See saml Menu

Response

This example contains several SAML Responses. A SAML Response is sent by the Identity Provider to the Service Provider and if the user succeeded in the authentication process, it contains the Assertion with the NameID / attributes of the user.

There are 8 examples:

  • An unsigned SAML Response with an unsigned Assertion
  • An unsigned SAML Response with a signed Assertion
  • A signed SAML Response with an unsigned Assertion
  • A signed SAML Response with a signed Assertion
  • An unsigned SAML Response with an encrypted Assertion
  • An unsigned SAML Response with an encrypted signed Assertion
  • A signed SAML Response with an encrypted Assertion
  • A signed SAML Response with an encrypted signed Assertion
`
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="_8e8dc5f69a98cc4c1ff3427e5ce34606fd672f91e6" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:Assertion xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xs="http://www.w3.org/2001/XMLSchema" ID="_d71a3a8e9fcc45c9e9d248ef7049393fc8f04e5f75" Version="2.0" IssueInstant="2014-07-17T01:01:48Z">
    <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer>
    <saml:Subject>
      <saml:NameID SPNameQualifier="http://sp.example.com/demo1/metadata.php" Format="urn:oasis:names:tc:SAML:2.0:nameid-format:transient">_ce3d2948b4cf20146dee0a0b3dd6f69b6cf86f62d7</saml:NameID>
      <saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
        <saml:SubjectConfirmationData NotOnOrAfter="2024-01-18T06:21:48Z" Recipient="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685"/>
      </saml:SubjectConfirmation>
    </saml:Subject>
    <saml:Conditions NotBefore="2014-07-17T01:01:18Z" NotOnOrAfter="2024-01-18T06:21:48Z">
      <saml:AudienceRestriction>
        <saml:Audience>http://sp.example.com/demo1/metadata.php</saml:Audience>
      </saml:AudienceRestriction>
    </saml:Conditions>
    <saml:AuthnStatement AuthnInstant="2014-07-17T01:01:48Z" SessionNotOnOrAfter="2024-07-17T09:01:48Z" SessionIndex="_be9967abd904ddcae3c0eb4189adbe3f71e327cf93">
      <saml:AuthnContext>
        <saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:Password</saml:AuthnContextClassRef>
      </saml:AuthnContext>
    </saml:AuthnStatement>
    <saml:AttributeStatement>
      <saml:Attribute Name="uid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="mail" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test@example.com</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="eduPersonAffiliation" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">users</saml:AttributeValue>
        <saml:AttributeValue xsi:type="xs:string">examplerole1</saml:AttributeValue>
      </saml:Attribute>
    </saml:AttributeStatement>
  </saml:Assertion>
</samlp:Response>
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="_8e8dc5f69a98cc4c1ff3427e5ce34606fd672f91e6" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:Assertion xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xs="http://www.w3.org/2001/XMLSchema" ID="pfx981a8d97-f63e-a13d-f779-f3ebf3fed49f" Version="2.0" IssueInstant="2014-07-17T01:01:48Z">
    <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer><ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
