNNe3PRRV2lngbjSWmAYpr9Ukq4gcM8PwSaExk6f0vstbShCXHH4LZtYBNbjZBI
huFslvqy3MBJGWKBV2/a7h1g1rpWDbEhD/LB95aS/1YEBhA1MD4cV2rlUp2b6mga
37L5rxY8SDv0biaORbfNsPwZMDytdnmxWZnmOCrcbIRviX9CkaCUSSDuV8RnY7qh
gfQNH3hHC1mrUhay</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=buidp01.hkbu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIUY+STYA9plH729SFPKsnojR+eyFowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://buidp01.hkbu.edu.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://buidp01.hkbu.edu.hk/idp/profile/Logout"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://buidp01.hkbu.edu.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://buidp01.hkbu.edu.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://buidp01.hkbu.edu.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">hkbu.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=buidp01.hkbu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIUKJeRZFgl+NHq/BTKlevkOhg+DngwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=buidp01.hkbu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDODCCAiCgAwIBAgIVAMsZg71viXt/fDWY4eCQhmiuSe2tMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=buidp01.hkbu.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIUY+STYA9plH729SFPKsnojR+eyFowDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://buidp01.hkbu.edu.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid: 0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="uid"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">hkbu.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">Hong Kong Baptist University</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.hkbu.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="support">
      <md:Company>Hong Kong Baptist University</md:Company>
      <md:GivenName>Jerry</md:GivenName>
      <md:SurName>Wan</md:SurName>
      <md:EmailAddress>mailto:jerrywan@hkbu.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.cuhk.edu.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2016-12-21T12:55:00Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Chinese University of Hong Kong</mdui:DisplayName>
          <mdui:Description xml:lang="en">Identity Provider of The Chinese University of Hong Kong</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">cuhk.edu.hk</shibmd:Scope>
	<shibmd:Scope regexp="false">link.cuhk.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.cuhk.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAOrXIHnafLADfxipNmhQGVQg/rOVMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.cuhk.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAJ2vQvwZJqRbm8O5AItqJFTY8BI2MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cuhk.edu.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cuhk.edu.hk/idp/profile/Logout"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cuhk.edu.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cuhk.edu.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cuhk.edu.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">cuhk.edu.hk</shibmd:Scope>
	<shibmd:Scope regexp="false">link.cuhk.edu.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.cuhk.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAOrXIHnafLADfxipNmhQGVQg/rOVMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.cuhk.edu.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVAJ2vQvwZJqRbm8O5AItqJFTY8BI2MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cuhk.edu.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">cuhk.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Chinese University of Hong Kong</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuhk.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>Hong Kong Access Federation</md:Company>
      <md:GivenName>CY</md:GivenName>
      <md:SurName>TSANG</md:SurName>
      <md:EmailAddress>mailto:cytsang@cuhk.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://idp.ust.hk/idp/shibboleth">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2017-01-07T08:06:19Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
      <mdattr:EntityAttributes>
        <!-- Attribute for REFEDS Research & Scholarship -->
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category-support">
          <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
        </saml:Attribute>
        <!-- Attribute for REFEDS SIRTFI -->
        <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification">
          <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
        </saml:Attribute>
      </mdattr:EntityAttributes>
    </md:Extensions>
    <md:IDPSSODescriptor WantAuthnRequestsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">The Hong Kong University of Science and Technology</mdui:DisplayName>
          <mdui:Description xml:lang="en">HKUST Identity Provider</mdui:Description>
        </mdui:UIInfo>
        <shibmd:Scope regexp="false">ust.hk</shibmd:Scope>
	<shibmd:Scope regexp="false">connect.ust.hk</shibmd:Scope>
	<shibmd:Scope regexp="false">alumni.ust.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.ust.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEzCCAfugAwIBAgIURFJ15L9/9brDVHKzTB8Taws/rW4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.ust.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAP5+WhGBzJxmxEQN/rBpzY44KzIWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.ust.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAM23MPp++4dkPFh9Br5UakIK4t29MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:ArtifactResolutionService index="2" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ust.hk:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ust.hk/idp/profile/SAML2/POST/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ust.hk/idp/profile/SAML2/Redirect/SSO"/>
      <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ust.hk/idp/profile/SAML2/SOAP/ECP"/>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:IDPSSODescriptor>
    <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <shibmd:Scope regexp="false">ust.hk</shibmd:Scope>
	<shibmd:Scope regexp="false">connect.ust.hk</shibmd:Scope>
