![]() |
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:remd="http://refeds.org/metadata" xmlns:wayf="http://wayf.dk/2014/08/wayf" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="http://sts.tno.nl/adfs/services/trust">
<md:Extensions><wayf:wayf xmlns:wayf="http://wayf.dk/2014/08/wayf"><wayf:federation>eduGAIN</wayf:federation><wayf:phphfeed>wayf-interfed-idp</wayf:phphfeed><wayf:feds>eduGAIN</wayf:feds></wayf:wayf>
<mdrpi:RegistrationInfo registrationAuthority="http://www.surfconext.nl/" registrationInstant="2018-06-12T14:27:21.536Z">
<mdrpi:RegistrationPolicy xml:lang="en">https://wiki.surfnet.nl/display/eduGAIN/EduGAIN</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<mdattr:EntityAttributes>
<saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
</saml:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<shibmd:Scope regexp="false">tno.nl</shibmd:Scope>
<mdui:UIInfo>
<mdui:DisplayName xml:lang="nl">TNO Innovation for life</mdui:DisplayName>
<mdui:DisplayName xml:lang="en">TNO Innovation for life</mdui:DisplayName>
<mdui:Description xml:lang="nl">TNO Innovation for life</mdui:Description>
<mdui:Description xml:lang="en">TNO Innovation for life</mdui:Description>
<mdui:Logo height="160" width="200">https://static.surfconext.nl/logos/idp/tno.png</mdui:Logo>
<mdui:Keywords xml:lang="en">TNO</mdui:Keywords>
<mdui:Keywords xml:lang="nl">TNO</mdui:Keywords>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://engine.surfconext.nl/authentication/idp/single-sign-on/key:20230503/cb321e99f2841289c333cb097c7cb348"/>
</md:IDPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="nl">TNO</md:OrganizationName>
<md:OrganizationName xml:lang="en">TNO</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="nl">TNO</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="en">TNO</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="nl">https://www.tno.nl/nl/</md:OrganizationURL>
<md:OrganizationURL xml:lang="en">https://www.tno.nl/en/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="administrative">
<md:GivenName>SURFconext support</md:GivenName>
<md:EmailAddress>mailto:support@surfconext.nl</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson contactType="technical">
<md:GivenName>SURFconext support</md:GivenName>
<md:EmailAddress>mailto:support@surfconext.nl</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson contactType="support">
<md:GivenName>SURFconext support</md:GivenName>
<md:EmailAddress>mailto:help@surfconext.nl</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
<md:GivenName>SURFcert</md:GivenName>
<md:EmailAddress>mailto:cert@surfcert.nl</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
| keywords | 1d9df5a7e5 http://sts.tno.nl/adfs/services/trust www.surfconext.nl/ TNO Innovation for life tno.nl | ||||||||
| entityid | http://sts.tno.nl/adfs/services/trust | ||||||||
| id | |||||||||
| validUntil | 2025-10-29T07:29:38Z | ||||||||
| cacheDuration | PT6H | ||||||||
| registrationInstant | 2018-06-12T14:27:21.536Z | ||||||||
| organisationdisplayname | TNO | ||||||||
| idpname | TNO Innovation for life | ||||||||
| servicename | |||||||||
| servicename2 | |||||||||
| wayf_access_accept | |||||||||
| assertion.encryption | |||||||||
| exportaskrib | |||||||||
| signingmethod | |||||||||
| edugain | |||||||||
| modified | |||||||||
| spapproved | |||||||||
| phphfeed | wayf-interfed-idp | ||||||||
| cat | |||||||||
| signresponse | |||||||||
| env | |||||||||
| map2IdP | |||||||||
| map2SP | |||||||||
| attributenameformat | |||||||||
| standalone | |||||||||
| wayfscope | |||||||||
| entid | 1d9df5a7e5 | ||||||||
| regauth | www.surfconext.nl/ | ||||||||
| scope |
| ||||||||
| consent.disable |
| ||||||||
| federation |
| ||||||||
| feds |
| ||||||||
| entitycategories |
| ||||||||
| ri |
| ||||||||
| nameidformat |
| ||||||||
| org |
| ||||||||
| arp |
| ||||||||
| keywordnames |
| ||||||||
| contactmails |
| ||||||||
| valuefilter |
| ||||||||
| valuefilterlegacy |
| ||||||||
| idplist |
| ||||||||
| SimpleSign | false | ||||||||
| SP | false | ||||||||
| IDP | true | ||||||||
| AA | false | ||||||||
| SAML2 | false | ||||||||
| SLO | false | ||||||||
| sirtfi | true | ||||||||
| sirtfi2 | false | ||||||||
| spdisplay | |||||||||
| idpdisplay | TNO Innovation for life | ||||||||
| certnotafter |
| ||||||||
| keyname |
| ||||||||
| keytype |
| ||||||||
| keysize |
| ||||||||
| fed | HYBRID-EXTERNAL-IDP | ||||||||
| feedurl | |||||||||
| type | tmp | ||||||||
| mtime | 2025-10-24T08:45:38Z | ||||||||
| entcat |
| ||||||||
| collisions |
| ||||||||
| schemaerrors | 0 | ||||||||
| metadataerrors | 0 |