  <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
  <ds:Reference URI="#pfx981a8d97-f63e-a13d-f779-f3ebf3fed49f"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/><ds:DigestValue>O8ieQp9GtvxNdkvSbEBpiMewYJ0=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>X5IeHcKEIj44QqBVGKWxxQEAly2WZ1+oixDMrluUKX2UBiXmtT3Jxn9Cz6tJ0KVebjpNXZMsDcgm+N5XC5XR9p1fWiXo21DL6B45fh6MPXOY7jk1vqTdTeoBqGIch8HLEIX3zoNLOFFo2g3SZ7daDciWJKkXxbXH0ZqjtNo763Q=</ds:SignatureValue>
<ds:KeyInfo><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature>
    <saml:Subject>
      <saml:NameID SPNameQualifier="http://sp.example.com/demo1/metadata.php" Format="urn:oasis:names:tc:SAML:2.0:nameid-format:transient">_ce3d2948b4cf20146dee0a0b3dd6f69b6cf86f62d7</saml:NameID>
      <saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
        <saml:SubjectConfirmationData NotOnOrAfter="2024-01-18T06:21:48Z" Recipient="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685"/>
      </saml:SubjectConfirmation>
    </saml:Subject>
    <saml:Conditions NotBefore="2014-07-17T01:01:18Z" NotOnOrAfter="2024-01-18T06:21:48Z">
      <saml:AudienceRestriction>
        <saml:Audience>http://sp.example.com/demo1/metadata.php</saml:Audience>
      </saml:AudienceRestriction>
    </saml:Conditions>
    <saml:AuthnStatement AuthnInstant="2014-07-17T01:01:48Z" SessionNotOnOrAfter="2024-07-17T09:01:48Z" SessionIndex="_be9967abd904ddcae3c0eb4189adbe3f71e327cf93">
      <saml:AuthnContext>
        <saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:Password</saml:AuthnContextClassRef>
      </saml:AuthnContext>
    </saml:AuthnStatement>
    <saml:AttributeStatement>
      <saml:Attribute Name="uid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="mail" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test@example.com</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="eduPersonAffiliation" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">users</saml:AttributeValue>
        <saml:AttributeValue xsi:type="xs:string">examplerole1</saml:AttributeValue>
      </saml:Attribute>
    </saml:AttributeStatement>
  </saml:Assertion>
</samlp:Response>
<?xml version="1.0"?>
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="pfx1648aa57-3778-d6b6-2875-64ffd46001ff" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer><ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
  <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
  <ds:Reference URI="#pfx1648aa57-3778-d6b6-2875-64ffd46001ff"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/><ds:DigestValue>L4FNC+sxvpyWqIJlNSpl6ujXKIE=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>JPJVulbMYfniharwx+hVDxBHmbiv9ylBRxmcxjd6FUCbEeELIHyF4nKEFnQdCXRFjvDkqPSIkTcx1nDEmGvMV7MJLWe1KLx6U/N+42cZD0uu2rJPjLljjA42ZgBA5W/VDN9epxT9f+bRhozB1qofkLIXxvi0tpMf+5p9LGUp6fI=</ds:SignatureValue>