	<shibmd:Scope regexp="false">alumni.ust.hk</shibmd:Scope>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.ust.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDEzCCAfugAwIBAgIURFJ15L9/9brDVHKzTB8Taws/rW4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.ust.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAP5+WhGBzJxmxEQN/rBpzY44KzIWMA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=idp.ust.hk</ds:X509SubjectName>
            <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAM23MPp++4dkPFh9Br5UakIK4t29MA0GCSqGSIb3DQEB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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ust.hk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <saml:Attribute Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonEntitlement"/>
      <saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAssurance"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
      <saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonScopedAffiliation"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="schacHomeOrganization"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonPrincipalName"/>
      <saml:Attribute Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      <saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
      <saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="displayName"/>
      <saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
    </md:AttributeAuthorityDescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">ust.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Hong Kong University of Science and Technology</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.ust.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>The Hong Kong University of Science and Technology</md:Company>
      <md:GivenName>Yiu-Fai</md:GivenName>
      <md:SurName>LAI</md:SurName>
      <md:EmailAddress>mailto:ccyflai@ust.hk</md:EmailAddress>
    </md:ContactPerson>
    <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
      <md:GivenName>IT Security Incident</md:GivenName>
      <md:EmailAddress>mailto:security@ust.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor><md:EntityDescriptor xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" entityID="https://account.keep.edu.hk/idp/module.php/saml/sp/metadata.php/hkaf">
    <md:Extensions>
      <mdrpi:RegistrationInfo registrationAuthority="https://hkaf.edu.hk" registrationInstant="2018-05-28T08:48:51Z">
        <mdrpi:RegistrationPolicy xml:lang="en">http://hkafaccessfed.github.io/info/policy/registration_policy</mdrpi:RegistrationPolicy>
      </mdrpi:RegistrationInfo>
    </md:Extensions>
    <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
      <md:Extensions>
        <mdui:UIInfo>
          <mdui:DisplayName xml:lang="en">KEEP</mdui:DisplayName>
          <mdui:Description xml:lang="en">Knowledge &amp; Education Exchange Platform (KEEP) is a personalized educational portal for users to easily search, subscribe and access content from the KEEP Cloud Ecosystem. KEEP supports the development of innovative teaching and learning with cutting-edge</mdui:Description>
        </mdui:UIInfo>
        <idpdisc:DiscoveryResponse index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://account.keep.edu.hk/idp/module.php/saml/disco.php"/>
      </md:Extensions>
      <md:KeyDescriptor use="signing">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=*.keep.edu.hk,O=The Chinese University of Hong Kong,OU=Knowledge and Education Exchange Platform,L=Sha Tin,ST=New Territories,C=HK</ds:X509SubjectName>
            <ds:X509Certificate>MIIF7zCCA9cCFB+Dn1GIKW8Avw5QZHpZSoiaK61dMA0GCSqGSIb3DQEBCwUAMIGzMQswCQYD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:KeyDescriptor use="encryption">
        <ds:KeyInfo>
          <ds:X509Data>
            <ds:X509SubjectName>CN=*.keep.edu.hk,O=The Chinese University of Hong Kong,OU=Knowledge and Education Exchange Platform,L=Sha Tin,ST=New Territories,C=HK</ds:X509SubjectName>
            <ds:X509Certificate>MIIF7zCCA9cCFB+Dn1GIKW8Avw5QZHpZSoiaK61dMA0GCSqGSIb3DQEBCwUAMIGzMQswCQYD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</ds:X509Certificate>
          </ds:X509Data>
        </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://account.keep.edu.hk/idp/module.php/saml/sp/saml2-logout.php/hkaf"/>
      <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://account.keep.edu.hk/idp/module.php/saml/sp/saml2-logout.php/hkaf"/>
      <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
      <md:AssertionConsumerService index="2" isDefault="false" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://account.keep.edu.hk/idp/module.php/saml/sp/saml2-acs.php/hkaf"/>
      <md:AssertionConsumerService index="0" isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.keep.edu.hk/idp/module.php/saml/sp/saml2-acs.php/hkaf"/>
      <md:AttributeConsumingService index="1" isDefault="false">
        <md:ServiceName xml:lang="en">KEEP</md:ServiceName>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="givenName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="commonName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="surname"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonAffiliation"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="mail"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="organizationName"/>
        <md:RequestedAttribute isRequired="true" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" FriendlyName="eduPersonTargetedID"/>
      </md:AttributeConsumingService>
    </md:SPSSODescriptor>
    <md:Organization>
      <md:OrganizationName xml:lang="en">cuhk.edu.hk</md:OrganizationName>
      <md:OrganizationDisplayName xml:lang="en">The Chinese University of Hong Kong</md:OrganizationDisplayName>
      <md:OrganizationURL xml:lang="en">http://www.cuhk.edu.hk</md:OrganizationURL>
    </md:Organization>
    <md:ContactPerson contactType="technical">
      <md:Company>The Chinese University of Hong Kong</md:Company>
      <md:GivenName>Support Staff</md:GivenName>
      <md:SurName>KEEP Team</md:SurName>
      <md:EmailAddress>mailto:support@keep.edu.hk</md:EmailAddress>
    </md:ContactPerson>
  </md:EntityDescriptor></md:EntitiesDescriptor>