<ds:KeyInfo><ds:X509Data><ds:X509Certificate>MIICajCCAdOgAwIBAgIBADANBgkqhkiG9w0BAQ0FADBSMQswCQYDVQQGEwJ1czETMBEGA1UECAwKQ2FsaWZvcm5pYTEVMBMGA1UECgwMT25lbG9naW4gSW5jMRcwFQYDVQQDDA5zcC5leGFtcGxlLmNvbTAeFw0xNDA3MTcxNDEyNTZaFw0xNTA3MTcxNDEyNTZaMFIxCzAJBgNVBAYTAnVzMRMwEQYDVQQIDApDYWxpZm9ybmlhMRUwEwYDVQQKDAxPbmVsb2dpbiBJbmMxFzAVBgNVBAMMDnNwLmV4YW1wbGUuY29tMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZx+ON4IUoIWxgukTb1tOiX3bMYzYQiwWPUNMp+Fq82xoNogso2bykZG0yiJm5o8zv/sd6pGouayMgkx/2FSOdc36T0jGbCHuRSbtia0PEzNIRtmViMrt3AeoWBidRXmZsxCNLwgIV6dn2WpuE5Az0bHgpZnQxTKFek0BMKU/d8wIDAQABo1AwTjAdBgNVHQ4EFgQUGHxYqZYyX7cTxKVODVgZwSTdCnwwHwYDVR0jBBgwFoAUGHxYqZYyX7cTxKVODVgZwSTdCnwwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQ0FAAOBgQByFOl+hMFICbd3DJfnp2Rgd/dqttsZG/tyhILWvErbio/DEe98mXpowhTkC04ENprOyXi7ZbUqiicF89uAGyt1oqgTUCD1VsLahqIcmrzgumNyTwLGWo17WDAa1/usDhetWAMhgzF/Cnf5ek0nK00m0YZGyc4LzgD0CROMASTWNg==</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:Assertion xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xs="http://www.w3.org/2001/XMLSchema" ID="_d71a3a8e9fcc45c9e9d248ef7049393fc8f04e5f75" Version="2.0" IssueInstant="2014-07-17T01:01:48Z">
    <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer>
    <saml:Subject>
      <saml:NameID SPNameQualifier="http://sp.example.com/demo1/metadata.php" Format="urn:oasis:names:tc:SAML:2.0:nameid-format:transient">_ce3d2948b4cf20146dee0a0b3dd6f69b6cf86f62d7</saml:NameID>
      <saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
        <saml:SubjectConfirmationData NotOnOrAfter="2024-01-18T06:21:48Z" Recipient="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685"/>
      </saml:SubjectConfirmation>
    </saml:Subject>
    <saml:Conditions NotBefore="2014-07-17T01:01:18Z" NotOnOrAfter="2024-01-18T06:21:48Z">
      <saml:AudienceRestriction>
        <saml:Audience>http://sp.example.com/demo1/metadata.php</saml:Audience>
      </saml:AudienceRestriction>
    </saml:Conditions>
    <saml:AuthnStatement AuthnInstant="2014-07-17T01:01:48Z" SessionNotOnOrAfter="2024-07-17T09:01:48Z" SessionIndex="_be9967abd904ddcae3c0eb4189adbe3f71e327cf93">
      <saml:AuthnContext>
        <saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:Password</saml:AuthnContextClassRef>
      </saml:AuthnContext>
    </saml:AuthnStatement>
    <saml:AttributeStatement>
      <saml:Attribute Name="uid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="mail" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test@example.com</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="eduPersonAffiliation" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">users</saml:AttributeValue>
        <saml:AttributeValue xsi:type="xs:string">examplerole1</saml:AttributeValue>
      </saml:Attribute>
    </saml:AttributeStatement>
  </saml:Assertion>
</samlp:Response>
<?xml version="1.0"?>
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="pfxdb8229c8-cee4-a9f4-d2e5-97689f757b9f" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer><ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
  <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
  <ds:Reference URI="#pfxdb8229c8-cee4-a9f4-d2e5-97689f757b9f"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/><ds:DigestValue>6aswl6UCAItfiSrRCOcYaP6oOeo=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>h/r63gjQC3gSsv4U0cl2TOtQzFgn6QN1CW12mlq2s5RUxGXJ7gd+7/MZNBDtF9JhjL7Uz9EKkLET4kjKgId5Yrz+RYE0QoIN+xm2/3YCPcCPc+loBPMDO2gwCQeWvh9qFbl+uzm798A5O0HisVFb4LPbgtGxK4fAXIOtHnvHMSk=</ds:SignatureValue>
<ds:KeyInfo><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:Assertion xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xs="http://www.w3.org/2001/XMLSchema" ID="pfx70a7e5be-80ca-62ec-5d17-360e8fcee9cc" Version="2.0" IssueInstant="2014-07-17T01:01:48Z">
    <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer><ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
  <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
  <ds:Reference URI="#pfx70a7e5be-80ca-62ec-5d17-360e8fcee9cc"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/><ds:DigestValue>bt44M2RUiOAoRFVTSGRd2BBnUwE=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>uLH6NwSMFuF90G1j+QtG0vVSlvlu1QqzElVbkL0xC4u5QdwOpOyrDA9G+xXIQS8Roq9Jrx47D4WLN4Evid5vFFsi27ymfppwGSzHuJgnnpc0EZc1v1X+QSX7kgpyPnObKVCpquAdZnBp1UhGx5aNqJEScwiAUwmsUdY+A3VSFKM=</ds:SignatureValue>
<ds:KeyInfo><ds:X509Data><ds:X509Certificate>MIICajCCAdOgAwIBAgIBADANBgkqhkiG9w0BAQ0FADBSMQswCQYDVQQGEwJ1czETMBEGA1UECAwKQ2FsaWZvcm5pYTEVMBMGA1UECgwMT25lbG9naW4gSW5jMRcwFQYDVQQDDA5zcC5leGFtcGxlLmNvbTAeFw0xNDA3MTcxNDEyNTZaFw0xNTA3MTcxNDEyNTZaMFIxCzAJBgNVBAYTAnVzMRMwEQYDVQQIDApDYWxpZm9ybmlhMRUwEwYDVQQKDAxPbmVsb2dpbiBJbmMxFzAVBgNVBAMMDnNwLmV4YW1wbGUuY29tMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZx+ON4IUoIWxgukTb1tOiX3bMYzYQiwWPUNMp+Fq82xoNogso2bykZG0yiJm5o8zv/sd6pGouayMgkx/2FSOdc36T0jGbCHuRSbtia0PEzNIRtmViMrt3AeoWBidRXmZsxCNLwgIV6dn2WpuE5Az0bHgpZnQxTKFek0BMKU/d8wIDAQABo1AwTjAdBgNVHQ4EFgQUGHxYqZYyX7cTxKVODVgZwSTdCnwwHwYDVR0jBBgwFoAUGHxYqZYyX7cTxKVODVgZwSTdCnwwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQ0FAAOBgQByFOl+hMFICbd3DJfnp2Rgd/dqttsZG/tyhILWvErbio/DEe98mXpowhTkC04ENprOyXi7ZbUqiicF89uAGyt1oqgTUCD1VsLahqIcmrzgumNyTwLGWo17WDAa1/usDhetWAMhgzF/Cnf5ek0nK00m0YZGyc4LzgD0CROMASTWNg==</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature>
    <saml:Subject>
      <saml:NameID SPNameQualifier="http://sp.example.com/demo1/metadata.php" Format="urn:oasis:names:tc:SAML:2.0:nameid-format:transient">_ce3d2948b4cf20146dee0a0b3dd6f69b6cf86f62d7</saml:NameID>
      <saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
        <saml:SubjectConfirmationData NotOnOrAfter="2024-01-18T06:21:48Z" Recipient="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685"/>
      </saml:SubjectConfirmation>
    </saml:Subject>
    <saml:Conditions NotBefore="2014-07-17T01:01:18Z" NotOnOrAfter="2024-01-18T06:21:48Z">
      <saml:AudienceRestriction>
        <saml:Audience>http://sp.example.com/demo1/metadata.php</saml:Audience>
      </saml:AudienceRestriction>
    </saml:Conditions>
    <saml:AuthnStatement AuthnInstant="2014-07-17T01:01:48Z" SessionNotOnOrAfter="2024-07-17T09:01:48Z" SessionIndex="_be9967abd904ddcae3c0eb4189adbe3f71e327cf93">
      <saml:AuthnContext>
        <saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:Password</saml:AuthnContextClassRef>
      </saml:AuthnContext>
    </saml:AuthnStatement>
    <saml:AttributeStatement>
      <saml:Attribute Name="uid" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="mail" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">test@example.com</saml:AttributeValue>
      </saml:Attribute>
      <saml:Attribute Name="eduPersonAffiliation" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic">
        <saml:AttributeValue xsi:type="xs:string">users</saml:AttributeValue>
        <saml:AttributeValue xsi:type="xs:string">examplerole1</saml:AttributeValue>
      </saml:Attribute>
    </saml:AttributeStatement>
  </saml:Assertion>
</samlp:Response>
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="_8e8dc5f69a98cc4c1ff3427e5ce34606fd672f91e6" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:EncryptedAssertion>
    <xenc:EncryptedData xmlns:xenc="http://www.w3.org/2001/04/xmlenc#" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#" Type="http://www.w3.org/2001/04/xmlenc#Element"><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/><dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#"><xenc:EncryptedKey><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/><xenc:CipherData><xenc:CipherValue>mgNxFGGsefI8oHMYaoahEaCHAOjUn9AUiIEEaqLPVfzgnQOUkq/3pHnbkjze6j4r4kgk481SCUuodtMd0rHUriY6X6XeNghQptNqB88j5HkMu82Yl2hNfRYwrKWkXlh093U5eJZNZ+wWRSoPsCOCpIjX4mwx3RUHKYsKHjsMLYs=</xenc:CipherValue></xenc:CipherData></xenc:EncryptedKey></dsig:KeyInfo>
   <xenc:CipherData>
      <xenc:CipherValue>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</xenc:CipherValue>
   </xenc:CipherData>
</xenc:EncryptedData>
  </saml:EncryptedAssertion>
</samlp:Response>
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="_8e8dc5f69a98cc4c1ff3427e5ce34606fd672f91e6" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:EncryptedAssertion>
    <xenc:EncryptedData xmlns:xenc="http://www.w3.org/2001/04/xmlenc#" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#" Type="http://www.w3.org/2001/04/xmlenc#Element"><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/><dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#"><xenc:EncryptedKey><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/><xenc:CipherData><xenc:CipherValue>ykx01L8ewidMBaCTPlwfBE9gIJViUxIYupVV389u4M6JBG2wuiEm6HJA9S7bA2Va98WJY2WCzuAeyHcuSHE92Z7czC694NvxMsk09Fdky0gFh9vC2cAgWeYsI3sAbzcoR19UBwatFr6vrO5azxTzfRKyomZ0k1COjt2jFU+zfHw=</xenc:CipherValue></xenc:CipherData></xenc:EncryptedKey></dsig:KeyInfo>
   <xenc:CipherData>
      <xenc:CipherValue>zG+vLBUGQFXZc2M0BIQa5E5UjKuMH7hbBcGWherwAEABxweNgf1sCCsLcVZS8wysjj1E/0L5jrAk+jRLWJIiZmyZlmA+P+34/Kmi7fSCRO2jY9cuZmsaqCQx2IIhAt4BD2ibkVYx6xsAlz63qF9Ths1oO/DfDAM19LZiBery6t0I333SJCOpML5z03NkUVMS0X3wpktdgNoH8ZW+wiq0ksvSECCbspuXGbWNc1SQyGCCYKZxN5Mv1fagdCfekqdBO4XsQEnODV4BQLb5aGdJPgwww5B1/w4EC15i4frrudPfCkktMDU/Xbeh1PkH6aOUpj/QtqDP00tW2eWhD7JJld71GtxMyIkt0lFZDb6QH7OZf2s8nYd6ZwKH3BeAeUo5BX/HoQwx1c0MTItgMc53H/OzX7PBsvY6O20/9YAKGKklpUbgSze5PfUjtv5cYONW+dogeIeoH7Mj4ZQaoWdZWa8G1gxtY+qD+oJoPl9//1CrmnpzWJ7680PepCW19ylQNuXupEc36bjlwNJySd7iOhulua8VnKFwPB4prNhjRP/VnbA9mTDwD0J/JQgjde09IvRMeIAVoE8lpV7zs6KKiRClRIxUsor3l2Nxg/l2cMuliNdE3qjH64ol6QqeP+8netSieg27H3esWLiw4IV83ORBkcxM25JYEdQlXFDrbXc91f7T0pN+7DVeYjlY4LZ0Qc4KC9MoyKBabZDQoMCEz+BitK8XQCSG50iNOkGm8PyC3PIVLdpZzsV1MqKa5xaU8FINIIomD+sD+OKC/mvoSbx5Sib2Yf6gSs2t1nrSWTO9C8zxKM3LFPGdABw/rflfYtUouSctsi8QEYBrVgNS15sIUGbTrtNbUqZVMFW/T5XVTjPkvOoz5zLJUyV3x8tfsrZlUjr7lsecR08Y7fl4jPvf6pJPbYnFZQKo+ovokcdDz0u3axkx9h9FzPIDwjpRxsduLh3e3G65I4HwGYHIZ+gqSqJSi3BN+pfQS7utwHItGiVpKZwVQ4760VBH7mnQNgGz0oONbmqud84O2KThVXp6+LgaxHLyNfAWyvtFgUyqAJ4g4lx6STuoCS+YWVvgDMOcCvbDMmWQPLagQIYn1Ul1iqnCoupp+saf8y9q9HAvNnPvZxV85cJKD2JMl+Z6i3s0zPBQylqXk1VIie5RIgZYh7lf90H2I5nlUMjkR1gzPGFWNcisjofWYZC+YjbwRPBStjZha43Kq3/jv23kXLBb6iadnjO7rccCnw/5uXDlyIb35Q+9QU0LluMZEN3jk+zx1s0JWnrDnUuAHwMw2BsV896ZqHfuyRq2yHmMfwZHWkH8dvYZKr9e/Rqi1j8qY2AmM7jeNRaFF7E9sGRMWVVfZI9v3gMDSjQP6zjf18f8XgrNxHF6Qd7aCinC1NmLv1HPieBAl9HHxYo+1gorGEONTfDDPcFfWU4ZmmxqxUrFoB4Yvyon8+D0qvZChDHagnPYLn2eLv1/M0y4i4DL6t9O/Cyn5Qi/Ek1hpn8Zy8D3WR2W9skLDYDbODIXB4k8kkm2EWsciotrEtV4T/G8dpAjGKxDcEz6IKPfKJnnBPNzf8xHuAyDZ60rj0Gp1QPbprjlc1vxVancEodFB/wdDuIFaCwZLVb2YCeRho3XKUR9C/UC5sflshUGf7B9fq3kSOYX9lnYTjFk+WZPva0pGAtXQDyEL1K9RivZzA3dih6nUUzIESAPHgKxKgtMMr5QFLqIgnVgpoot4XNzLKTvaIcixfIlt+nLx8G3glMwjWkyj09u+FODM8w7RMGEH57ne86qqkYHvm7pd1OrDs4t+Cc7AbLG0oTOOyzVDSAu2oogwQazyI27Z4nb6jxCtHt9cYBV7gHsaeZV3KviJnq4pq3jJ112FZe3vG5wF0pKyg8AbuoKoovgUHBGpPUMIFd4q9ijGx2O/wCwUOKiMenig9Ffx3cEgr63daPaiRsEpyK5Ul+CHep8gSwTNSnjKoXVqRdgAOif6jBAY7at+0Yli/kMgT6VjG67t5SkBc2DkFuN719du6QjV65tzgj+qcaeMuTPAz3tSInICutj4E2UQvGOfCK461TBLS4xifi9z4dpcuTQOzMVQB/lmXbZP/vPsVKxL4P/WyTx8rm/ULSz0FDLxuQdGnc8p0fPvujpYxun8zUsYgAPDsDeh2KCGDWd23o5ZjQknYadMsVkxMr0U3VnGfw9AurbDyTG1QJAwcneKp4R2bgsQjZmu0t7NCDLfr/qJ2BRIuSrW0VxfzaKqlIVsOCSgLUjWRro79xtVIrh7y/iuxZ1XR5AeTDO+LheOxK7Ci5ulwc7psIGzBiRTMA18puyNTbSfoZjDMr9gmaEGyLEU/JHBqY91bPuC3s4QgTCC8YlDXfKodaotP32Xa+fehDASinbVTEkFkVS0/i96T2CCzylMwBUPVZngR6u41b1pNbb01gAcSHaME+ZrHX/PRBORE6CWD42W/qExb7SusMewSiFmAG9fmAOWOBJrttQJKGTap+3JsbJ7Or2+vMioIFUzmN+PuZB1BnJ1VxryGT2c94dpMMEYb8u5RsByCzR3Fi1NiQBd5tkiS3tGYC+SqAdZynKV1LGLhoypVfX6nkG4Azy5Gv1V9h9u+rSmSBOyR/Y1ViRb4+JlOwaYoHX5NftdjQPa9Gl57FiSk0j0Kw7CCwptg81fZsRJWuxumUR5gW/C9xhoTAuzwuNxhnDoR6Am9zpWLhmVLfMzqoDEjfRExI/V/UL99qbvjm19KrAltYzAVuk53AQizPYchbgJREjXqbwAUFxXEoE0m6kqM2rnmALR6KCUt7BGAvM2RYLOAqotaMgG9NYgWmGnk1HfxW5YdDj8ZdjDG79Kjzkp9epofoL0art197RMEtQxbeokZjhXm19oaaQQlYkIxYYBPtQEW2FG3JQpU8NbPzPGk8Xd5NC0f3Y2/9WFPWPV2KmPCq1SHEn0rb1D7YHl1tRE7a7XIR0WDCfKaGBmkK8T5zQLey9Tn3p5arXPzuzTPFJ+36mu+ZwdsVf975ptIJ3wQD0tdzFq8HjhcYB9V8R3W7xf+Em/6S9LGI5FrEr9xA+mfh86njLB1aeL1ssaZNKpE2wDIT9r5rf3mkOj5mRe/8Y7Ockz0qmOh4xjhisqxmthWl4Svone5tLqa8jRdlZ0tofB+LPj97vrt1jyeS7SpXBcnOx6ImdHG0RHNWatL86ifAvesRJZfvwZP05NtEu8Xs1oG+cXbmAkK8Jy768fSxebnVhIWpJO6nhEZnhrdw9ji3ANIwgXPJJZ/NB8+y4W6M7Jt4z4oyKe2Egn4oZFdCNtAJvBo0sA0DWqWk+bnl4l19FDJ8pPMBLQ8WlvZKOS1FNBHAzf3Slsx7NxLb7fYl8jldkmnhS59l/e2oSbew00/KCY2zB+5K4QdBEtf1PV9GIS7w5KBjYsw+MHiHO8KqMDZzdQonMisKra6s8JNYQ+EepCjt3CzDry+TDBlFJB0D5h/rzHOvREnmOBn8Os3IJIrKU/Is5ZTE5nmynNE4Zh0CsvRQtKmTYOL/8Wwf0nxE/Gh7jCgR4thLeIv0Jv4j1uPs91qVUKMgDd8eF+xLOrEDXI7/jPV+kt8uHDNCSkXFPHC89K/oyTnNHYFv2vVVJvQHVmEv2LUNoan9bMKCdE1O75Kb4mteXdEsS7VWm3zGzYQ3ktPPTCPURlB0+8zkjKN9w/Ef3hIIqJYsWYh87Qj4ES449CqcHBbXfWcqDN+vYsCxElZzJN06i+GUiDYG9D6d3K3wxZcXPq8P4CjtyQHQDZeo68e/FfVI+teZ5Ye54RePbI/MvEqTduJvaX5u4FjDO1k4nb7zDcgTFYKSqKYEHVLEu7SLrhPYPkFpiPPo+wYRnfe1UbERKCepjE1vnfweegMOqAx1k1JSP5GYHoB0tflXrS4ezs7EErzTGMlHonK03RcmuGXKSWngh/Pubi4s/c0PrAPWIY8BMdNQMIs1Dy4/Ew3HHoshcY1uA4kWa1yusGFPzKJhQHReeo764wvD0LwTLh+dnFefT700ZCC1VKztTTJLYTxpORBZdx+xv3COxhzzVkXCiMUm3mor3CmeJb/ipM/65Y/0ho+ViZAxwSXDgHLBXZpbxP1EkyUjWfPA6XElLSNPM3/vnph/o+e+3iy+X8gZ2NNwhUnHYc80dV2WBud21ZKM2I1C84sXU7j5N37HqHZ7Hy6PKnOYKgw6TYZhWN1gno8s7smJd34x3mX/uPt2AH4j2Ib4LJx+nFNJLVlFgSj5hJCOF2GSFdrc7O/pjLEGN1Or++/7KQCOdZMnmmZTyNHoIGpHmID9Suc6AgfUL8hR8UT5cAEcPtyxPfDEjNnEcWY4yiDSv935QGso7y4OLHf9Vxv1RO+N/kXZwVkHqbmcXlIW0ldA9yOZuK+34DA0bbYu+XUVmlIZzHWJl5UwO8LUe1GkfFcJ5qDdUUBy6cUMA7NUEYyPxaszaFAK33nFY6I+V15aCYE5tm3pg0z/1r7QSDXJEPHudJSXX77S5wWdQj4/tjHEQBzwiP0UuRhDUVrQU9/815MBYgFf64vSDgjkupEqZF9Sb6bPBWsawNxfZnUoacPGNelMfoPKpy3N4fnGbVijE6EEQ25wOechpbJmxTNU47HGlmPqOxaJciQzL3isgdjZZ+gvUlgRgmlZ/Y62rMnn21biEaUMpme4Iaon4FXrHtR7xeSY7clZBWzDfzjXstyjrAHD+JWQTpY3oHuxOVJaHNZp7nVO/nJf9NIk5mff6JUbt8YAStfSKGbGXXGV8BOQ97rwKrrgsftFXo9e1Ew60UXbhVEP5wTmdI2u3k2Taoav/w+Cau1/xjH0lGPG9Cg+LSmfKq+QrIdT0S+UaHxpXp96xCkL9AdepqIUjsmFgczoXP5v6nGOcean8QPm82MuFZb4JmmPlr2YEQLNlB6xBkmTTtgm/1PLUK3Ybe29GP9sUA9QKMB85WkFqWH7mT5Y3Q0bEXRQBxyvC2ftBahim3wwklIO5IcjDrxtC4FT0NA2LTu0Ss4dDPu0rT4FMfXUQPETbNhg8V41ayc0lRgLG34FkOGZRj9ukejnmGPIKfiOybgvsL95E3+nnlhVNp7gu3uREu2g+jGrhZpXoj++JEnxc4XjJRrQMKK7U/2vBxGKRqIVaVgfDIw8w78m/MnfsxV/jl4QIAuYjlZ9XhLf0zdLqUl0R2jVW+/MV6hy9LObCeyuXvIAIYVTMAE1ZVnuB9pcYEF2AeR/ozu/0Iwb14uXvpz+8AhfknrcDE4/b5Egy6CVQNYEvhydEfHGKFGjUzHobyFLLGhalA6mWlMjSfxxVRuTNtJeool711loWcwuNmQhUgKWhbu6UBNsGQvAnTwe8cTZMeFgFTSTA7acSzG5CkueH9tk9zqeYSW+ks4I7t7BVZaa1G0J14IzuPgOX0qHRzVu8CUqBrb9ASEzZceglu4Pg2p2cumtFzmiPzvdoxFr6OKQDbK2/hIw=</xenc:CipherValue>
   </xenc:CipherData>
</xenc:EncryptedData>
  </saml:EncryptedAssertion>
</samlp:Response>
<?xml version="1.0"?>
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="pfx505dec2c-c713-8b99-792f-3714b5ec2404" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer><ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
  <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
  <ds:Reference URI="#pfx505dec2c-c713-8b99-792f-3714b5ec2404"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/><ds:DigestValue>1H+wx9x1Ax9PL1PZ4uVEVDKTHI0=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>eh0Q9NO15w3TT9t10m7dPsVgQ7C0PlCPKGkcmXdh/cFZC3ostRJAkn1J7qL7SM+e4XbmPoEo9uvMd2ieOHrgfp2w4w+TITVQQRK2oKWQUcWxVUEzZOLqkCahSxjdPf2AUvvYet7AJ/oWCul4+NUwttB9w6CT2edqbi5yEZctI3o=</ds:SignatureValue>
<ds:KeyInfo><ds:X509Data><ds:X509Certificate>MIICajCCAdOgAwIBAgIBADANBgkqhkiG9w0BAQ0FADBSMQswCQYDVQQGEwJ1czETMBEGA1UECAwKQ2FsaWZvcm5pYTEVMBMGA1UECgwMT25lbG9naW4gSW5jMRcwFQYDVQQDDA5zcC5leGFtcGxlLmNvbTAeFw0xNDA3MTcxNDEyNTZaFw0xNTA3MTcxNDEyNTZaMFIxCzAJBgNVBAYTAnVzMRMwEQYDVQQIDApDYWxpZm9ybmlhMRUwEwYDVQQKDAxPbmVsb2dpbiBJbmMxFzAVBgNVBAMMDnNwLmV4YW1wbGUuY29tMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZx+ON4IUoIWxgukTb1tOiX3bMYzYQiwWPUNMp+Fq82xoNogso2bykZG0yiJm5o8zv/sd6pGouayMgkx/2FSOdc36T0jGbCHuRSbtia0PEzNIRtmViMrt3AeoWBidRXmZsxCNLwgIV6dn2WpuE5Az0bHgpZnQxTKFek0BMKU/d8wIDAQABo1AwTjAdBgNVHQ4EFgQUGHxYqZYyX7cTxKVODVgZwSTdCnwwHwYDVR0jBBgwFoAUGHxYqZYyX7cTxKVODVgZwSTdCnwwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQ0FAAOBgQByFOl+hMFICbd3DJfnp2Rgd/dqttsZG/tyhILWvErbio/DEe98mXpowhTkC04ENprOyXi7ZbUqiicF89uAGyt1oqgTUCD1VsLahqIcmrzgumNyTwLGWo17WDAa1/usDhetWAMhgzF/Cnf5ek0nK00m0YZGyc4LzgD0CROMASTWNg==</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:EncryptedAssertion>
    <xenc:EncryptedData xmlns:xenc="http://www.w3.org/2001/04/xmlenc#" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#" Type="http://www.w3.org/2001/04/xmlenc#Element"><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/><dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#"><xenc:EncryptedKey><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/><xenc:CipherData><xenc:CipherValue>mgNxFGGsefI8oHMYaoahEaCHAOjUn9AUiIEEaqLPVfzgnQOUkq/3pHnbkjze6j4r4kgk481SCUuodtMd0rHUriY6X6XeNghQptNqB88j5HkMu82Yl2hNfRYwrKWkXlh093U5eJZNZ+wWRSoPsCOCpIjX4mwx3RUHKYsKHjsMLYs=</xenc:CipherValue></xenc:CipherData></xenc:EncryptedKey></dsig:KeyInfo>
   <xenc:CipherData>
      <xenc:CipherValue>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</xenc:CipherValue>
   </xenc:CipherData>
</xenc:EncryptedData>
  </saml:EncryptedAssertion>
</samlp:Response>
<?xml version="1.0"?>
<samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="pfxff715c88-ec96-9ad0-595e-0b377ba2b77d" Version="2.0" IssueInstant="2014-07-17T01:01:48Z" Destination="http://sp.example.com/demo1/index.php?acs" InResponseTo="ONELOGIN_4fee3b046395c4e751011e97f8900b5273d56685">
  <saml:Issuer>http://idp.example.com/metadata.php</saml:Issuer><ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
  <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
  <ds:Reference URI="#pfxff715c88-ec96-9ad0-595e-0b377ba2b77d"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/><ds:DigestValue>EJzyU5wygHUY+1FEPKxVqLTfei8=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>FqoySj+Sdm79CUFDbU8mcwhq1ClyMrQ6gjFRob6R5Z2Tk4E9oOUYLRIYW0aMRvaKuVJQPPBr8Hal12VfSl55YrIKuHgrTFmf6T7gvIXZ47DJR610Sp8SWEE9WGl8ReW8zmdXj8fsIs3P9/KQjCz7gJYoetlAsyj67jE++3rDBWo=</ds:SignatureValue>
<ds:KeyInfo><ds:X509Data><ds:X509Certificate>MIICajCCAdOgAwIBAgIBADANBgkqhkiG9w0BAQ0FADBSMQswCQYDVQQGEwJ1czETMBEGA1UECAwKQ2FsaWZvcm5pYTEVMBMGA1UECgwMT25lbG9naW4gSW5jMRcwFQYDVQQDDA5zcC5leGFtcGxlLmNvbTAeFw0xNDA3MTcxNDEyNTZaFw0xNTA3MTcxNDEyNTZaMFIxCzAJBgNVBAYTAnVzMRMwEQYDVQQIDApDYWxpZm9ybmlhMRUwEwYDVQQKDAxPbmVsb2dpbiBJbmMxFzAVBgNVBAMMDnNwLmV4YW1wbGUuY29tMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZx+ON4IUoIWxgukTb1tOiX3bMYzYQiwWPUNMp+Fq82xoNogso2bykZG0yiJm5o8zv/sd6pGouayMgkx/2FSOdc36T0jGbCHuRSbtia0PEzNIRtmViMrt3AeoWBidRXmZsxCNLwgIV6dn2WpuE5Az0bHgpZnQxTKFek0BMKU/d8wIDAQABo1AwTjAdBgNVHQ4EFgQUGHxYqZYyX7cTxKVODVgZwSTdCnwwHwYDVR0jBBgwFoAUGHxYqZYyX7cTxKVODVgZwSTdCnwwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQ0FAAOBgQByFOl+hMFICbd3DJfnp2Rgd/dqttsZG/tyhILWvErbio/DEe98mXpowhTkC04ENprOyXi7ZbUqiicF89uAGyt1oqgTUCD1VsLahqIcmrzgumNyTwLGWo17WDAa1/usDhetWAMhgzF/Cnf5ek0nK00m0YZGyc4LzgD0CROMASTWNg==</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature>
  <samlp:Status>
    <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
  </samlp:Status>
  <saml:EncryptedAssertion>
    <xenc:EncryptedData xmlns:xenc="http://www.w3.org/2001/04/xmlenc#" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#" Type="http://www.w3.org/2001/04/xmlenc#Element"><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/><dsig:KeyInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#"><xenc:EncryptedKey><xenc:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5"/><xenc:CipherData><xenc:CipherValue>ykx01L8ewidMBaCTPlwfBE9gIJViUxIYupVV389u4M6JBG2wuiEm6HJA9S7bA2Va98WJY2WCzuAeyHcuSHE92Z7czC694NvxMsk09Fdky0gFh9vC2cAgWeYsI3sAbzcoR19UBwatFr6vrO5azxTzfRKyomZ0k1COjt2jFU+zfHw=</xenc:CipherValue></xenc:CipherData></xenc:EncryptedKey></dsig:KeyInfo>
   <xenc:CipherData>
      <xenc:CipherValue>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</xenc:CipherValue>
   </xenc:CipherData>
</xenc:EncryptedData>
  </saml:EncryptedAssertion>
</samlp:Response>